Skip to main content

As AI Risk Scales and Vulnerabilities Compound, Evo by Snyk Reaches 60% of New Deal Volume

News-Standardbanner

17. September 2026

Three in four customers deploy Evo within the quarter they buy it, using Snyk's independent validation and remediation layer to govern agents and turn findings into fixes.

BOSTON, September 17, 2026 Snyk, the AI security company, today announced that Evo by Snyk, the agent-native layer of the Snyk AI Security platform, now accounts for 60% of the company's new deal volume and is driving a 30% increase in average contract value. Evo has sustained an 81.5% month-over-month customer growth rate since the general availability of its first capability in March 2026, demonstrating how swiftly enterprises are moving AI security from experimentation to production.

Enterprises already find more vulnerabilities than their developers can fix. Across Snyk's 4,800-plus customers, newly introduced issues rose 108% between Q4 2024 and Q1 2026 before agentic code generation reached full scale. AI is now widening that gap at both ends, generating more code and vulnerabilities than humans can review, while enabling attackers to discover and exploit weaknesses at machine speed.

Coding agents introduce a different layer of exposure. They pull in unvetted MCP servers and third-party skills and execute production actions that once required human approval. Traditional tooling scans artifacts, not the toolchain an agent assembles at runtime or the actions it takes with it. The traditional model — find it, log it, wait for a developer — cannot keep pace.

“Vulnerabilities are compounding faster than teams can clear them, and on top of that, agents add a whole new layer of exposure," said Ken MacAskill, chief executive officer of Snyk. "We are in exactly the right place at the right time. We built Evo long before enterprises knew to ask for it, because the answer was never more AI grading its own homework — it has to be independent validation. Not only is Evo growing rapidly, but more than three-quarters of enterprises who bought Evo deployed it in production within the same quarter. It is clear evidence that enterprises are urgently implementing solutions to address growing agentic AI security risks.”

Already operating at enterprise scale
Snyk now processes 2.4 million agent supply-chain scans a month and 4.2 million agent behavior checks a day across more than 417,000 onboarded machines, in deployments that reach into the Fortune 50.

Enterprise security software typically takes two or three quarters to go live. Evo goes live in a single quarter: 76% of customers who bought it in the second quarter were in production before the quarter closed. Much of that rollout happened without announcement — Evo installs into existing agent workflows rather than requiring a change-management program.

One of the largest banks in the United States is centralizing roughly 1,000 internal agent skills for 50,000 developers building with Claude Code. Snyk runs pre-registry risk assessment and continuous scanning across the bank's skill registry. The deployment has been live since July and was built jointly with the bank's own security team.

"The sequence is predictable," said Manoj Nair, Snyk's chief technology officer. "An enterprise introduces coding agents. Then it ships its own AI applications. Then it finds that attackers are probing both at machine speed, chaining the low-severity issues the old model told teams to ignore. Each step adds a surface the previous generation of tooling was never built to see. Evo covers the development loop, the production loop and the adversarial loop, because a loop with a missing segment is not a loop. It is a gap an autonomous attacker will occupy."

The independent validator closing the gap between finding and fixing
Snyk's architecture rests on a single tenet: the generator cannot be the validator, as recent calls to action from top frontier model CEOs for an external enforcement layer have reinforced.

A model that writes code, or that grades its own agent's behavior, has an inherent conflict in certifying that the result is safe to ship. The design shows up in the outcome. Open source issues remediated through Snyk's independent validation layer merge at a 94% higher rate than fixes produced by a frontier model working alone.

Every Evo solution places an independent, deterministic security layer beneath the model, combining the speed and adaptability of AI with the repeatability, application context and security intelligence enterprises need to trust the outcome. Unlike any other offering in the industry, Evo draws on over a decade of application, developer and security context. Snyk is multi-model by design and works across leading model providers because no single model, including any Snyk itself relies on, should be the last word on its own output.

Snyk's VulnBench research found that when the same code and the same prompt were run five identical times, nearly half of the issues flagged by an LLM alone appeared in only one of the five runs; the best-performing model scored 75.4% against Snyk's reference set, a 24.6-point gap to full coverage.

“Security teams do not need another system that simply adds findings to an already unmanageable backlog,” said Nair. “They need a trusted way to turn those findings into fixes and to govern the AI agents increasingly responsible for building and operating software. Evo combines AI-driven action with the application context and deterministic validation required to deliver outcomes enterprises can trust.”

"We're seeing supply-chain attacks, malicious skills and compromised MCP servers enter through the agent's own toolchain, alongside agents taking actions with no guardrails between intent and execution," said Brendan Putek, director of DevOps at Relay Network, a provider of secure customer engagement technology for regulated industries. "Working with Snyk, we landed on what I believe is the right architecture for agentic development security: controls embedded directly into the agent workflow that govern what an agent uses, executes and generates."

Three problems, one platform
Evo applies this shared context and deterministic validation across three connected security problems: untrusted agentic development, ungoverned AI applications and automated AI attacks.

Evo Agentic AppSec puts security agents to work against the application security backlog. Secrets Detection, generally available, identifies exposed credentials before they ship. The Remediation Agent, currently in open preview, automatically fixes the issues it finds. The Agentic AppSec Agent, in private preview, orchestrates these capabilities into a continuous autonomous triage-and-remediation loop.

Evo Agentic Development Security governs the agentic development process itself. Coding agents increasingly pull in third-party tools, execute actions and generate production code, often without adequate controls over what they may access or do. Evo validates tools before they are trusted, governs agent behavior inside the execution loop and secures generated code at the moment it is written. The solution has been generally available since June.

Evo AI-SPM gives security teams a live inventory of the models, agents and AI applications operating across their environments, along with the policies and auditability required to govern them. The solution has been generally available since March.

Together, the three solutions establish a continuous security model for the agentic software lifecycle: discover every agent, model and AI application in the environment; remediate the backlog that already exists; validate the tools, code and fixes agents produce before they are trusted; and prevent new exposure at the moment it is introduced.

Evo Continuous Offensive Security, generally available since August, tests that architecture continuously. It attacks an enterprise’s defenses to confirm that policies, controls and guardrails hold under real-world adversarial pressure and cannot be bypassed through agent manipulation.

Evo by Snyk is available today. For a full breakdown of how automated attacks have repriced accepted risk, read The Automated AI Attacks Playbook.

About Snyk
Snyk, the AI security company, empowers the AI-driven enterprise to develop and secure its future, ensuring organizations can trust AI to innovate without limits. The Snyk AI Security Platform secures software at build speed, weaving protection directly into the creation flow to secure GenAI code, AI-native applications, and agentic systems. By delivering visibility, control, and autonomous defense securely at inception, Snyk enables over 4,800 global customers to build fearlessly in the AI era.