Xygeni
Xygeni: AI-Native ASPM for the Software Supply Chain Xygeni is an AI-native ASPM (Application Security Posture Management) platform that unifies native and third-party security findings into one prioritized view. Its own detection engines cover SAST, SCA, DAST, Secrets, IaC, Container, CI/CD, and Build Security, and it also ingests results from tools like Snyk, Veracode, and Checkmarx so teams don't have to abandon what they've already invested in. Every finding, regardless of source, gets scored by exploitability, reachability, and business impact through Xygeni's Dynamic Funnels, which is what drives its reported 90% cut in alert noise. Two AI systems sit underneath the platform. CoreAI acts as a correlation and reporting layer for security leaders, turning scattered findings into a single risk narrative. DevAI works earlier, inside the developer's IDE and AI coding assistants, catching problems in both human-written and AI-generated code and proposing fixes before a pull request is even opened. On the supply chain side, Xygeni's MEW engine (Malware Early Warning) is built to catch malicious open-source packages the moment they hit a public registry, ahead of when a formal malware signature would normally exist. Shield takes that enforcement to the developer's own machine, blocking unauthorized package downloads at the OS level before they reach disk. Xygeni also runs a dedicated Code Quality engine across ten languages, ranking maintainability and complexity issues alongside security findings in the same console, so a team can see when the messiest file is also the riskiest one. The platform connects to GitHub, GitLab, Bitbucket, Jenkins, and Azure DevOps, and deploys as SaaS, on-premises, or fully air-gapped. Xygeni was named Hot Company in ASPM and in GenAI Application Security at the 2026 Global InfoSec Awards.
Average Rating: 4.6/5.0
Total Reviews: 4
How Do G2 Users Rate Xygeni?
- Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.2/10)
- Detection Rate: 9.2/10 (Category avg: 9.0/10)
- Automated Scans: 6.7/10 (Category avg: 9.1/10)
- Configuration Monitoring: 9.2/10 (Category avg: 8.5/10)
Who Is the Company Behind Xygeni?
- Seller: Xygeni Security
- Year Founded: 2021
- HQ Location: Madrid, ES
-
Twitter: @xygeni
178 Twitter followers -
LinkedIn® Page: www.linkedin.com
30 employees on LinkedIn®
Who Uses This Product?
- Company Size: 60% Small, 40% Medium
What Do G2 Reviewers Say About Xygeni?
AI-generated summary from verified user reviews
Pros
- Users appreciate the comprehensive security features of Xygeni, fostering a secure development environment without hindering productivity.
- Users value the effective prioritization of security issues in Xygeni, allowing teams to focus on critical threats quickly.
- Users value the effective risk management of Xygeni, enhancing security without hindering software development processes.
- Users appreciate the robust security features of Xygeni, enhancing their development process while ensuring compliance and risk management.
- Users value the seamless CI/CD integration of Xygeni, enabling early vulnerability detection without impacting release schedules.
Cons
- Users face difficult setup issues with Xygeni, especially when dealing with certain edge cases requiring manual adjustments.
- Users find the learning curve challenging for newcomers despite a generally intuitive platform, requiring familiarity with AppSec practices.
What Are Recent G2 Reviews of Xygeni?
"Revolutionized Our Security Workflow with Unified, AI-Driven Efficiency"
Rating: 5.0/5.0 stars
— Yerassyl K.
"The essential tool for proactive security and confident development"
Rating: 4.5/5.0 stars
— Marcos C.

