HTTP 200 verified twice
Finding your next stop…
Loading the latest directory information.
Loading the latest directory information.
Checkmarx provides an agentic application security platform unifying SAST, secrets detection, IaC, API, and AI-component security across IDE, CI/CD, and MCP-connected workflows. Trusted by 1,800+ customers including 40% of the Fortune 100, and headquartered in Israel.
Start here for the decision-making essentials: what Checkmarx does, who it is for, how it is accessed, and the first-party sources behind this profile.
See official pricing
Read-only public captures of Checkmarx’s homepage. Screenshots are dated, never live embeds, and open full-screen.
Short answers to the questions buyers and builders commonly ask about Checkmarx. Each answer cites the shared ledger below, where every source is listed once.
SAST, Secrets Detection, IaC Security, and API Security built into the IDE and CI/CD · SCA, Malicious Package Protection, Container Security, and Repository Health · AI-BOM generation, model scanning, MCP server discovery, and agent governance for AI compo · DAST validates exploitability against running applications and APIs
SAST, Secrets Detection, IaC Security, and API Security — built into the IDE and CI/CD where developers already work.
Trusted by 1,800+ customers including 40% of the Fortune 100
Trusted by 1,800+ customers including 40% of the Fortune 100.
REST APIs available for traceability across branches and reporting
Meet regulatory needs with full traceability across REST APIs and branches
MCP, IDE, and PR hooks enforce security at every agentic control point · Supports 75+ languages and 100+ frameworks plus feedback tools and SCM systems
with MCP, IDE, and PR hooks that enforce security at every agentic control point.
Customer data encrypted at rest using AES-256 · Communications encrypted in transit using HTTPS and TLS 1.2 · Daily backups of customer data retained for seven days · Client data deleted within 7 days of receiving a formal deletion request
We encrypt all customer data at rest using industry standard encryption protocols, such as AES-256
ASPM documentation at docs.checkmarx.com covering Risk Orchestration, integrations, and AP · Standard Support offers P1 (Critical) response within 6 hours with coverage during working · Premium Support offers P1 (Critical) response within 2 hours with 24/7 coverage
You can explore all Checkmarx ASPM documentation at docs.checkmarx.com — covering Risk Orchestration, posture management, integrations, and the full API reference.
This profile connects the jobs Checkmarx is described as handling with its delivery model, access options and the subjects used to match it to related products in this directory.
Each fact points to a recorded source, making it easy to distinguish verified product information from claims that need checking.
HTTP 200 verified twice
Agentic Application Security Testing Software Platform | Checkmarx
Agentic Application Security Testing Software Platform · SAST, Secrets Detection, IaC Security, and API Security built into the IDE and CI/CD · SCA, Malicious Package Protection, Container Security, and Repository Health
Agentic Application Security Testing Software Platform
SAST, Secrets Detection, IaC Security, and API Security built into the IDE and CI/CD
SCA, Malicious Package Protection, Container Security, and Repository Health
AI-BOM generation, model scanning, MCP server discovery, and agent governance for AI components
DAST validates exploitability against running applications and APIs
Checkmarx One Application Security Platform
MCP, IDE, and PR hooks enforce security at every agentic control point
Supports 75+ languages and 100+ frameworks plus feedback tools and SCM systems
REST APIs available for traceability across branches and reporting
A concise view of the jobs, capabilities and integrations described in the recorded product sources.
Documented product formats, platforms and official distribution destinations. Availability can vary by region and plan.
A concise history of software releases and material product changes. Events appear only when a dated source supports what changed.
Showing the newest updates and meaningful milestones. Open an entry for its summary and source.
Checkmarx launched Fusion with hybrid scanning in July 2026, combining multiple scanning approaches to broaden vulnerability detection across application code.
View source [6]Checkmarx unveiled self-healing application security capabilities within its Assist Agent Family in July 2026, adding autonomous remediation to its agent lineup.
View source [6]Checkmarx One for Government achieved FedRAMP Moderate certification in July 2026, authorizing deployment of the platform by U.S. federal agencies.
View source [6]Checkmarx released complete AI asset visibility and governance tooling for the software supply chain in June 2026, targeting the shadow AI governance gap.
View source [6]Checkmarx was positioned as a Leader in the 2026 Gartner Magic Quadrant for Software Supply Chain Security in June 2026.
View source [6]Facts, answers, structured details, milestones and primary resource links cite this shared ledger. Each external page appears once; release tags from the same GitHub project are grouped under one release history.
Trusted by 1,800+ customers including 40% of the Fortune 100
Offices in Tel Aviv, Paramus, London, Madrid, Braga, Rome, Pune, Mumbai, Bangalore, and Manila
ASPM documentation at docs.checkmarx.com covering Risk Orchestration, integrations, and API reference
The world runs on code. We secure it.
Standard Support offers P1 (Critical) response within 6 hours with coverage during working hours, business days
Premium Support offers P1 (Critical) response within 2 hours with 24/7 coverage
Customer data encrypted at rest using AES-256
Communications encrypted in transit using HTTPS and TLS 1.2
Daily backups of customer data retained for seven days
Client data deleted within 7 days of receiving a formal deletion request
Cyber Posture Rating of 99% via Panorays vendor risk management assessments
Checkmarx One platform hosted on AWS
Checkmarx Fusion available in Early Access for SAST within Checkmarx One
Application Security (AppSec) platform covering application security, DevSecOps, and AI-powered security
Responsible AI Framework guiding ethical and effective use of AI across application security solutions
Agentic Application Security Testing Software Platform · The world runs on code. We secure it. · Unified in Checkmarx One Application Security Platform
Checkmarx
The world runs on code. We secure it.
AI-BOM generation, model scanning, MCP server discovery, and agent governance for every AI component
API discovery from source code and documentation including shadow and zombie APIs, with SAST-DAST correlation
MCP, IDE, and PR hooks that enforce security at every agentic control point
75+ languages, 100+ frameworks, feedback tools, and SCM systems across CI/CD and IDE workflows
1,800+ customers including 40% of the Fortune 100
Premium Support: 24/7 coverage, P1 Critical 2-hour response, P2 Severe 4-hour response, dedicated escalation manager, and personalized customer success
Detects, fixes, and verifies security issues as code is created, with reviewable changes that keep risk out of the repo and backlog
Covers application-code vulnerabilities, vulnerable and malicious open-source packages, exposed secrets, Infrastructure as Code misconfigurations, and container-related security risks
Self-healing security for AI-native development and AI coding-agent workflows
Malicious open-source package detection integrated across every stage of the SDLC