Kusari Inspector Released
June 17, 2025

Kusari unveiled Kusari Inspector, an artificial intelligence (AI)-based pull request security tool that brings cutting-edge security risk analysis directly into developers’ daily workflows.

In Kusari Inspector, Kusari has brought together a powerful combination of industry standards, AI, and dependency graph analysis, to help organizations detect software supply chain risks early during the pull request process, and address them before code integration. The tool finds security weaknesses and supply chain risks in order to maintain secure development throughout every stage.

“Kusari Inspector puts robust security insights right where developers need them: in their pull requests. The recommendations come from Kusari’s analysis of the full dependency graph, including security practices and code provenance, so the result is always actionable — there’s no worry about ‘AI slop.’ By catching vulnerabilities and risky dependencies early, teams can move faster and ship more secure code,” said Tim Miller, CEO and Co-Founder at Kusari.

In addition to core supply chain analysis, Kusari Inspector introduces advanced safeguards and interactive features to further empower developer security.

Key Features & Benefits

- Pull Request Inspection & Analysis: Receive instant, context-rich, annotated security reports with inline explanations on every new or updated pull request, saving time and reducing back-and-forth with security teams.

- Safe to Merge: Clear go/no-go guidance, remediation suggestions, and step-by-step instructions to mitigate risks. Flags exposed credentials, sensitive secrets, workflow misconfigurations; blocks typosquatted or maliciously named dependencies and prohibited licenses; enforces rules and policies across the organization.

- Prioritized Risk Assessments & Reduced Alert Noise: Identify and rank risky, low-trust, or vulnerable dependencies—direct and transitive—based on industry trusted data sources (CVSS, EPSS, Known Exploited Vulnerabilities) early in development and reduce noise by accounting for unexploitable vulnerabilities.

- Adaptive AI Model with Interactive Guidance: Delivers precise safe to merge guidance through deep code analysis, continuously learning from your codebase and preferences. Developers can chat with AI to clarify findings, customize recommendations, and set security standards.

- Automated SBOM Generation: Automatically generate and collect source SBOM data for all connected projects and repositories.

“Installing Kusari Inspector in your code repository takes just a few minutes, and then your vulnerabilities, risks, and license issues are immediately detected and flagged within your pull requests. This empowers developers to address security concerns early—eliminating the need for lengthy and iterative security reviews. With Kusari Inspector, a simple three-minute fix can prevent weeks of delay and frustration, allowing developers to stay focused on building great software,” shared Michael Lieberman, CTO and Co-Founder at Kusari.

Kusari Inspector is now available for GitHub repositories .

Share this

Industry News

June 23, 2025

The Linux Foundation, the nonprofit organization enabling mass innovation through open source, announced the launch of the Agent2Agent (A2A) project, an open protocol created by Google for secure agent-to-agent communication and collaboration.

June 23, 2025

Salesforce announced Agentforce 3: a major upgrade to its digital labor platform that gives companies the visibility and control to scale AI agents without compromise.

June 23, 2025

Wix.com Ltd. announced its acquisition of Base44, an AI-powered platform that enables anyone to create fully-functional, custom software solutions and applications using natural language, without the need for traditional coding.

June 18, 2025

Code Platoon, a nonprofit coding bootcamp for Veterans, active duty Servicemembers, and military families, is proud to announce the launch of its newly revamped AI Cloud and DevOps Engineering program.

June 18, 2025

Salt Security announced the launch of Salt Cloud Connect for AWS, an API security solution to deliver full API visibility and posture governance without the need for traffic data or agents.

June 18, 2025

CoreWeave announced the launch of three new AI cloud software products and capabilities to help customers develop, deploy, and iterate AI faster.

June 18, 2025

BrowserStack announced support for Playwright tests on real iOS devices with Safari.

June 18, 2025

JFrog announced a partnership with TL Consulting, an Australian-based professional services organization specializing in cloud-native, GitHub and Microsoft DevSecOps implementations.

June 17, 2025

Kusari unveiled Kusari Inspector, an artificial intelligence (AI)-based pull request security tool that brings cutting-edge security risk analysis directly into developers’ daily workflows.

June 17, 2025

Secure Code Warrior announced the availability of AI Security Rules on GitHub – a free resource to help developers generate more secure code when working with AI coding tools like GitHub Copilot, Cline, Roo, Cursor, Aider and Windsurf.

June 17, 2025

Mirantis announced a comprehensive reference architecture for IT infrastructure to support AI workloads.

June 16, 2025

Operant AI announced the launch of MCP Gateway, an expansion of its flagship AI Gatekeeper™ platform, that delivers comprehensive security for Model Context Protocol (MCP) applications.

June 12, 2025

Oracle has expanded its collaboration with NVIDIA to help customers streamline the development and deployment of production-ready AI, develop and run next-generation reasoning models and AI agents, and access the computing resources needed to further accelerate AI innovation.

June 12, 2025

Datadog launched its Internal Developer Portal (IDP) built on live observability data.

June 12, 2025

Azul and Chainguard announced a strategic partnership that will unite Azul’s commercial support and curated OpenJDK distributions with Chainguard’s Linux distro, software factory and container images.