Endor Labs AURI Reseña
Plataforma de seguridad de aplicaciones nativa de IA que integra detección de vulnerabilidades en agentes de codificación con IA mediante MCP, reduciendo el ruido de alertas hasta un 95 % con análisis de alcance en toda la pila.
72
Actualizado esta semanaPlan gratuito
Ideal para
- equipos de seguridad empresariales
- desarrolladores que usan agentes de codificación con IA
- organizaciones con monorepos multilenguaje
Omita esto si…
- desarrolladores individuales sin requisitos de seguridad
- equipos pequeños que necesitan precios transparentes
What is Endor Labs AURI?
AURI is an AI-native application security platform from Endor Labs, launched in March 2026. It performs deep code reasoning across source code, dependencies, and container images, using full-stack reachability analysis to determine whether a detected vulnerability can actually be triggered in your running application. The result is drastically fewer false positives compared to traditional scanners that flag every CVE regardless of reachability.
Key features and developer experience
AURI integrates directly into AI coding agents via the Model Context Protocol (MCP), so security checks run inside Cursor, Claude Code, or OpenHands without leaving the development workflow. The free CLI tier provides vulnerability detection, secrets scanning, and malware detection with no account required. Paid plans add agentic remediation (automated patch generation), upgrade impact analysis, container scanning, and CI/CD gates. The platform supports 40+ languages with function-level reachability, which is broader than most competitors who limit reachability to Java, JavaScript, and Python.
Pricing breakdown
The free tier covers the CLI, MCP plugin, and Skills integrations: useful for individual developers who want to scan code locally. Core and Pro plans are enterprise-quoted and require a sales conversation. Core adds SCA with reachability, AI model discovery, and SBOM/VEX generation. Pro extends to container scanning, binary scanning, artifact signing, and CI/CD security. Optional add-ons include automated patch application (Patches), consolidated SAST and secrets (CoDe), and first- and third-party SBOM management (SBOM Hub).
When to choose Endor Labs AURI
AURI is the right choice if your team is overwhelmed by false-positive alerts from tools like Snyk or Veracode, works across many languages in a monorepo, or uses AI coding agents and wants security integrated into that workflow rather than as a separate review gate. If you need a self-serve trial with transparent pricing, AURI is not the right fit today. It is best evaluated by security teams at mid-to-large engineering organizations with budget for a security platform.
Precios
Nivel gratuito de CLI y MCP para desarrolladores; planes Core, Pro y complementos con precios cotizados para empresas
Free And PaidPlan gratuito disponible
Ventajas
- Hasta 95 % de reducción de ruido de alertas mediante análisis de alcance en más de 40 lenguajes
- Nivel gratuito de CLI y MCP disponible para todos los desarrolladores sin necesidad de cuenta
- Integración MCP nativa con Cursor, Claude Code y otros agentes de codificación con IA
- Plataforma unificada que cubre SCA, SAST, escaneo de contenedores y seguridad en CI/CD
- Detecta vulnerabilidades nuevas mediante análisis semántico de flujo de datos
Desventajas
- Sin precios públicos para planes pagados; requiere ventas empresariales
- La automatización de correcciones y la integración con CI/CD requieren plan de pago
- La marca AURI se lanzó en marzo de 2026; la dirección del producto aún está evolucionando
Plataformas
webcliapi
Última verificación: 31 de marzo de 2026