Skip to content

akto-api-security/Documentation

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1,042 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

cover coverY coverHeight
.gitbook/assets/Gemini_Generated_Image_em1r4pem1r4pem1r.webp
0
366

What is Akto?

API SecurityDASTAkto AtlasAkto ArgusJoin Discord Community

Akto is a unified Agentic AI, MCP, and API security platform built to secure autonomous AI workflows and modern APIs in production.

Akto has two major security pillars:

🤖 Agentic AI Security

Akto also secures Agentic AI systems, where AI agents interact with tools, APIs, users, and internal systems.

Agentic AI Security in Akto has two distinct products:

Akto Atlas

Agentic AI Security for Employee Endpoints

  • Secures AI agents used by employees
  • Protects internal tools, SaaS actions, and AI-driven workflows
  • Prevents data leakage, prompt abuse, and unsafe agent actions

{% hint style="success" %} 📘 Start here: Akto Altas {% endhint %}

Akto Argus

Agentic AI Security for Homegrown AI

  • Secures internally built AI agents and LLM workflows
  • Monitors agent decisions, tool usage, and execution paths
  • Detects:
    • Prompt injection
    • Privilege misuse
    • Unsafe autonomous actions

{% hint style="success" %} 📘 Start here: Akto Argus {% endhint %}

🔐 API Security

Akto’s API Security platform helps teams discover, test, and monitor APIs continuously using real traffic and dynamic analysis.

It consists of two tightly integrated components:

API Security

Discovery & Runtime

  • Automatically discover APIs from live traffic
  • Maintain a continuously updated API inventory
  • Detect:
    • Shadow and undocumented APIs
    • Sensitive data exposure
    • Authorization and authentication issues at runtime
  • Observe how APIs are actually used in production

{% hint style="success" %} 📘 Start here: Getting Started with API Security {% endhint %}

DAST

Dynamic API Security Testing

  • Context-aware testing using observed API behavior
  • Covers OWASP API Top 10 + business logic vulnerabilities
  • Supports:
    • Manual test runs
    • Scheduled scans
    • CI/CD execution
  • Extremely low false positives

{% hint style="success" %} 📘 Start here: Getting Started with DAST {% endhint %}

{% hint style="warning" %}

Scope of This Documentation

This documentation site only covers: API Security & DAST

For Agentic AI Security, refer to the AI Security documentation portal {% endhint %}

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Contributors 22