Claude Security: Anthropic's agentic vulnerability scanner, enterprise availability on Mythos-class models ================================================================================ Claude Security is Anthropic's vulnerability scanner, launched as Claude Code Security in a February 2026 research preview, opened to enterprises in May 2026 with a reported 2,100 vulnerabilities patched in three weeks, shipped as a Claude Code plugin in July 2026, and running on Claude Mythos 5 for enterprise customers from 21 August 2026. Anthropic's Project Glasswing partners reported more than 10,000 high or critical findings by May 2026, including the wolfSSL certificate-forgery CVE-2026-5194. Maintainer: Anthropic Website: https://anthropic.com/news/claude-code-security Category: Frontier-lab and general scanners Targets: General code, Enterprise repositories, Claude Code plugin Approach: Agentic multi-stage analysis that traces data flows and re-examines findings to filter false positives; findings carry CWE, severity and confidence; produces patch files Access: Enterprise SaaS, billed as token usage Status: Active (public beta May 2026; on Claude Mythos 5 from 2026-08-21) Strengths: Scale of deployment and results. | Integrated with Claude Code; emits patches. | Confidence and CWE on every finding aid triage. Limits: Not cryptography-aware; protocol and constraint bugs need domain skills or a specialist tool. | Volume of findings creates triage burden. | Enterprise plans only; model versions change under you. Firms using it: none listed Sources: https://anthropic.com/news/claude-code-security | https://www.anthropic.com/research/glasswing-initial-update | https://claude.com/blog/bringing-claude-mythos-5-to-more-defenders Source page: https://agentsast.com/tools/claude-security/ Compiled by: agentsast editors (https://agentsast.com/about/) Last reviewed: 2026-09-13