EveryDev.ai
Sign inSubscribe
  1. Home
  2. Tools
  3. Koidex
Koidex icon

Koidex

Application Security

Koidex detects and eliminates security risks in software your teams rely on — extensions, packages, apps, and AI models — across major marketplaces.

Visit Website

At a Glance

Pricing

Free tier available

Free access to Koidex for individual users to search and view security reports for extensions, packages, and apps.

Enterprise: Custom/contact

Engagement

Available On

macOS
Web
API
Browser
VS Code

Resources

WebsiteDocsllms.txt

Topics

Application SecurityThreat DetectionCode Security

About Koidex

Koidex is a security intelligence platform powered by Koi that helps organizations quickly detect and eliminate risks in the software their teams install and use daily. It covers browser extensions, IDE plugins, npm packages, AI models, and more across major marketplaces including VS Code, JetBrains, Chrome Web Store, Edge Add-ons, Firefox Add-ons, Cursor, Windsurf, and npm. Koidex uses an agentic risk engine that analyzes what software is actually made of — going past labels to real composition and behavior — rather than relying on guesswork or signatures. It surfaces newly caught malware in the wild through its "Catch of the Day" feed and publishes original threat research.

  • Agentic Risk Engine: Uses AI-driven, agentic analysis to inspect the real composition and behavior of extensions, packages, and apps — not just metadata or labels.
  • Multi-Marketplace Coverage: Scans and monitors software across VS Code, JetBrains, Chrome Web Store, Edge Add-ons, Firefox Add-ons, Cursor, Windsurf, npm, PyPI, Hugging Face, MCP, Office Add-ins, Homebrew, and Visual Studio.
  • Discovery: Tracks and manages every piece of software the moment it enters your ecosystem, giving full visibility into installed tools.
  • Guardrails: Enforces policies to prevent risky or unauthorized software from being used by your teams.
  • Governance: Provides oversight and control over the software supply chain across your organization.
  • Remediation: Identifies and helps resolve threats found in installed software, reducing exposure quickly.
  • Catch of the Day: A live feed of newly discovered malware found in the wild across popular marketplaces, backed by original threat research.
  • VS Code Extension: A dedicated Koidex extension for Visual Studio Code lets developers check extension risk directly from their IDE.
  • Enterprise Support: Extended coverage for PyPI, Hugging Face, MCP, Office Add-ins, Homebrew, Visual Studio, and OpenVSX is available for enterprise customers.
Koidex - 1

Community Discussions

Be the first to start a conversation about Koidex

Share your experience with Koidex, ask questions, or help others learn from your insights.

Pricing

FREE

Free Plan Available

Free access to Koidex for individual users to search and view security reports for extensions, packages, and apps.

  • Search extensions and packages across supported marketplaces
  • View security risk reports
  • Access Catch of the Day malware feed
  • VS Code extension support

Enterprise

Enterprise plan with extended marketplace coverage, discovery, guardrails, governance, and remediation for teams.

Custom
contact sales
  • All free features
  • PyPI coverage
  • Hugging Face coverage
  • MCP coverage
  • Office Add-ins coverage
  • Homebrew coverage
  • Visual Studio coverage
  • OpenVSX coverage
  • Discovery: track every software install
  • Guardrails enforcement
  • Governance and policy management
  • Remediation guidance
  • Demo and custom onboarding
View official pricing

Capabilities

Key Features

  • Agentic risk engine for software composition and behavior analysis
  • Multi-marketplace scanning (VS Code, JetBrains, Chrome, Edge, Firefox, npm, etc.)
  • Discovery: track every software install in your ecosystem
  • Guardrails to block risky or unauthorized software
  • Governance and policy enforcement
  • Remediation guidance for detected threats
  • Catch of the Day: live malware feed from the wild
  • Original threat research and publications
  • VS Code extension for in-IDE risk checking
  • Enterprise coverage for PyPI, Hugging Face, MCP, Office Add-ins, Homebrew

Integrations

Visual Studio Code
JetBrains Marketplace
Chrome Web Store
Edge Add-ons
Firefox Add-ons
Cursor
Windsurf
npm
PyPI
Hugging Face
MCP
Office Add-ins
Homebrew
Visual Studio
OpenVSX
API Available
View Docs

Reviews & Ratings

No ratings yet

Be the first to rate Koidex and help others make informed decisions.

Developer

Koi Security

Koi Security builds software supply chain security products that protect organizations from malicious extensions, packages, apps, and AI models. Their flagship platform, Koidex, uses an agentic risk engine to analyze real software composition and behavior across major marketplaces. The team publishes original threat research uncovering malware campaigns affecting millions of users. Koi Security operates offices in Tel Aviv, Israel and Washington D.C.

Founded 2024
Tel Aviv, Israel
$48M raised
124 employees

Used by

Unnamed Fortune 50 organizations
Large BFSI firms
Read more about Koi Security
WebsiteLinkedInX / Twitter
1 tool in directory

Similar Tools

Upwind icon

Upwind

Cloud-native application protection platform (CNAPP) providing runtime security, threat detection, and vulnerability management for cloud infrastructure.

Outtake icon

Outtake

AI-powered digital risk protection platform that detects and dismantles impersonation attacks across domains, social media, apps, and advertisements.

Gecko Security icon

Gecko Security

AI-powered security engineer that detects and fixes business logic and multi-step vulnerabilities with low false positives.

Browse all tools

Related Topics

Application Security

AI tools for securing software applications and identifying vulnerabilities.

27 tools

Threat Detection

AI tools that detect and analyze security threats and anomalies.

10 tools

Code Security

Tools that analyze code for security vulnerabilities and issues.

21 tools
Browse all topics
Back to all tools
Explore AI Tools
  • AI Coding Assistants
  • Agent Frameworks
  • MCP Servers
  • AI Prompt Tools
  • Vibe Coding Tools
  • AI Design Tools
  • AI Database Tools
  • AI Website Builders
  • AI Testing Tools
  • LLM Evaluations
Follow Us
  • X / Twitter
  • LinkedIn
  • Reddit
  • Discord
  • Threads
  • Bluesky
  • Mastodon
  • YouTube
  • GitHub
  • Instagram
Get Started
  • About
  • Editorial Standards
  • Corrections & Disclosures
  • Community Guidelines
  • Advertise
  • Contact Us
  • Newsletter
  • Submit a Tool
  • Start a Discussion
  • Write A Blog
  • Share A Build
  • Terms of Service
  • Privacy Policy
Explore with AI
  • ChatGPT
  • Gemini
  • Claude
  • Grok
  • Perplexity
Agent Experience
  • llms.txt
Theme
With AI, Everyone is a Dev. EveryDev.ai © 2026
Main Menu
  • Tools
  • Developers
  • Topics
  • Discussions
  • News
  • Blogs
  • Builds
  • Contests
Create
Sign In
    Sign in
    0views
    0saves
    0discussions