shouldiuse.io

VERDICT

Should I use Legit Security?

AI-native ASPM platform to detect, fix and prevent AppSec risk from AI-generated code, secrets, and critical vulnerabilities. - legitsecurity.com

Depends. Buy if you run a dedicated AppSec function across many repos and scanners and need consolidation plus AI-assisted remediation. Solo devs and small teams should skip it — built-in GitHub/GitLab scanning and cheaper tools cover them.

Confidence

Low. Based on 14 public sources; mostly category explainers and vendor content with little independent user feedback.

Ratings

  • Value for moneyPricing unpublished; cannot assess
  • Ease of useNo independent user feedback found
  • Feature depth
  • Support qualityNo evidence in sources
  • Security posture

Pricing

Not disclosed

ModelNot disclosed
Monthly feesNot disclosed
HardwareNot disclosed

Best for

  • Mid-to-large orgs with dedicated AppSec teams
  • Ships shipping lots of AI-generated code
  • Teams needing SBOM and supply-chain compliance
  • Orgs consolidating many disconnected security scanners

Not for

  • Solo devs and startups — free built-in GitHub/GitLab scanning suffices
  • Teams without an AppSec owner to run and tune it
  • Buyers needing upfront pricing — sales-call quoting only
  • Small teams that just need basic SAST/SCA scanning

Gotchas - check before you buy

medium

Pricing fully opaque — budget only via sales quote; expect enterprise negotiation

medium

ASPM payoff requires wiring in existing scanners first; integration effort is real

medium

No free tier or trial documented; evaluate via vendor demo only

low

scored 79/100 on Gridinsoft's website trust check

Pros and cons

Pros

  • Combines ASPM, secrets scanning, and AI-code risk detection in one platform
  • AI agents suggest concrete remediation steps and automate fixes
  • Strong SBOM and software supply chain focus
  • Enterprise customers named, e.g. Wealthsimple AI security case study

Cons

  • Evidence almost entirely vendor marketing; little independent user review
  • Value depends on connecting many existing scanners first
  • Built for dedicated AppSec teams, not general developers
  • No documented free tier or trial

Sources & method

Analyzed 9/21/2026 - 8 sources - No known vulnerabilities found in the sources reviewed.

official x2review x4security x1news x1

Key stats

  • Feature depth: 4/5

    Rating

  • Not disclosed

    Starting price

  • 8

    Sources

  • Analyzed

  • Value for money. Pricing unpublished; cannot assess
  • Ease of use. No independent user feedback found
  • Feature depth: 4/5. Vendor claims span ASPM, secrets, SBOM, AI remediation
  • Support quality. No evidence in sources
  • Security posture: 4/5. 79/100 site trust; no public vulnerabilities
  • 79/100 Website trust score Gridinsoft check, Jul 2026
  • None Public pricing Sales quote only
  • Wealthsimple Named customer Per AI AppSec case study

Pricing

Not disclosed

Security

No known vulnerabilities found in the sources reviewed.

What users say

No independent user reviews surfaced in the sources reviewed; evidence is vendor content and category explainers.

Companies that use it

  • Wealthsimple⁴
Full analysis

Based on 14 public sources; mostly category explainers and vendor content with little independent user feedback.

Enterprise ASPM with AI remediation and secrets scanning. Strong for big AppSec teams, overkill for small dev shops.

Methodology

Based on 14 public sources; mostly category explainers and vendor content with little independent user feedback.

Sources

  1. official
  2. review
  3. security
  4. news
  5. review
  6. review
  7. review
  8. official

Rate this review

Anonymous. You can change your vote.

Loading votes…

Comments

One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.

Save a name to write a comment.

0 / 200 words

No comments yet.