Salt Security

Security for AI Application Security

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2018
Funding $271M
Last updated 2026-08-05

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

Salt Security repositioned around AI agents in 2026, while its outside endorsements still describe the older API product. The company sells software that finds and protects enterprise APIs, launched an Agentic Security Platform in March 2026 for the AI agents acting through them, and added Salt Code for coding assistants in June. Salt announced an Overall Leader placement in KuppingerCole's 2025 API security report, Gartner reviewers rate the API platform 4.6 out of 5, and Salt Labs researchers disclosed a flaw with an NVD record rated critical. Salt's own surveys supply the bulk of the statistics behind its agent pitch, and no funding or revenue newer than the 1.4 billion dollar round of 2022 is publicly visible.

Sourced Details

Description API security company whose platform discovers APIs, governs their security posture, and detects and blocks attacks in real time, extended in 2026 to secure the AI agents and MCP servers that act through those APIs. [f1]
Founded 2018 [f2]
HQ Palo Alto, CA [f3]
Funding $271M total [f4]
Latest funding Series D, $140M (February 2022) [f4]

Products

Product What it does
Salt Agentic Security Platform Platform that discovers agents, MCP servers, and APIs, manages their security posture, and detects and stops abuse at runtime. Salt Code extends it into AI coding assistants.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

The Agentic Security Platform discovers AI agents and MCP servers, watches their runtime behavior, and enforces policy on AI-generated code, defending AI assets themselves. It is mapped to the AI Defense Matrix. [f5]

Cyber Defense Matrix

IdentifyProtectDetectRespondRecover
Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware.
Applications Software, interactions, and application flows on the devices.
Networks Connections and traffic flowing among devices and apps, plus communication paths.
Data Content at rest, in transit, or in use across devices, apps, and networks.
Users The people using the devices, apps, networks, and data.

The API security platform discovers APIs, governs their posture, and detects and blocks attacks against them, defending conventional application assets. It is mapped to the Cyber Defense Matrix. [f6]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Established 28 /40 Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5 KuppingerCole independently frames securing AI as securing APIs, corroborating the problem qualitatively, but the sharpest pain figures such as the 92 percent maturity gap and the 37 percent coverage gap come from Salt's own surveys, so the pain is real yet not independently quantified across multiple non-vendor sources. [s25, s13, s20, s22, s7]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 4/5 Partner documentation details the traffic-mirroring and behavioral-baselining mechanism, KuppingerCole evaluated the product for its 2025 Leadership Compass and named it an Overall Leader in the placement the company announced, and Gartner reviewers rate it 4.6 across 56 ratings, so depth is multiply evidenced. No public documentation portal is available and access runs through a demo request rather than a self-service trial, which keeps the evidence analyst-mediated. [s9, s25, s21, s24, s4]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 4/5 Gartner buyer-side guidance and its 2028 agent-consumption projection, KuppingerCole naming API security a strategic pillar, Akamai paying $450M for Noname, and rivals such as Wallarm rebranding around AI agents all show buyers and acquirers moving into this space within recent quarters. The enabler is the 2025-2026 spread of AI agents and MCP servers acting through enterprise APIs, the shift Salt's March 2026 platform targets. [s13, s25, s15, s30, s14]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 4/5 Co-founders Roey Eliyahu and Michael Nicosia still lead as CEO and COO, and Salt Labs carries a sustained, in-domain research record now corroborated outside the company: The Hacker News and TechTarget covered its OAuth and ChatGPT-plugin disclosures, and NVD rated its Expo finding CVE-2023-28131 critical at 9.6, a sustained and independently documented publication record. [s3, s8, s26, s27, s28]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 4/5 A Siemens security officer speaks publicly about the agentic platform, the customers page names accounts including Standard Bank Group and SoFi, the channel pairs technology integrations and channel partners with a CrowdStrike alliance that included a strategic investment, and Gartner reviewers independently rate the product 4.6 across 56 ratings. Revenue and growth claims remain in the vendor's own voice. [s18, s31, s24, s16, s32]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 2/5 The February 2022 raise now sits well past a normal funding cycle with no later round or disclosed revenue, and Noname's sale below half its peak shows the category repriced, so visible product shipping does not confirm output per dollar. [s17, s12, s15, s18]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 4/5 API security is an established analyst category that buyers place without coaching, confirmed by KuppingerCole evaluating Salt among its leaders and Gartner running an API Protection reviews market. The agentic security framing the company now leads with is vendor-coined vocabulary whose budget line does not yet exist outside its own materials, and the KuppingerCole leader rating reaches the public only through the vendor's announcement. [s25, s24, s12, s2]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5 Akamai bought Noname to bundle API security into its edge platform and Harness merged Traceable into its software delivery platform, so the absorption threat is demonstrated rather than hypothetical. Salt's counterweights are learned behavioral baselines, a research flywheel claimed in its own materials, and regulated customers whose procurement slows displacement. [s15, s10, s23, s8, s4]
Business Risks Edge, cloud, and gateway platforms could bundle API and agent security into infrastructure buyers already own, collapsing the standalone budget line Salt sells against…
  • Edge, cloud, and gateway platforms could bundle API and agent security into infrastructure buyers already own, collapsing the standalone budget line Salt sells against. Akamai's Noname acquisition and Harness's merger with Traceable show the absorption is underway.
  • The agentic repositioning could outrun the budget. If buyers do not fund agentic security as its own line by 2027, the March 2026 platform competes in crowded API security carrying extra vocabulary.
  • The traction record is own-voice on scale. Company releases carry the revenue and customer-scale claims, and no independently reported revenue figure or funding event newer than February 2022 appears in the fetched record, so a stall would stay invisible until late.
  • The 2022 valuation could overhang any exit or raise. Noname sold to Akamai for less than half its 2021 peak valuation, and a comparable repricing of Salt's $1.4 billion mark would narrow its options.
  • AI-native security startups could anchor agent security at the model and prompt layer. If buyers budget agent security alongside their LLM tooling rather than their API program, Salt's argument that every agent action is an API call loses its procurement force.
Problem & Market Salt Security sells to large enterprises whose APIs have multiplied beyond what security teams can inventory or govern…

Salt Security sells to large enterprises whose APIs have multiplied beyond what security teams can inventory or govern. The company's pages name the concrete failures it hunts, exposed internal APIs, authentication and authorization weaknesses, hardcoded tokens and credentials, and risky configurations that nobody notices until an attacker does.

In 2026 the company widened the problem to AI agents. Its March 2026 platform announcement argues that agents create risk through what they do across MCP servers and APIs rather than through what models say, and Gartner research relayed by Help Net Security projects that by 2028 most API consumption will come from AI agents rather than human developers.

Outside corroboration now reaches past a single Gartner line. KuppingerCole's 2025 review of the market states that you cannot secure AI without securing APIs, the same framing Salt leads with, which moves the problem statement from vendor assertion toward analyst consensus. The quantified pain still runs through Salt's own survey research, such as the 92 percent of organizations it calls unprepared, so the scale of the problem stays vendor-produced even as its shape is independently shared. [s6, s7, s13, s25, s20]

Product Capabilities The Salt Agentic Security Platform covers three phases on one graph, discovery of every API, agent, and MCP server, posture analysis of the misconfigurations and excessive permissions among them, and runtime detection that flags abuse as it happens…

The Salt Agentic Security Platform covers three phases on one graph, discovery of every API, agent, and MCP server, posture analysis of the misconfigurations and excessive permissions among them, and runtime detection that flags abuse as it happens. The platform page names API discovery and posture, while the homepage and the free assessment spell out discovery of shadow agents and undocumented MCP servers. The runtime page describes Salt Collect observing real traffic, and partner documentation describes behavioral baselines spanning hundreds of attributes for each user or entity.

The 2026 additions extend the same machinery to AI assets. The platform pairs posture management with detection and response across LLM connections, MCP servers, and APIs, Siemens describes using it to scale AI across its software business, and Salt Code carries policy enforcement into AI coding assistants including Claude, Cursor, GitHub Copilot, Windsurf, Codex, and Gemini CLI. A free assessment maps an organization's agentic attack surface starting from a provided domain, with no internal access required.

External validation now runs through two analyst sources rather than one. KuppingerCole evaluated the platform for its 2025 Leadership Compass and, in the placement the company announced, named Salt an Overall Leader, and Gartner Peer Insights carries a 4.6 rating across 56 customer ratings. The site still offers no public documentation portal and routes access through a demo request rather than a self-service trial, so the visible capability depth is real but analyst-mediated. [s2, s1, s7, s5, s9, s19, s25, s21, s24]

Competitive Positioning Salt Security competes on two fronts, consolidated platforms and repositioning specialists…

Salt Security competes on two fronts, consolidated platforms and repositioning specialists. Akamai bought Noname in 2024 for $450 million to fold API security into its edge business, Harness completed a merger with Traceable in March 2025, and independent rivals Cequence and Wallarm have rebranded around securing AI agents and workloads, the same turn Salt made in March 2026.

Against the consolidators, Salt argues architecture. Its comparison page positions Akamai's offering as API security bolted onto a WAF and its own platform as built for the agentic attack surface, vendor framing that nonetheless names the right incumbent. The CrowdStrike relationship gives Salt an ally whose ecosystem reaches buyers its own sales force would not.

Analyst placement validates the position while shortening its shelf life. KuppingerCole's evaluation means buyers can shortlist Salt without coaching, and every platform vendor weighing a Noname-style acquisition reads the same market the analysts cover. [s15, s29, s30, s23, s10, s16, s25]

Go-to-Market & Traction Named customers anchor the traction story across regulated and industrial sectors…

Named customers anchor the traction story across regulated and industrial sectors. A Siemens security officer endorses the agentic platform on the record, and the customers page logo wall plus matching case-study pages name accounts including Standard Bank Group, SoFi, Cathay Bank, Hyundai, Stryker, Luxottica, and Carrefour.

Independent corroboration of adoption now exists beyond the vendor's logo wall. Gartner Peer Insights carries a 4.6 rating across 56 customer ratings, with reviewers describing deployments, which is outside evidence the customer count alone does not provide. The partner program lists technology integrations with CrowdStrike, Wiz, Google Cloud, Azure, AWS, Kong, and HCL AppScan alongside channel partners M3corp and Iris Networks, and SecurityWeek reported a strategic CrowdStrike investment in 2022 that deepened that alliance beyond co-marketing.

The independent record of revenue still ends with the 2022 funding coverage. SC Media verified the $140 million round and $1.4 billion valuation in February 2022, while the company's own releases and surveys carry every later customer-count and growth claim. [s18, s31, s24, s32, s16, s12]

Team & Credibility Co-founders Roey Eliyahu and Michael Nicosia still run Salt Security as CEO and COO, and the published bench includes a chief marketing officer, chief financial officer, and executive VP of technologies…

Co-founders Roey Eliyahu and Michael Nicosia still run Salt Security as CEO and COO, and the published bench includes a chief marketing officer, chief financial officer, and executive VP of technologies. The about page describes the founders as cybersecurity entrepreneurs who started Salt in 2018.

Salt Labs carries the team's public technical credibility, and that record is now corroborated outside the company. The Hacker News covered its Expo OAuth disclosure, which NVD rated critical as CVE-2023-28131 at 9.6, and TechTarget covered its ChatGPT plugin research, a sustained and independently documented stream of in-domain API vulnerability work. The recurring State of API Security report adds to the same research voice.

That independently documented research record is a stronger team-credibility signal than founder pedigree alone, and it is what the score depends on. [s3, s8, s26, s28, s27]

Trust Readiness Salt Security announced completing a SOC 2 audit on its own blog, tying the audit to the controls behind its cloud service…

Salt Security announced completing a SOC 2 audit on its own blog, tying the audit to the controls behind its cloud service. That post is dated January 2019 and is not surfaced from the current footer, so the attestation reads as old and buried. The company surfaces no current trust portal or vulnerability disclosure policy in its public pages as of June 2026, and newer assurances such as ISO 27001 or FedRAMP are neither displayed nor independently inspectable, a notable gap for a vendor whose collectors watch customers' API traffic.

Compliance positioning and the customer roster stand in for current attestations. The posture product sells audit readiness, a dedicated EU AI Act page targets incoming AI regulation, and banks and a credit union among named accounts suggest Salt clears regulated-buyer diligence, though the public pages do not document those reviews. [s11, s6, s31]

Competitors Akamai, Cequence, Wallarm, Traceable…
Company Relationship Note Compare
Akamai competes with Sells API security through the line built on its 2024 Noname acquisition, and is the incumbent Salt names on its own comparison page. N/AWe scored these companies at different scopes, so the totals measure different things.
Cequence competes with Markets a platform that secures how humans, bots, and AI agents access applications and data, the same API-to-agent arc Salt is pursuing.
Wallarm competes with API security vendor that now brands its offering as an AI control platform for securing AI workloads.
Traceable competes with API security vendor merged into Harness that sells application and API security at enterprise scale from inside a software delivery platform.

Add analyzed competitors to compare them side by side with Salt Security.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 14 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

Salt Security's staying power mixes documented research and slow customer exits. Salt Labs has published API vulnerability findings for years, and one, an account-takeover flaw, carries an NVD record rated critical. Exits are slow because a departing customer must re-plumb traffic mirroring and give up baselines learned from its own traffic, and its named bank and credit union customers likely bring procurement and legal review to a swap. Salt's partner pages describe per-user behavioral state across hundreds of attributes, which is hard to replicate. Yet customers buy software rather than judgment or accountability, no certification in the cited record blocks a rival, and the claim that research findings sharpen detection is Salt's own. Salt holds a modest edge, not yet a durable one.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 Customers buy a software platform that discovers, scores, and blocks. No managed service, accountability acceptance, or judgment layer is part of the public offer.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Behavioral baselines learned per environment, traffic-mirroring plumbing, and integrations across gateways, clouds, and EDR create real friction, but no network effects or regulatory residency lock appear in public materials.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 Salt sells audit readiness, offers EU AI Act alignment as a product feature, and announced its own SOC 2 audit. The cited record shows only ordinary commercial assurance and no authorization that would block a replacement, so what it documents is table-stakes a rival could match.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Real-time behavioral analysis of enterprise API traffic, which Salt's partner pages describe as stateful baselining across hundreds of attributes per user or entity and correlation across millions of users under adversarial pressure, is ML and real-time systems engineering rather than assembly work, and KuppingerCole evaluated the product for its 2025 Leadership Compass.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 3/3 Named customers include global banks, a credit union, and industrial enterprises, and Gartner Peer Insights carries 56 user reviews at a 4.6 rating, with no self-service path, so a replacement decision likely runs through regulated enterprise procurement and legal review rather than a quick swap.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 2/3 The platform observes and governs traffic out of band, so applications do not depend on it to function, while its graph spans enough surfaces to be more than a point application.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 2/3 Patented AI the company cites on its customer and partner pages, behavioral baselines accumulated per environment, and a research arm whose findings are independently documented down to an NVD-rated CVE are accumulated assets, but the flywheel claim that research feeds detection is the vendor's own and per-tenant baselines are recreatable by a rival given time.
Strategic Market Segmentation Salt Security sells globally to large enterprises, and the named customer set shows where the platform lands…

Salt Security sells globally to large enterprises, and the named customer set shows where the platform lands. The customers page and its case-study roster name financial institutions such as Standard Bank Group, Cathay Bank, SoFi, and Solaris, alongside industrial and consumer names including Siemens, Hyundai, Stryker, Luxottica, and Carrefour. The spread suggests the company segments by API exposure and regulatory pressure rather than by vertical.

The newest public proof of demand is current, which matters for a vendor founded in 2018 rather than a recent entrant. Siemens went on record in March 2026 about running the agentic platform, and the company repositioned its entire pitch after the current model generation shipped rather than leaving it where the API security market settled. Release activity in the past two quarters, a new platform in March and Salt Code in June, is category-level change rather than incremental polish.

The economic buyer the materials address is the security leader who already owns an API security line item, while the assessment-led entry point targets the CISO confronting unsanctioned AI adoption. Persona work below that level stays generic on public pages, and no pricing page exists to reveal segment tiers.

Product Capabilities & AI Advantages The claimed advantage is behavioral context accumulated from traffic rather than a wrapped frontier model…

The claimed advantage is behavioral context accumulated from traffic rather than a wrapped frontier model. Salt's partner documentation describes mirroring API traffic into the platform, where models baseline typical behavior across hundreds of attributes per user or entity and flag deviations, and the customers page credits patented AI that correlates the activity of millions of users in parallel. The homepage frames the agentic extension as the Agentic Security Graph spanning every agent, MCP server, and API.

The agentic platform extends the same graph thinking to AI assets. Salt's homepage says discovery maps every agent, MCP server, and API, posture management analyzes those components for misconfigurations, excessive permissions, and exposed credentials, and runtime protection covers API activity generated by agents and MCP tool usage. Salt Code pushes policy enforcement into AI coding assistants, with Claude, Cursor, GitHub Copilot, Windsurf, Codex, and Gemini CLI named at launch.

External validation now runs through analyst coverage and user reviews. KuppingerCole listed Salt among the vendors it evaluated for its 2025 Leadership Compass and, in the placement the company announced, named it an Overall Leader, while Gartner Peer Insights carries a 4.6 rating across 56 customer ratings that Gartner presents as individual end-user opinions rather than its own analyst view. The site exposes no public documentation portal or sandbox and routes access through a demo request rather than a self-service trial, so an evaluator outside a sales motion sees marketing pages, the free assessment, analyst coverage, and Salt Labs research rather than testable product.

Sales Engagement & Go-to-Market Salt Security runs a hired, channel-assisted enterprise motion, the stage-appropriate shape for a company of this maturity…

Salt Security runs a hired, channel-assisted enterprise motion, the stage-appropriate shape for a company of this maturity. A chief marketing officer and chief financial officer appear on the published leadership team, executives such as VP of Product Strategy Nick Rago front product launches, and CEO Roey Eliyahu handles analyst and press commentary. What the cited pages establish is a specialist executive bench rather than a founder-only front line, and no sales leadership role appears among the named executives.

Distribution spreads across technology and channel partners. The partner program pairs integrations with CrowdStrike, Wiz, Google Cloud, Azure, AWS, Kong, and HCL AppScan with channel partners M3corp and Iris Networks. The CrowdStrike relationship runs deeper than co-marketing, because SecurityWeek reported a strategic investment from CrowdStrike in 2022 alongside joint integrations.

Independent demand evidence now reaches past the vendor's own logo wall. Gartner Peer Insights carries a 4.6 rating across 56 customer ratings, with reviewers describing live deployments, outside corroboration the customer count alone does not provide. The assessment-led top of funnel asks only for a domain and promises findings without agents, tickets, or internal access, while demo access otherwise requires a request form.

Pricing Model Salt Security publishes no pricing, and the site has no pricing page at all, which signals large negotiated deals aimed at enterprise procurement…

Salt Security publishes no pricing, and the site has no pricing page at all, which signals large negotiated deals aimed at enterprise procurement. Public materials give an evaluator no unit to compare against the size of the problem, the pattern that fits incumbents in a budget line rather than challengers trying to reframe one.

An outside description of the model now exists where the vendor's own pages stay silent. Gartner Peer Insights describes the platform as subscription priced by the volume of API traffic and the features selected, which is an outside read on the metering even if the figures stay private. Whether agent and MCP coverage prices separately from API coverage is still undisclosed, a question the agentic expansion makes commercially significant for renewal conversations.

The assessment-led entry point is the one visible packaging signal. Salt offers discovery of shadow agents and exposed APIs up front, and the paid contract covers the posture and runtime layers that act on those findings, an inference from the page structure that the Gartner pricing note broadly supports.

Product Delivery & Operations For API runtime protection, the cited pages establish out-of-band analysis of mirrored API traffic, and they do not describe how that analysis is hosted…

For API runtime protection, the cited pages establish out-of-band analysis of mirrored API traffic, and they do not describe how that analysis is hosted. The partner pages describe mirroring API traffic from cloud networks into the platform, the runtime page describes Salt Collect analyzing real traffic, and integration pages cover AWS, Azure, GCP, Kong, HCL, GitHub, and CrowdStrike, the surfaces where enterprise API traffic and findings already live. Out-of-band collection keeps the product off the request flow, which lowers deployment risk relative to inline gateways.

Time-to-value claims center on discovery. The agentic assessment promises a mapped attack surface with no agents, no tickets, and no internal access, and the homepage makes an in-minutes claim for seeing the agentic graph. Operational collateral such as SLAs, uptime commitments, or a status page does not appear among the site's public pages.

Earning Customers' Trust Salt Security announced completing a SOC 2 audit on its own blog, where it ties the audit to the controls behind its cloud service, but that post is dated January 2019, so the dated attestation reads as old…

Salt Security announced completing a SOC 2 audit on its own blog, where it ties the audit to the controls behind its cloud service, but that post is dated January 2019, so the dated attestation reads as old. The site's navigation links a Trust Center described as security and compliance information, and the cited record does not enumerate the current attestations it lists. A vulnerability disclosure policy does not appear among the fetched pages, a gap that stands out for a vendor whose collectors observe customers' API traffic.

The customer roster and the compliance positioning stand in for the attestations the fetched record can inspect. Banks and a credit union among named customers suggest passed procurement diligence, the posture product sells audit readiness, and a dedicated EU AI Act compliance page targets the regulation arriving around enterprise AI. Salt Labs gives the company an outward research voice that security buyers will read as maturity, though research output is not a compliance posture.

Platform Strategy & Ecosystem Positioning Salt positions as a platform, and the brand now says so explicitly…

Salt positions as a platform, and the brand now says so explicitly. The Agentic Security Platform name spans discovery, posture, and runtime on one graph, Salt Code extends the same platform into developer tooling, and the integration surface across gateways, WAFs, clouds, EDR, and code repositories is how the graph gets its data. The public positioning presents these modules as operating around the same agent, MCP, and API graph.

Distribution assets exist that a copycat could not assemble by writing software. The partner network pairs cloud and security-platform integrations with channel partners, the CrowdStrike alliance includes a strategic investment and joint integrations, and KuppingerCole's leadership placement is analyst standing that takes years to earn. Buyers encounter Salt through clouds, channel partners, and a major EDR vendor's ecosystem rather than only through its own sales force. The moat holds better against startups than against edge platforms that already sit in the traffic flow.

Third parties building on Salt are not visible. The ecosystem runs inward, with partners feeding the graph, rather than outward through public APIs and an app marketplace, so network-effect platform economics remain ambition rather than evidence.

Team & Execution Capability Co-founders Roey Eliyahu and Michael Nicosia still run the company they started, as CEO and COO…

Co-founders Roey Eliyahu and Michael Nicosia still run the company they started, as CEO and COO. The about page describes founding by cybersecurity entrepreneurs in 2018, and the published bench adds a chief marketing officer, chief financial officer, and executive VP of technologies, the organizational shape of a company past its founder-only phase.

Salt Labs is the team's public technical face, and its output is now corroborated outside the company. The Hacker News covered its Expo OAuth disclosure, which NVD rated critical as CVE-2023-28131 at 9.6, and TechTarget covered its ChatGPT plugin research, a sustained and independently documented stream of in-domain API vulnerability work that the recurring State of API Security report reinforces. For buyer-facing credibility, the research organization does the work that individual founder pedigree does at younger companies.

That independently documented research record is the credibility signal the score depends on, stronger than founder pedigree alone.

Sources

Company Detail Sources (6)
Id Source Tier Accessed
f1 Salt Security homepage official 2026-06-11
f2 About Salt Security page (2018 founding) official 2026-06-11
f3 Salt Agentic Security Platform launch announcement (PR Newswire, March 18, 2026) press 2026-06-11
f4 Salt Security Series D announcement (PR Newswire, February 10, 2022) press 2026-06-29
f5 Agentic Security Platform page official 2026-06-11
f6 Salt Security customers page official 2026-06-11
Profile Analysis Sources (32)
Id Source Tier Accessed
s1 Salt Security homepage
“Salt's Agentic Security Graph maps every agent, MCP server, and API in your environment, so you know exactly what your agents are doing and stop them when they overstep.”
official 2026-06-29
s2 Agentic Security Platform page
“Salt's Agentic Security Platform gives you full visibility and control, so you can reduce risk, meet compliance, and stay resilient.”
official 2026-06-29
s3 About Salt Security page
“Roey Eliyahu and Michael Nicosia founded Salt in 2018 when they realized a huge new security risk was being created as applications were being broken into their component parts (APIs) to deliver great customer experiences.”
official 2026-06-29
s4 Salt Security customers page
“Only Salt uses big data and patented artificial intelligence (AI) to analyze and correlate the activity of millions of users in parallel to identify and stop attacks early.”
official 2026-06-29
s5 Salt Protect runtime protection page
“Salt Collect analyzes real traffic to uncover vulnerabilities, misconfigurations, and data exposure.”
official 2026-06-29
s6 API governance, posture and compliance page
“Stop risky APIs before they're exploited. And stay audit-ready.”
official 2026-06-29
s7 Agentic security risk assessment page
“Shadow AI agents, undocumented MCP servers, and exposed APIs are already interacting with your corporate data. Find them before attackers do.”
official 2026-06-29
s8 Salt Labs research page
“Salt Labs identifies API threats and vulnerabilities in the wild across organizations around the globe. Our in-depth reports document the steps of an exploit, including the processes and tooling, to reveal an attacker.”
official 2026-06-29
s9 Salt Security partners page
“The platform maintains state across 100s of attributes of typical behavior for each user or entity, including aspects such as consistency of parameter input, frequency of requests, volume of response, and devices or addresses typically used.”
official 2026-06-29
s10 Salt vs Akamai comparison page
“Akamai acquired Noname in 2024 to add API discovery to its edge and WAF platform.”
official 2026-06-29
s11 Salt Security blog: completed SOC 2 audit (January 28, 2019)
“We're Committed To Security and Have SOC 2 To Prove It”
official 2026-06-29
s12 SC Media coverage of the Salt Security Series D (February 10, 2022)
“application programming interface (API) company Salt Security on Thursday announced $140 million in Series D funding that takes its valuation to $1.4 billion”
press 2026-06-29
s13 Help Net Security on Salt's AI agent protections (September 16, 2025)
“Gartner also projects that by 2028, "80% of organizations will see AI agents consume the majority of their APIs, rather than human developers."”
press 2026-06-29
s14 IT Security Guru on the Salt Agentic Security Platform launch (March 19, 2026)
“The Salt Agentic Security Platform gives security teams a unified way to discover, visualise, govern and protect this entire Agentic Security Graph rather than just individual components within it.”
press 2026-06-29
s15 TechCrunch on Akamai's acquisition of Noname (May 7, 2024)
“Akamai on Tuesday said it has agreed to buy Noname in a $450 million deal.”
press 2026-06-29
s16 SecurityWeek on CrowdStrike's investment in Salt Security (September 20, 2022)
“Endpoint detection and response pioneer CrowdStrike is elbowing its way into new security markets with a planned acquisition of attack surface management startup Reposify and a strategic investment in API security vendor Salt Security.”
press 2026-06-29
s17 Salt Security Series D announcement (PR Newswire, February 10, 2022)
“This round brings the company's total funding to $271 million, with $210 million raised in the last 12 months.”
press 2026-06-29
s18 Salt Agentic Security Platform launch announcement (PR Newswire, March 18, 2026)
“The Agentic Security Platform has already given us improved visibility and protection that we need to confidently scale AI across the Siemens Software business.”
press 2026-06-29
s19 Salt Code launch announcement (PR Newswire, June 1, 2026)
“Claude, Cursor, GitHub Copilot, Windsurf, Codex and Gemini CLI now generate policy-compliant code by default, from prompt to production.”
press 2026-06-29
s20 State of AI and API Security report announcement (PR Newswire, April 8, 2026)
“92% of organizations lack the advanced security maturity required to defend these environments.”
press 2026-06-29
s21 KuppingerCole recognition announcement (PR Newswire, August 20, 2025)
“has been named an Overall Leader in the KuppingerCole Leadership Compass for API Security and Management 2025. The company was also recognized as a Leader in the Product, Innovation, and Market categories”
press 2026-06-29
s22 AI agent API actions announcement (PR Newswire, September 2025)
“New Salt research shows that only 37% of organizations using agentic AI have a dedicated API security solution, 48% run 6-20 agent types, widening the API attack surface.”
press 2026-06-29
s23 Harness and Traceable complete merger announcement (PR Newswire, March 4, 2025)
“announced it has completed its merger with Traceable, the next-generation API Security Platform, effective March 4, 2025.”
press 2026-06-29
s24 Gartner Peer Insights: Salt Security API Protection Platform reviews and ratings (updated October 13, 2025)
“4.6 (56 Ratings). Rating Distribution 5 Star 68% 4 Star 29% 3 Star 4%”
research 2026-06-29
s25 KuppingerCole Leadership Compass: API Security and Management 2025 (Alexei Balaganski)
“Salt Security - API Security Platform”
research 2026-06-29
s26 The Hacker News on the Salt Labs Expo OAuth disclosure, CVE-2023-28131 (May 27, 2023)
“The shortcoming, assigned the CVE identifier CVE-2023-28131, has a severity rating of 9.6 on the CVSS scoring system. API security firm Salt Labs said the issue rendered services using the framework susceptible to credential leakage.”
research 2026-06-29
s27 TechTarget on Salt Labs research into ChatGPT plugin vulnerabilities (March 13, 2024)
“Salt Labs researchers are calling on OpenAI to clarify its documentation and on developers to be more aware of potential security vulnerabilities when working with ChatGPT.”
research 2026-06-29
s28 NVD record for CVE-2023-28131, the Salt Labs Expo OAuth flaw (CVSS 9.6 critical)
“A vulnerability in the expo.io framework allows an attacker to take over accounts and steal credentials on an application/website that configured the "Expo AuthSession Redirect Proxy" for social sign-in.”
research 2026-06-29
s29 Cequence homepage
“Secure the agentic enterprise. Every human, bot, and agent in your environment. Verified by what they do. Contained the moment they stray.”
other 2026-06-29
s30 Wallarm homepage
“Wallarm | AI Control Platform - Secure Every AI Workload”
other 2026-06-29
s31 Salt Security customers page logo wall and case-study roster
“Customer logo wall and case-study pages name Standard Bank Group, Cathay Bank, First City Monument Bank, Veridian Credit Union, SoFi, Solaris, Jemena, Hyundai, Stryker, Luxottica, and Carrefour.”
official 2026-06-29
s32 Salt Security partners page technology and channel roster
“Technology partners include CrowdStrike, Wiz, Google Cloud, Microsoft Azure, AWS, Kong, and HCL AppScan, and channel partners include M3corp and Iris Networks.”
official 2026-06-29
Deep-Dive Sources (34)
Id Source Tier Accessed
s1 Salt Security homepage
“Salt's Agentic Security Graph maps every agent, MCP server, and API in your environment, so you know exactly what your agents are doing and stop them when they overstep.”
official 2026-06-29
s2 Agentic Security Platform page
“Salt's Agentic Security Platform gives you full visibility and control, so you can reduce risk, meet compliance, and stay resilient.”
official 2026-06-29
s3 About Salt Security page
“Roey Eliyahu and Michael Nicosia founded Salt in 2018 when they realized a huge new security risk was being created as applications were being broken into their component parts (APIs) to deliver great customer experiences.”
official 2026-06-29
s4 Salt Security customers page
“Only Salt uses big data and patented artificial intelligence (AI) to analyze and correlate the activity of millions of users in parallel to identify and stop attacks early.”
official 2026-06-29
s5 Salt Protect runtime protection page
“Salt Collect analyzes real traffic to uncover vulnerabilities, misconfigurations, and data exposure.”
official 2026-06-29
s6 API governance, posture and compliance page
“Stop risky APIs before they're exploited. And stay audit-ready.”
official 2026-06-29
s7 Agentic security risk assessment page
“No agents. No IT tickets. No internal access required.”
official 2026-06-29
s8 Salt Labs research page
“Salt Labs identifies API threats and vulnerabilities in the wild across organizations around the globe. Our in-depth reports document the steps of an exploit, including the processes and tooling, to reveal an attacker.”
official 2026-06-29
s9 Salt Security partners page
“The platform maintains state across 100s of attributes of typical behavior for each user or entity, including aspects such as consistency of parameter input, frequency of requests, volume of response, and devices or addresses typically used.”
official 2026-06-29
s10 Salt vs Akamai comparison page
“Akamai acquired Noname in 2024 to add API discovery to its edge and WAF platform.”
official 2026-06-29
s11 Salt Security blog: completed SOC 2 audit (January 28, 2019)
“We're Committed To Security and Have SOC 2 To Prove It”
official 2026-06-29
s12 SC Media coverage of the Salt Security Series D (February 10, 2022)
“application programming interface (API) company Salt Security on Thursday announced $140 million in Series D funding that takes its valuation to $1.4 billion”
press 2026-06-29
s13 Help Net Security on Salt's AI agent protections (September 16, 2025)
“Gartner also projects that by 2028, "80% of organizations will see AI agents consume the majority of their APIs, rather than human developers."”
press 2026-06-29
s14 IT Security Guru on the Salt Agentic Security Platform launch (March 19, 2026)
“The Salt Agentic Security Platform gives security teams a unified way to discover, visualise, govern and protect this entire Agentic Security Graph rather than just individual components within it.”
press 2026-06-29
s15 TechCrunch on Akamai's acquisition of Noname (May 7, 2024)
“Akamai on Tuesday said it has agreed to buy Noname in a $450 million deal.”
press 2026-06-29
s16 SecurityWeek on CrowdStrike's investment in Salt Security (September 20, 2022)
“Endpoint detection and response pioneer CrowdStrike is elbowing its way into new security markets with a planned acquisition of attack surface management startup Reposify and a strategic investment in API security vendor Salt Security.”
press 2026-06-29
s17 Salt Security Series D announcement (PR Newswire, February 10, 2022)
“This round brings the company's total funding to $271 million, with $210 million raised in the last 12 months.”
press 2026-06-29
s18 Salt Agentic Security Platform launch announcement (PR Newswire, March 18, 2026)
“The Agentic Security Platform has already given us improved visibility and protection that we need to confidently scale AI across the Siemens Software business.”
press 2026-06-29
s19 Salt Code launch announcement (PR Newswire, June 1, 2026)
“Claude, Cursor, GitHub Copilot, Windsurf, Codex and Gemini CLI now generate policy-compliant code by default, from prompt to production.”
press 2026-06-29
s20 State of AI and API Security report announcement (PR Newswire, April 8, 2026)
“92% of organizations lack the advanced security maturity required to defend these environments.”
press 2026-06-29
s21 KuppingerCole recognition announcement (PR Newswire, August 20, 2025)
“has been named an Overall Leader in the KuppingerCole Leadership Compass for API Security and Management 2025. The company was also recognized as a Leader in the Product, Innovation, and Market categories”
press 2026-06-29
s22 AI agent API actions announcement (PR Newswire, September 2025)
“New Salt research shows that only 37% of organizations using agentic AI have a dedicated API security solution, 48% run 6-20 agent types, widening the API attack surface.”
press 2026-06-29
s23 Harness and Traceable complete merger announcement (PR Newswire, March 4, 2025)
“announced it has completed its merger with Traceable, the next-generation API Security Platform, effective March 4, 2025.”
press 2026-06-29
s24 Gartner Peer Insights: Salt Security API Protection Platform reviews and ratings (updated October 13, 2025)
“4.6 (56 Ratings). Rating Distribution 5 Star 68% 4 Star 29% 3 Star 4%”
research 2026-06-29
s25 KuppingerCole Leadership Compass: API Security and Management 2025 (Alexei Balaganski)
“Salt Security - API Security Platform”
research 2026-06-29
s26 The Hacker News on the Salt Labs Expo OAuth disclosure, CVE-2023-28131 (May 27, 2023)
“The shortcoming, assigned the CVE identifier CVE-2023-28131, has a severity rating of 9.6 on the CVSS scoring system. API security firm Salt Labs said the issue rendered services using the framework susceptible to credential leakage.”
research 2026-06-29
s27 TechTarget on Salt Labs research into ChatGPT plugin vulnerabilities (March 13, 2024)
“Salt Labs researchers are calling on OpenAI to clarify its documentation and on developers to be more aware of potential security vulnerabilities when working with ChatGPT.”
research 2026-06-29
s28 NVD record for CVE-2023-28131, the Salt Labs Expo OAuth flaw (CVSS 9.6 critical)
“A vulnerability in the expo.io framework allows an attacker to take over accounts and steal credentials on an application/website that configured the "Expo AuthSession Redirect Proxy" for social sign-in.”
research 2026-06-29
s29 Cequence homepage
“Secure the agentic enterprise. Every human, bot, and agent in your environment. Verified by what they do. Contained the moment they stray.”
other 2026-06-29
s30 Wallarm homepage
“Wallarm | AI Control Platform - Secure Every AI Workload”
other 2026-06-29
s31 Salt Security customers page logo wall and case-study roster
“Customer logo wall and case-study pages name Standard Bank Group, Cathay Bank, First City Monument Bank, Veridian Credit Union, SoFi, Solaris, Jemena, Hyundai, Stryker, Luxottica, and Carrefour.”
official 2026-06-29
s32 Salt Security partners page technology and channel roster
“Technology partners include CrowdStrike, Wiz, Google Cloud, Microsoft Azure, AWS, Kong, and HCL AppScan, and channel partners include M3corp and Iris Networks.”
official 2026-06-29
s33 Gartner Peer Insights: Salt Security API Protection Platform pricing overview (updated October 13, 2025)
“Salt Security API Protection Platform software offers a subscription-based pricing model with options typically structured according to the volume of API traffic and selected features.”
research 2026-06-29
s34 Salt Security homepage navigation: Trust Center entry
“Trust Center Security and compliance information”
official 2026-08-05

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.