Legit Security Unveils Upgraded AI Security Command Center to Tackle AI Code Risks

New updates provide most comprehensive view of when, where, and how AI-generated code, AI models, and MCP servers are used across the SDLC.

BOSTON, Massachusetts September 29, 2025 –  Legit Security, the leader in secure AI development, released a major update to its AI Security Command Center. As vibe coding and AI-first development reshape how software is built, the AI Security Command Center provides the most comprehensive view of when, where, and how AI-generated code, AI models, and MCP servers are used across the software development lifecycle (SDLC), along with the associated AI risks. 

Vibe coding and AI code assistants enable developers to deliver code at a markedly faster pace. But with speed comes risk: AI-generated code often contains vulnerabilities and issues that impact the entire application. In addition, engineers may leverage unapproved or low-reputation AI models outside corporate policy, which poses significant risk due to unknown training data or lack of security guardrails.  

Legit’s AI Security Command Center provides a central view of AI-related risk and metrics that allows CISOs, AppSec teams, and product security teams to understand risk over time and compare AI security postures across applications. Key features and capabilities in Legit’s AI Security Command Center include: 

  • Complete visibility into AI usage: Users instantly see the AI models and MCP servers in their engineering environments, along with areas of risk that must be remediated. The platform also highlights newly introduced components, tracks most frequently used models, and enriches this view with context of each AI model’s reputation. 
  • Detection of risky and unauthorized AI model usage: Low-reputation AI models or those  unapproved by corporate policy create a significant opportunity to introduce risk, especially if they were trained on insecure codebases or lack security guardrails. Legit’s AI Security Command Center delivers an immediate view of models in use, even when an engineer attempts to bypass security processes and policies. 
  • Real-time visibility into AI-related risks: Beyond use of AI, Legit monitors AI-related risks in real-time, including riskiest AI secrets, top AI risk by policy, and the change in AI risk over time. For security teams, this provides a clear mechanism to understand and communicate the impact of AI on the organization’s security posture.  
  • Team- and application-level risk metrics: While AI usage is accelerating, developers’ expertise in these tools may be limited. Legit’s new AI heat map makes it easy to pinpoint teams that introduce the most AI security issues, and to compare AI security across application teams, making it easy to identify where training or other support is needed most. 

“2025 has brought a massive shift in the way developers code. AI tools have made it faster for application teams to deliver, but it has also increased many companies’ security risk levels,” said Yoav Stahl, vice president of product at Legit. “As AI becomes prevalent in nearly every area of development, we consistently hear that security teams lack visibility and a solid understanding of risk. We’re excited to see this latest release fill a very important AppSec gap.” 

Get more details on the Legit AI Security Command Center in our upcoming webinar.

To learn more about the security implications of AI on development, read our new guide, AppSec in the Age of AI. 

 

About Legit Security

The Legit Security ASPM platform is a new way to manage application security in a world of AI-first development, providing a cleaner way to manage and scale AppSec and address risks. Fast to implement, easy to use, and AI-native, Legit has an unmatched ability to discover and visualize the entire software factory attack surface, including a prioritized view of AppSec data from siloed scanning tools. As a result, organizations have the visibility, context, and automation they need to quickly find, fix, and prevent the application risk that matters most. Spend less time chasing low-risk findings, more time innovating.

 

Media Contact for Legit Security:

PANBlast for Legit Security

legitsecurity@panblastpr.com



Get a stronger AppSec foundation you can trust and prove it’s doing the job right.

Request a Demo