Orca Security extends platform to new generation of AI builders

Applications of AI


Software is no longer built solely by professional developers within traditional development pipelines. As AI turns employees across the enterprise into builders, organizations need security to protect their software wherever it is built. Today, Orca Security, a leader in cloud and AI security, announced two new AI-powered capabilities. Orca AI AppGen Security, which detects and protects AI applications built outside the development pipeline on AI-powered platforms like Claude, Supabase, and Lovable, and AI Code Security Auditor, which provides deep AI-driven static analysis of code developed within traditional pipelines. Together, these capabilities extend the Orca platform to protect software across the entire spectrum of modern application development, from professional engineering teams to the growing number of AI-assisted builders.

Also read: AiThority interview with Gou Rao, co-founder and CEO of NeuBird AI

The transition is already well underway. Orca’s newly released State of AI Security Report 2026 is based on anonymized telemetry from more than 1,200 production cloud environments analyzed by Orca Research Pod and finds that 52% of organizations are currently using AI to build custom applications. Software development is expanding beyond traditional visibility into security as business teams increasingly deploy AI-generated applications connected to APIs, cloud resources, and sensitive data. At the same time, exploitable risks remain in the development pipeline. IBM estimates that breaches involving shadow AI cost organizations an average of $670,000 more than other incidents, highlighting the need for organizations to consistently protect software, whether built by developers in the pipeline or by employees using AI externally.

“Everyone is a builder now. Developers are building software in the pipeline, employees are building AI applications outside of it, and next-generation frontier AI models are increasingly producing and modifying software on their own. Organizations need security that can adapt to this change without slowing innovation. Our AI code security auditors are preparing our customers for the next wave of AI-assisted software development while providing security with the deep and accurate context needed to understand what is truly exploitable. Combined with AI AppGen Security, Orca helps organizations protect every builder and every application, no matter where and how they are created. ”

— Gil Geron, CEO and Co-Founder, Orca Security

Whether the software is written by professional developers or produced by AI-powered builders, security teams need the same outcomes: complete visibility, meaningful context, and the ability to prioritize real risks. Orca AI AppGen Security and Orca Code Security Auditor work together to extend the Orca platform to ensure modern software development is done securely wherever it happens.

Orca AI AppGen Security: Securing a new generation of AI builders

As AI extends software development beyond engineering, Orca AI AppGen Security provides security teams with visibility and control over applications built outside the development pipeline by:

  • Discover AI-generated applications and the users who created them.
  • Map application risks across APIs, integrations, and data access.
  • Prioritize high-risk exposures based on their actual business impact.

Orca Code Security Auditor: AI-assisted secure development

Orca Code Security Auditor helps developers identify and prioritize the most important vulnerabilities by:

  • AI-powered code analysis uncovers vulnerabilities missed by traditional SAST.
  • Scans the entire repository to discover frontier model vulnerabilities in the Mythos class.
  • Prioritize exploitable risks so your team can focus on what attackers can actually reach.

“Both my developers and business teams were shipping software faster than my team could review it, and apps built outside the pipeline were a complete blind spot. When employees see exploitable code and AI apps running on one platform, they can say yes, rather than slowing down developers. And they know exactly what they’re in control of.”

— Sangram Dash, Chief Information Security Officer, Sisense

One platform for everyone to build

Software is no longer just built by developers. Employees across the enterprise are using AI to create applications, while autonomous agents are increasingly contributing to how software is developed and deployed. As the builder population continues to grow, organizations need a single platform to secure and manage all their applications, regardless of who or what they build. Recent additions, including support for Anthropic Claude through the Compliance API, further expand Orca’s integrated approach to AI governance. By providing unified visibility and risk prioritization across the entire software lifecycle, Orca delivers on the promise of security for those who build, enabling organizations to innovate with confidence while keeping every builder building.

Also read: ​​AI and the future of work: Artificial intelligence extends organizational intelligence beyond human limitations

[To share your insights with us, please write to psen@itechseries.com]



Source link