Security workers
A security worker is a built-in unit of security execution that runs a defined job against protected software.
Choose a security worker after connecting the software you want to protect. Each worker page explains its requirements, setup, results, and controls.
Choose by outcome
| You want to | Security worker |
|---|---|
| Review code and dependency changes before merge | PR Security |
| Generate policy-checked dependency update pull requests | Secure Dependency Updates |
| Find exploitable paths across software you already ship | Red Team |
| Check external content before an agent consumes it | Context Guardrails |
| Monitor or block risky actions where an agent runs | Runtime Guardrails |
Security workers can work together. For example, a repository can use PR Security on every change and run deeper Red Team campaigns on a schedule.