By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Sonatype Launches Guide to Enhance Safety in AI-Assisted Code Generation
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Sonatype Launches Guide to Enhance Safety in AI-Assisted Code Generation
News

Sonatype Launches Guide to Enhance Safety in AI-Assisted Code Generation

News Room
Last updated: 2026/03/20 at 6:59 PM
News Room Published 20 March 2026
Share
Sonatype Launches Guide to Enhance Safety in AI-Assisted Code Generation
SHARE

Sonatype Guide is a real-time guardrail system that sits between AI coding tools and the open-source ecosystem, ensuring AI-generated code uses safe, valid, and maintainable dependencies.

Sonatype Guide includes a set of distinct tools, including an MCP server, an enhanced search experience, and access to the Nexus One Platform API.

By extending Sonatype’s trusted data into modern Model Context Protocol (MCP)–aware IDEs, Guide helps developers and AI tools select the best and safest open-source components while simplifying and optimizing dependency management.

Using the MCP server, Guide delivers security intelligence to AI coding tools like Copilot, Claude, Codex, and others. The MCP server provides package real-time package recommendations by filtering only secure, reliable versions and ensuring that unsafe code does not reach the repository.

The enhanced search informs developers about the lowest-effort, highest-impact fixes and upgrade choices, says Sonatype. The Nexus One Platform API is an enterprise-grade API that provides complete, unrestricted, and backward-compatible access to security information about components and repositories. Designed for Infrastructure-as-Code workflows, the Nexus One Platform API can integrate with CI/CD pipelines to automate component and vulnerability checks as part of the build process, and can also embed component and vulnerability lookups directly into developer tools such as chatbots and or issue trackers.

Sonatype CEO Bhagwat Swaroop explains that the main challenge in using LLMs for code generation is the rapid obsolescence of security data:

AI coding assistants are often trained on public data that can be months or years out of date. That means they can recommend vulnerable, low-quality, or even imaginary packages — creating rework, burning tokens, and introducing unnecessary risk.

In fact, Sonatype researchers found that LLMs can “hallucinate packages” up to 27% of the time, meaning they can suggest nonexistent, outdated, or malicious dependencies. This “creates rework for development teams, slows delivery, burns LLM tokens, and introduces unnecessary security risk”.

Sonatype claims that enterprises using Guide have tripled their effectiveness in generating secure code and reduced total security remediation and dependency-upgrade costs by more than fivefold.

Sonatype Guide is not the only AI-related tool designed to help secure development workflows and supply chains. Alternatives to Sonatype Guide for dependency and context security intelligence include Snyk, Mend, the open-source OWASP Dependency-Check, and many others. However, none of them seem to offer an MCP server ready to be integrated into AI-based workflows. That said, Snyk offers an experimental MCP server.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article REDMI launches the K80 Pro with Snapdragon 8 Elite processor · TechNode REDMI launches the K80 Pro with Snapdragon 8 Elite processor · TechNode
Next Article The 13 Best Social Media Analytics Tools for 2025 The 13 Best Social Media Analytics Tools for 2025
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

This high-end projector just opened for pre-orders with a price tag that will make your eyes water
This high-end projector just opened for pre-orders with a price tag that will make your eyes water
News
What is Earned Media Value? A Guide for Brands
What is Earned Media Value? A Guide for Brands
Computing
AT&T Raising Prices for Legacy Unlimited Plans Starting in April 2026
AT&T Raising Prices for Legacy Unlimited Plans Starting in April 2026
News
Jury finds Elon Musk’s ‘stupid tweets’ caused Twitter investors’ losses
Jury finds Elon Musk’s ‘stupid tweets’ caused Twitter investors’ losses
News

You Might also Like

This high-end projector just opened for pre-orders with a price tag that will make your eyes water
News

This high-end projector just opened for pre-orders with a price tag that will make your eyes water

3 Min Read
AT&T Raising Prices for Legacy Unlimited Plans Starting in April 2026
News

AT&T Raising Prices for Legacy Unlimited Plans Starting in April 2026

4 Min Read
Jury finds Elon Musk’s ‘stupid tweets’ caused Twitter investors’ losses
News

Jury finds Elon Musk’s ‘stupid tweets’ caused Twitter investors’ losses

2 Min Read
Resident Evil at 30: how Capcom’s horror opus has survived and thrived
News

Resident Evil at 30: how Capcom’s horror opus has survived and thrived

11 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?