The Future of AppSec, Written Here
Everything you need to embed security into development with AI-powered application security.
Cloud
AssumeRoleWithWebIdentity WHAT?! Solving the Github to AWS OIDC InvalidIdentityToken Failure LoopWe encountered the InvalidIdentityToken error with the AssumeRoleWithWebIdentity method. This error occurred when running pipelines with an OIDC provider for AWS. We went through a whole process of reAugust 21, 2025
Security
Focusing on the WHY: Jit Enables Developers to Understand the Runtime Context for Security IssuesWhile code and cloud security scanners are great at identifying code flaws and cloud misconfigurations, they can bombard developers with long lists of potential security “issues” – many of which don’tAugust 19, 2025