Legit and Sweet close the code-to-cloud security gap

Legit

Legit Security, a specialist in agentic application security, and Sweet Security, a cloud security provider, have announced a strategic partnership aimed at bridging the divide between application and cloud security for AI-driven development environments.

The collaboration brings together Legit’s agentic AppSec platform — including its VibeGuard solution — and Sweet’s runtime cloud security capabilities. VibeGuard is designed to secure AI-generated code, agents, and workflows at the point of creation, while Sweet’s platform extends that protection into live cloud environments once applications are deployed, enabling continuous risk management across the full development lifecycle.

The partnership is a direct response to a growing challenge in how organisations approach security. The rapid acceleration of AI-driven code creation is expanding attack surfaces at unprecedented speed, yet most organisations continue to treat application security and cloud security as separate disciplines. This fragmentation leaves exploitable gaps between the two layers. The joint solution is intended to close that divide, linking security from the initial line of code through to how deployed applications behave at runtime. Customers are also able to correlate application-level findings with runtime exposure, enabling teams to prioritise genuinely exploitable threats — such as a hardcoded API credential creating a direct path from code to cloud — rather than sifting through irrelevant alerts.

Legit Security’s platform enables organisations to protect both human- and AI-authored code, as well as coding agents such as Claude and Cursor, and agentic workflows before they ever reach production. Sweet Security then provides runtime visibility and threat detection within live cloud environments, monitoring for anomalous behaviour in deployed applications.

Legit Security co-founder and CEO Roni Fuchs said, “The partnership between Legit and Sweet provides customers the unique ability to understand and mitigate risk from the moment a developer, human or AI, writes a line of code all the way to the cloud. With this level of visibility and control, customers can ensure their applications are secure across the entire software lifecycle from code to runtime.”

Sweet Security co-founder and CEO Dror Kashi said, “As AI transforms how software is built and behaves in production, security can no longer be split between code and runtime. Partnering with Legit brings these two layers – and the steps between them – together, giving customers continuous visibility and security coverage from the moment code is written through production.”

Read the daily RegTech news

Copyright © 2026 RegTech Analyst

Enjoyed the story? 

Subscribe to our weekly RegTech newsletter and get the latest industry news & research

Copyright © 2018 RegTech Analyst

Investors

The following investor(s) were tagged in this article.