Stackhawk
Automatically tests running applications for exploitable vulnerabilities, fixes them in the codebase, and verifies the fixes before code is committed.
StackHawk is a dynamic application security testing (DAST) platform that integrates into coding agent workflows to automatically find, fix, and verify exploitable vulnerabilities in running applications before code is committed. It targets software development and security teams in enterprises adopting AI-driven development, aiming to reduce security tickets and rework. The platform differentiates by having AI agents directly remediate vulnerabilities in the codebase, rather than just reporting them, and by providing attack surface discovery and program-level oversight.
Key features
- Runtime testing against running apps
- Automatic vulnerability remediation in codebase
- Rescanning to verify fixes
- Attack surface discovery from source code
- OpenAPI spec generation from source code
- Risk-based prioritization
- Integration with CI/CD and pull requests
- Agent skills for Claude Code, Cursor, Codex, Copilot
- X<0.1/day
- LinkedIn<0.1/day
GTM channels
- Blog
- API
- Docs
- Creative ads
ICP
- Security teams
- Engineering teams
- Enterprises