By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Sonatype debuts guide to secure AI-assisted software development
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Software > Sonatype debuts guide to secure AI-assisted software development
Software

Sonatype debuts guide to secure AI-assisted software development

News Room
Last updated: 2025/12/10 at 5:47 AM
News Room Published 10 December 2025
Share
Sonatype debuts guide to secure AI-assisted software development
SHARE

Software supply chain management firm Sonatype Inc. today announced the launch of Sonatype Guide, a new developer tool that makes artificial intelligence-assisted software development faster, safer and more efficient.

The service is designed to serve as an intelligent backbone that steers AI coding assistants toward secure, high-quality open-source components and autonomously maintains dependencies over time.

The problem that Sonatype Guide is seeking to assist with is that AI models are trained on public data that may be months or years out of date. So AI coding assistants, intended to help developers move faster, frequently recommend vulnerable, low-quality or even imagined packages.

According to a forthcoming study from Sonatype, leading generative AI large language models that power coding assistants hallucinate packages up to 27% of the time, meaning they attempt to update or develop modern software with nonexistent or malicious open-source components. That creates rework for development teams, slows delivery, burns LLM tokens and introduces unnecessary security risk.

In pre-launch testing, enterprises using Sonatype Guide achieved more than a 300% improvement in security outcomes while reducing total security remediation. The service also improved dependency-upgrade costs by more than five compared to the leading competitive strategy, measured in both direct spend and developer hours.

“Every organization wants to harness the productivity of AI, but they can’t afford to compromise security or long-term maintainability,” said Chief Executive Bhagwat Swaroop. “Guide brings discipline and intelligence to AI-assisted development. It empowers teams to move faster and safer by steering AI toward secure, reliable components and automating the tedious dependency work that slows teams down. This is a significant step forward for the industry and for our customers.”

Sonatype Guide works with popular AI coding assistants, including GitHub Copilot, Google Antigravity, Claude Code, Windsurf, IntelliJ with Junie, Kiro from Amazon Web Services Inc. and Cursor, to allow organizations to keep their existing workflows while upgrading the quality and security of the dependencies pulled in.

Core features of Sonatype Guide include a Model Context Protocol Server for AI coding assistants, which intercepts package recommendations in real time to instantly guide developers to secure, reliable versions before code reaches the repo.

The MCP server is complemented with enhanced open-source software search for instant decisions. It also has an enterprise-grade application programming interface that delivers complete, unrestricted and backward-compatible access to reliable data.

Guide is built on Sonatype Intelligence, a source of real-time data on open-source quality, security and project health that can identify vulnerabilities, deprecations and malicious packages long before they spread. By embedding this intelligence directly into AI workflows, the company says, Guide ensures developers make safe, informed decisions from the start.

Image: SiliconANGLE/Ideogram

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Networkwhere technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videospowering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.

About SiliconANGLE Media

SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Antioch Gets .25 Million in Preseed Funding to Accelerate Testing of Autonomous Robots with Digital Twins Antioch Gets $4.25 Million in Preseed Funding to Accelerate Testing of Autonomous Robots with Digital Twins
Next Article The latest Pixel Camera update makes a welcome UI change The latest Pixel Camera update makes a welcome UI change
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Webinar: How Attackers Exploit Cloud Misconfigurations Across AWS, AI Models, and Kubernetes
Webinar: How Attackers Exploit Cloud Misconfigurations Across AWS, AI Models, and Kubernetes
Computing
Google Cloud Demonstrates Massive Kubernetes Scale with 130,000-Node GKE Cluster
Google Cloud Demonstrates Massive Kubernetes Scale with 130,000-Node GKE Cluster
News
Former COO Jeff Williams nominated to join Disney board following Apple retirement – 9to5Mac
Former COO Jeff Williams nominated to join Disney board following Apple retirement – 9to5Mac
News
Warning: WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat Groups
Warning: WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat Groups
Computing

You Might also Like

Flood of AI-assisted research ‘weakening quality of science’
Software

Flood of AI-assisted research ‘weakening quality of science’

4 Min Read

How Online Crypto Casinos Use Celebrities and Livestreamers to Recruit Gamblers

29 Min Read
Universities ‘must choose’ between physical or digital investment
Software

Universities ‘must choose’ between physical or digital investment

5 Min Read
Heavy AI use could wreck net zero goals, universities warned
Software

Heavy AI use could wreck net zero goals, universities warned

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?