Compare the Top IT Security Software that integrates with Cursor as of October 2026

This a list of IT Security software that integrates with Cursor. Use the filters on the left to add additional filters for products that have integrations with Cursor. View the products that work with Cursor in the table below.

What is IT Security Software for Cursor?

IT security software is designed to protect information technology (IT) systems, networks, and data from cyber threats, such as malware, hacking, and unauthorized access. These tools provide various features such as antivirus protection, firewalls, encryption, intrusion detection and prevention systems, and vulnerability management to ensure the integrity, confidentiality, and availability of sensitive information. IT security software helps organizations detect, prevent, and respond to security incidents, mitigate risks, and ensure compliance with industry regulations. It is critical for businesses and individuals to safeguard against cyberattacks, data breaches, and other security vulnerabilities. Compare and read user reviews of the best IT Security software for Cursor currently available using the table below. This list is updated regularly.

  • 1
    Josys

    Josys

    Josys

    Josys is a modern AI-native identity security and governance platform. Enterprise AI adoption has made identity the fastest-growing attack surface — and the hardest to govern. Josys discovers, governs, and secures every identity - human, machine, and AI agent - across every application in the enterprise. Built on policy-led governance, Josys lets security and IT teams define access policies once and enforce them autonomously: risk is surfaced, access is controlled, and identity threats are remediated in real time, without manual oversight. Trusted by over 1,000 organizations and MSPs worldwide, Josys turns identity from the fastest-growing attack surface into an autonomously governed advantage. For more information, visit josys.com.
    View Software
    Visit Website
  • 2
    Tragentics

    Tragentics

    Tragentics

    Tragentics is the AI agent security platform that authenticates every agent, injects keys from an encrypted Credential Vault so agents never hold them, routes every call through a content-blind relay, and records a metadata-only audit trail — across platforms and protocols. Tragentics runs no inference and executes no agent logic. It never reads or stores what your agents say. Every agent gets a permanent ID and an Ed25519 identity, keys are encrypted at rest with AES-256-GCM, and every call is authenticated, rate-limited, and recorded as metadata only — never payloads. Protocol-agnostic: it routes MCP, A2A, ACP, OpenAI, ANP, and DID traffic for the agents you already own.
    Starting Price: $39/month
  • 3
    ZeroPath

    ZeroPath

    ZeroPath

    ZeroPath (YC S24) is an AI-native application security platform that delivers comprehensive code protection beyond traditional SAST. Founded by security engineers from Tesla and Google, ZeroPath combines large language models with advanced program analysis to find and automatically fix vulnerabilities. ZeroPath provides complete security coverage: 1. AI-powered SAST for business logic flaws & broken authentication 2. SCA with reachability analysis 3. Secrets detection and validation 4. Infrastructure as Code 5. Automated patch generation. any more... ZeroPath delivers 2x more real vulnerabilities with 75% fewer false positives. Our research team has been successful in finding vulns like critical account takeover in better-auth (CVE-2025-61928, 300k+ weekly downloads), identifying 170+ verified bugs in curl, and discovering 0-days in production systems at Netflix, Hulu, and Salesforce. Trusted by 750+ companies and performing 200k+ code scans monthly.
    Starting Price: Free
  • 4
    Dash0

    Dash0

    Dash0

    Dash0 is an OpenTelemetry-native observability platform for developers and SRE teams. Metrics, logs, traces, and resources sit in one place, linked by OpenTelemetry semantic conventions, so you move from a slow trace to the logs around it without switching tools. Telemetry arrives over OTLP. No proprietary agent, nothing to re-instrument, and your data stays portable. Dash0 ingests Prometheus metrics alongside OpenTelemetry, supports PromQL, and imports existing Prometheus alerting rules and Grafana dashboards. A Kubernetes operator handles collection across clusters. Dashboards are built on Perses and defined as code, so they live in Git alongside your infrastructure. Log AI infers severity, extracts patterns, and groups records, making unstructured third-party logs searchable. Trace triage uses the SIFT framework to narrow a failing request toward a cause. Spend is visible in-product: see which services and log volumes drive cost, and cut them at the source.
    Starting Price: $0.00 per month
  • 5
    Plexicus

    Plexicus

    Plexicus

    Plexicus is the AI-native Application Security Posture Management (ASPM) platform with built-in Vibe Coding Security — purpose-built for the era of AI-assisted development. As developers ship more code, faster, with AI assistants like Cursor, Claude Code, Copilot, Windsurf, Devin, Replit, Zed, and VS Code, the volume of vulnerable code is outpacing every traditional AppSec tool. Plexicus closes that gap by replacing alert-only scanners with an autonomous remediation loop that detects, prioritizes, and fixes risks directly in the developer's Git workflow. Unlike fragmented point solutions that drown DevSecOps teams in findings, Plexicus unifies the full application risk surface — SAST, SCA, secrets, IaC, container, and AI-specific threats — and resolves them with proprietary GenAI agents that open the pull request to fix the code.
    Starting Price: $50/developer/month
  • 6
    VibeSecurity

    VibeSecurity

    VibeSecurity

    VibeSecurity is an AI-powered vulnerability scanning platform designed to protect AI-generated code by continuously analyzing, detecting, and remediating security flaws throughout the development lifecycle. It focuses on modern “vibe coding” workflows, where developers rely on AI tools to generate code quickly, but often introduce hidden vulnerabilities such as insecure authentication, exposed tokens, or injection risks. It uses intelligent agents to perform real-time code analysis, identifying security issues before they reach production and providing automated fix suggestions with implementation guidance. It integrates directly into developer environments through IDE plugins, GitHub applications, and CI/CD pipelines, enabling continuous monitoring of repositories, pull requests, and deployments without disrupting workflows.
    Starting Price: $32 per month
  • 7
    Knostic

    Knostic

    Knostic

    Knostic is an enterprise AI security and governance platform designed to prevent data leakage and control how large language models access and share information within organizations. It introduces “need-to-know”–based access controls that dynamically determine what information an AI system can reveal based on user roles, context, and intent, rather than relying solely on static file permissions. It focuses on the knowledge layer between raw data and AI-generated responses, analyzing how information is inferred, combined, and delivered to ensure sensitive content is not overshared. Knostic provides continuous visibility into AI usage across tools like Copilot and other LLM-powered assistants, identifying risks such as semantic oversharing, inference-based exposure, and unauthorized knowledge access. It simulates real-world prompts to uncover hidden vulnerabilities before deployment, assigns quantified risk scores, and enables organizations to enforce granular policies.
    Starting Price: Free
  • 8
    Scalekit

    Scalekit

    Scalekit

    Scalekit is an authentication platform for AI agents that enables secure, user-delegated access to SaaS applications, APIs, databases, and MCP servers. Rather than relying on shared service accounts, Scalekit allows agents to perform actions on behalf of individual users using their own identities, permissions, and approved scopes. The platform manages OAuth flows, credential storage, authorization, token refresh, and tool execution behind the scenes, simplifying agent development. It includes over 100 connectors, support for custom integrations, and compatibility with popular AI frameworks. Scalekit also provides detailed auditing, encrypted credential storage, and enterprise deployment options for production environments. By handling the authentication and authorization infrastructure, Scalekit helps developers build secure AI agents that integrate with external systems at scale.
    Starting Price: $49/month
  • 9
    Weave

    Weave

    Weave

    Weave is an engineering intelligence and AI observability platform designed to help software organizations measure developer productivity, AI usage, code quality, and return on AI spending. The platform analyzes activity from prompts through production and combines AI-specific metrics with frameworks such as DORA, SPACE, surveys, pull requests, deployments, and engineering telemetry. Its token intelligence capabilities show where AI spending occurs across models and tools while benchmarking cost, efficiency, and quality against other engineering organizations. Weave Router classifies prompts and routes them to an appropriate AI model based on factors such as cost, speed, and expected quality. The platform also includes Wooly, an AI engineering agent that analyzes connected organizational data and provides recommendations with citations to underlying records.
  • 10
    Koi

    Koi

    Koi Security

    Koi is a software supply chain security platform that helps organizations track, govern, and control installations across every endpoint. From browser extensions to IDE plug-ins, CI/CD tools, and AI models, Koi secures the blind spots where attackers often gain entry. Its Wings™ technology goes beyond surface scans by analyzing actual code for secrets, vulnerabilities, and malware while continuously updating risk scores. Koi combines marketplace scanning, publisher reputation intelligence, and dynamic code analysis to deliver real-time visibility and control. With features like automated approvals, preventive policies, and detailed risk reports, teams can block unsafe installs without slowing down adoption of safe tools. By making every install transparent and governable, Koi ensures enterprises can safely harness the full power of their software ecosystem.
  • 11
    Keycard

    Keycard

    Keycard

    Keycard is an identity-and-access infrastructure platform built for the agent-native era, enabling developers and enterprises to securely connect AI agents, users, services, and APIs with real-time, policy-driven identity controls. It issues dynamic, ephemeral access tokens in place of static secrets and supports federated identity models to unify users, agents, and workloads under a distributed authorization framework. The platform provides drop-in SDKs for popular frameworks so developers can build agent-aware applications without becoming IAM experts. Keycard’s data model includes identity-attested agents, tasks, tools, and resources, allowing logical zones with context-aware permissions and auditability. On the policy side, security teams can define deterministic, task-based rules that enforce who (user/agent) can do what (task) on which resource under which conditions, all with full transparency.
  • 12
    Singulr

    Singulr

    Singulr

    Singulr is an enterprise AI governance and security platform that provides a unified control plane to help organizations discover, secure, and optimize AI adoption at scale. It addresses the growing gap between rapid AI usage and limited governance by delivering complete visibility into all AI systems in use, including homegrown applications, embedded AI, public tools, and shadow AI that often remains invisible to security teams. It continuously discovers and inventories AI assets across the organization, creating a real-time map of agents, models, and services, while assessing their risk through contextual analysis of data handling, model lineage, vulnerabilities, and compliance implications. Through its Singulr Pulse intelligence layer, it evaluates millions of AI systems, assigns risk scores, and supports automated onboarding workflows that reduce approval cycles from weeks to hours without compromising security.
  • 13
    Matters.AI

    Matters.AI

    Matters.AI

    Matters.AI is the first AI Security Engineer for Data, built for the AI and data layer to autonomously see, understand, and resolve data misuse before the SOC opens a ticket. It protects what truly matters wherever data lives or travels, functioning like an AI security engineer that understands context, monitors behavior, and protects sensitive data autonomously across cloud, SaaS, endpoints, microservices, and AI pipelines. Matters is built on semantic intelligence, nearest neighbor search, data lineage modeling, and predictive behavior analysis, so it does not just detect threats; it understands context, anticipates risk, and takes action proactively. Instead of relying on static rules, regexes, dashboards, and noisy alerts, Matters reads between the lines, traces risk in motion, and never sleeps. It identifies sensitive data not just by how it looks, but by what it represents, tracking data across cloud, SaaS, endpoints, and beyond using fingerprinting and eBPF.
  • 14
    Pillar Security

    Pillar Security

    Pillar Security

    Pillar Security is a unified AI security platform for securing the agentic workforce across the entire AI lifecycle, from development to deployment and runtime protection. It connects business context across discovery, testing, and protection so security intelligence compounds across AI applications, agents, models, prompts, frameworks, tools, MCP servers, skills, coding agents, SaaS, cloud, code, and endpoints. Pillar helps organizations discover and manage AI assets everywhere, including shadow AI and unapproved systems, assess supply chain and posture risks, map agentic attack surfaces, and validate the vulnerabilities that actually matter. Its AI Security Posture Management capabilities analyze connected agents, tools, permissions, data sources, prompts, models, and supply chain components to expose risky paths, policy violations, misconfigurations, coding agent risks, and blast radius when a single component is compromised.
  • 15
    Opal Zero

    Opal Zero

    Opal Security

    Opal Zero is a just-in-time access governance platform for AI agents that inventories every agent, maps it to an accountable owner, decides each access request, and enforces the decision in the MCP gateway already in place. It gives organizations one inventory across identity providers and AI platforms such as Okta, Entra, Anthropic, OpenAI, Bedrock AgentCore, and Cursor, showing what every agent can access and who owns it. Risk Center surfaces access that is off-purpose, unowned, or standing and routes issues to the appropriate owner with an inline fix. Paladin evaluates requests using policy and context, identifies the least-privileged path, respects owner boundaries, and shows the reasoning behind each decision. Policy Insights uses real agent behavior to identify unused access and opportunities to improve access policy instead of relying on one-off remediation. Gateway Enforcement writes approved decisions as scoped, time-bound policy into existing gateways.
  • 16
    Harden

    Harden

    Harden

    Harden AIF is an agent endpoint security platform for AI coding agents. It evaluates supported agent tool calls before execution using the developer’s intent, session context, organisational policy, and the effect of the proposed action. Harden helps protect against destructive commands, unauthorized access, unintended data transfers, secret exposure, privilege misuse, and other unsafe agent actions. Legitimate actions can proceed normally, sensitive data in supported flows can be safely redacted, and actions that fall outside the developer’s intent or authority are blocked before execution. Harden works across popular coding agents and agentic development tools including Claude Code, Codex, Cursor, Antigravity CLI, Kiro, Hermes, and OpenClaw, providing a consistent security layer across the agent ecosystem.
  • Previous
  • You're on page 1
  • Next