Annex Security
Annex Security (Secure Annex Inc.) provides an enterprise platform that analyzes and monitors browser, code editor, and AI tool extensions for malicious behavior and supply chain risk, serving security and IT teams at organizations including Reddit, Brave, and Torq.
- Company typePrivate
- Founded2024
- Headquarters—
- Headcount1–10
- GTM typeB2B
- OfferingSoftware
What Annex Security does
Annex Security (legally Secure Annex Inc.) is a Delaware-incorporated cybersecurity company that provides an enterprise platform for discovering, analyzing, and monitoring software extensions across browsers, code editors, and AI development tools. The platform monitors over 500,000 extensions across Chrome Web Store, Edge Add-ons, Firefox Add-ons, VS Code Marketplace, and Open VSX Registry (and has expanded to AI tool platforms including Cursor, Windsurf, and Antigravity), combining static code analysis with agentic code review to detect malicious patterns, permission escalations, obfuscated code, and ownership-driven supply chain attacks. The product suite consists of four core modules — Analysis, Monitoring, Integrations, and API & MCP — packaged alongside an Enrichment API and a freemium self-serve tier.
Revenue is generated through annual subscriptions for monitoring (pricing around $4,800/year for 500+ extensions) and Enrichment API access (base $5,000/year), with multi-year custom contracts available for higher volumes, SLA guarantees, and on-premise deployment. The go-to-market is product-led growth with a free analysis tier, supplemented by direct enterprise sales for custom solutions. Customers include Reddit, Brave, Torq, Greenlight, Movable Ink, and Inductive Automation, spanning social media, technology, financial services, and security tool vendors. The platform integrates with major SIEM (Splunk, Microsoft Sentinel, Elastic, Chronicle), SOAR (Tines, Torq, XSOAR), MDM (Jamf, Intune, Kandji), and workflow tools (Slack, JIRA, Google Workspace).
On April 27, 2026, Annex Security was acquired by Socket, a software supply chain security vendor, to extend Socket's coverage into browser and code editor extension security. Founder John Tuckner noted the company's mission was to address the supply chain exposure introduced by extensions, which most organizations fail to see clearly. The company had been angel-backed with no disclosed institutional venture funding prior to the acquisition.
Annex Security firmographics
Firmographics- Name
- Annex Security
- Legal name
- Secure Annex Inc.
- Website
- https://secureannex.com
- Company type
- Private
- Founded year
- 2024
- Operating status
- Acquired
- Headcount range
- 1–10 employees
- Short description
- Annex Security (Secure Annex Inc.) provides an enterprise platform that analyzes and monitors browser, code editor, and AI tool extensions for malicious behavior and supply chain risk, serving security and IT teams at organizations including Reddit, Brave, and Torq.
- Ownership category
- akta.pro rank
Annex Security industry classification
Industry- Product category
- Browser Extension Security
- NAICS
- Software Publishers (5132)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Application Security Engineering (DevSecOps, AppSec Remediation) (BPAEAFAI)
- akta.pro secondary industries
- Browser & Web Isolation Security (HDADAEAK), App Security, Compliance & Review Automation Platforms (BPAMADAJ)
Keywords
Annex Security business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Marketing or Sales, Infrastructure, Operations
Revenue model
- Extension Monitoring Subscription: Annual subscription for monitoring extensions. Includes ownership change alerts, permission tracking, verdict alerts, and management APIs. Pricing based on number of extensions monitored (500+ extensions at $4,800/year).
- Enrichment API Access: Enterprise API integration with verdicts and scoring endpoints. Provides access to platforms other than Chrome, verdicts endpoint, scoring endpoint, MCP server access. Base price $5,000/year plus platform support.
- Free Platform Tier: Free platform access for users to analyze and investigate extensions. Includes version change notifications for up to 500 extensions and 25 API calls per day. Used as product-led growth to drive paid conversions.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Others | Free Platform - Basic analysis and investigation |
| Subscription | Annual | Extension Monitoring - Per extension monitoring subscription |
| Subscription | Annual | API Access - Enterprise API integration |
| Subscription | Multi-year contract | Custom Solutions - Enterprise high-volume pricing |
Go-to-market motion1 record
Distribution channels3 records
Marketing channels6 records
Annex Security product offering
Product offeringCore offering
Annex Security provides an enterprise software extension security and management platform that analyzes, monitors, and protects against malicious browser extensions, code editor extensions, and AI plugins. The platform combines AI-supported static code analysis with behavioral monitoring to detect hidden data flows, permission escalations, and code injection across Chrome, Edge, Firefox, VS Code, and Open VSX marketplaces, and integrates with SIEM, SOAR, MDM, and ITSM tools. Customers consume it via a self-serve web app, REST API, or MCP server, with subscription pricing per extension monitored plus enterprise API access.
Product overview
Annex Security provides an enterprise software extension security and management platform. The core offering consists of four integrated products: Analysis (deep code analysis and threat detection), Monitoring (real-time behavioral monitoring and alerts), Integrations (connections to SIEM/SOAR/MDM tools), and API & MCP (REST API and MCP server for automation). These products work together to help organizations discover, analyze, monitor, and protect against malicious browser extensions, code editor extensions, and AI plugins across platforms including Chrome, Edge, Firefox, VS Code, and Open VSX.
Differentiator
Problem solved
Functional benefit
Products and services
- Analysis Deep code analysis, permission scoring, and threat detection for software extensions delivered through static code analysis for malicious patterns, permission risk scoring and categorization, dependency vulnerability scanning, and obfuscation and packed code detection; used by enterprise security teams to identify threats before they impact the organization.
- Monitoring Real-time monitoring, alerts, and ownership tracking across an organization, including behavioral monitoring, instant alerts, ownership change tracking, and audit trails for browser and IDE extensions; used by enterprise security and IT teams to maintain ongoing visibility into extension risk.
- Integrations Pre-built connections to SIEM, SOAR, MDM, and existing security tools that stream extension threat data and alerts into enterprise workflows; used by security operations and IT teams to plug extension telemetry into their existing detection, response, and policy enforcement stacks.
- API & MCP REST API, MCP server, and webhooks that expose extension analysis data, risk scores, verdicts, and file search to security teams and AI assistants; used by enterprise security engineering teams to automate extension investigation and embed extension threat data into custom workflows.
Quantifiable outcome
- Identifies malicious code injected through ownership changes in previously safe extensions
- +1 more outcomes
Companies that use Annex Security
Customer profileNamed customers6 records
Segments3 records
Ideal customer profiles3 records
Annex Security technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration13 records
AI capability4 records
Feature8 records
Annex Security partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- SocketflagshipAnnex Security was acquired by Socket to help protect supply chains end to end. Socket acquired Annex to extend its reach into browser and extension security as part of a broader solution to securing the software supply chain. The acquisition combines Annex's extension security expertise with Socket's existing supply chain security platform.
Scale indicators3 records
Recent moves5 records
Expansion highlights5 records
Annex Security competitors and assessment
Company assessmentBroad incumbents
- Snyk: Snyk is a developer security platform covering SCA, code, container, and IaC — a broad incumbent whose code and dependency analysis overlaps with Annex's deep-analysis engine and whose enterprise reach could subsume extension-monitoring use cases over time.
- Mend (formerly WhiteSource): Mend provides software composition analysis and application security testing — overlapping with Annex's dependency vulnerability scanning and broader code analysis capabilities inside a much larger AppSec portfolio.
- Sonatype: Sonatype's Nexus platform provides software supply chain intelligence (SBOM, SCA, malicious-package detection) — incumbency in the broader supply chain security market where Annex's extension supply chain capability now sits following the Socket acquisition.
- Veracode: Veracode offers a portfolio of application security testing products (SAST, DAST, SCA) used by large enterprises — directly comparable to Annex's static and dependency analysis engines, scaled to a much broader set of application assets.
Emerging players
- Endor Labs: Endor Labs focuses on software supply chain security for application dependencies with risk-based prioritization — adjacent theme of software composition and supply chain risk that overlaps with Annex's extension supply-chain mission.
- Semgrep: Semgrep provides static code analysis for application security across repositories and CI pipelines — comparable code-analysis engine architecture, but applied more broadly than Annex's extension-specialized vertical.
Direct peers
- Cyberhaven: Cyberhaven offers data detection and response with telemetry into insider activity, including browser extension data flows — directly comparable in its focus on detecting browser and end-user tool misuse for supply chain protection.
- Push Security: Push Security delivers browser-based detection and response for SaaS and identity, including browser extension abuse — adjacent threat model and overlapping customer profile (security teams managing browser-borne risk).
- Nudge Security: Nudge Security discovers and governs SaaS, browser extensions, and AI tools used across an organization, with similar discovery-first, no-agent deployment that maps directly to Annex's enterprise security team buyer.
- Spin.AI: Spin.AI provides SaaS application security and browser extension risk management, with a flagship offering (Spin.Eye) focused specifically on browser extension monitoring and governance — the closest direct competitor to Annex's core use case.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks7 records
Key highlights7 records
Customer concentration
Annex Security social profiles
Digital presenceAnnex Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
Annex Security leadership team
Management profileNumber of profiles
Profiles1 record
Annex Security funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Annex Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Annex Security
What does Annex Security do?
Annex Security provides an enterprise software extension security and management platform that analyzes, monitors, and protects against malicious browser extensions, code editor extensions, and AI plugins. The platform combines AI-supported static code analysis with behavioral monitoring to detect hidden data flows, permission escalations, and code injection across Chrome, Edge, Firefox, VS Code, and Open VSX marketplaces, and integrates with SIEM, SOAR, MDM, and ITSM tools. Customers consume it via a self-serve web app, REST API, or MCP server, with subscription pricing per extension monitored plus enterprise API access.
Is Annex Security a public or private company?
Annex Security is a private company. It is classified as corporate owned and is currently acquired.
When was Annex Security founded?
Annex Security was founded in 2024. It employs 1 to 10 people.
How does Annex Security make money?
Three revenue lines are on record. Extension Monitoring Subscription is the primary driver. The others are enrichment API Access and free Platform Tier.
Who are Annex Security's main competitors?
Broad incumbents on record are Snyk, Mend (formerly WhiteSource), Sonatype and Veracode. Emerging players are Endor Labs and Semgrep. Direct peers are Cyberhaven, Push Security, Nudge Security and Spin.AI.
Does Annex Security have an API?
Yes. REST API providing full access to extension analysis data, risk scores, and organizational insights. Includes MCP server for investigating extensions using natural language from any MCP-compatible AI assistant. Webhooks available for real-time notifications when extensions change risk status, update, or trigger policy violations. API endpoint: GET /v0/analysis. Available tools via MCP: search_extensions, get_security_analysis, get_signatures, read_extension_file, search_extension_files, get_verdicts. Developer documentation is at docs.secureannex.com.
What industry is Annex Security in?
Annex Security's product category is Browser Extension Security. Its primary akta.pro industry code is BPAEAFAI, Application Security Engineering (DevSecOps, AppSec Remediation), with a secondary code of HDADAEAK, Browser & Web Isolation Security. Its NAICS code is 5132 and its SIC code is 7372.