42Crunch: API DevSecOps guardrails to make AI agents play nice

An Intellyx RSAC 2026 Update

42Crunch Intellyx BrainCandySince APIs are essentially the language of AI interactions, 42Crunch has expanded the scope of its API DevSecOps governance platform to deterministically find and resolve unique vulnerabilities introduced into the API-driven software supply chain through the use of coding agents, MCP servers and LLMs at both design and runtime.

A lot has changed since our coverage of the firm last year. Namely, developers are being incentivized to use Claude Code, Microsoft Copilot and the like within their IDEs to not only code business logic, but generate API contracts and exchange keys and secrets through machine identities that may impact data and workflow sovereignty.

42crunch monitors developer activity, putting security-defined guardrails within the developer’s IDE and lending AppSec skills to agentic workflows. By running thousands of static and dynamic API tests with each pull request, the platform can pinpoint irregularities down to the code level and auto-remediate or alert developers to boundary issues. There’s also a dynamic security scan to find broken authentications and data irregularities at runtime, much like an AI/API firewall.

“Enterprises want to expose their applications to AI, but they might think it is impossible to test thousands of parallel activities at the agent and prompt level, and prevent ungoverned identity propagation. The key is to protect the last layer for compliance, not just for vulnerabilities, to ensure that unauthorized data is not going back to some AI LLM in the cloud,” said Jacques Declas, CEO, 42Crunch, at RSAC 2026.

Copyright ©2026 Intellyx B.V. Intellyx is the change agent analyst firm focused on customer-driven, technology-empowered enterprise transformation. Our thought leadership distills insights across the rapidly evolving enterprise IT landscape, and our advisory helps you and your customers see through the hype and get beyond the fear of technology disruption to take action and realize value through change.  At the time of writing, 42Crunch is not an Intellyx customer. No AI was used to write this article. To be considered for a Brain Candy article, email us at pr@intellyx.com.

SHARE THIS:

Principal Analyst & CMO, Intellyx. Twitter: @bluefug