Nine AI Security Vendors Sold in Ten Months. Check Who Owns Yours.
Frenkie
· 4 min read · updated

Nine AI security and governance vendors were acquired between September 2025 and May 2026, and the odds are good that at least one of them sits in your stack. If you picked your tooling more than a year ago, your vendor list is describing companies that no longer exist.
Look, this isn't abstract. On July 9, 2026, LLM Guard — one of the most-downloaded open-source LLM scanners — was archived on GitHub, twelve months after Palo Alto Networks bought its parent company Protect AI. Read-only. No more fixes. Every team that wired those 35+ scanners into production now owns unmaintained security code.
Here is the tracker.
Who bought whom? The 2025–2026 deal map
When | Tool / Company | Buyer | Price | Status |
|---|---|---|---|---|
Sep 2025 | CalypsoAI | F5 | undisclosed | announced |
Sep 2025 | Aim Security | Cato Networks | undisclosed | announced |
Sep 2025 | Apex | Tenable | undisclosed | announced |
Sep 2025 | Prompt Security | SentinelOne | ~$180M | completed Sep 5, 2025 |
Oct 2025 | Lakera | Check Point | ~$300M (est.) | completed Oct 22, 2025 |
Oct 2025 | Securiti AI | Veeam | undisclosed | announced |
Feb 2026 | AllTrue.ai | Varonis | $150M | announced |
Feb 2026 | Acuvity | Proofpoint | undisclosed | announced Feb 12, 2026 |
Mar 2026 | Promptfoo | OpenAI | undisclosed | announced Mar 9, 2026 |
May 2026 | Symmetry Systems | Zscaler | undisclosed | agreed |
May 2026 | LayerX | Akamai | ~$205M | agreed |
May 2026 | Deepchecks (team + IP) | Check Point | $10–20M (reported) | announced |
And 2025 already set the stage: Palo Alto Networks closed its Protect AI acquisition in July 2025 and folded it into Prisma AIRS that October. The LLM Guard archive is the aftershock.
How concentrated is the market now?
More than you think. We ran the numbers on our own directory of 56 AI compliance and security tools.
Seven of the ten tools in our trending top 10 are now owned by a mega-vendor: Lakera Guard (Check Point), NeMo Guardrails and Garak (NVIDIA), PyRIT and Presidio (Microsoft), Promptfoo (OpenAI), and IBM watsonx.governance (IBM).
Only three remain independent: HiddenLayer, Guardrails AI, and Credo AI.
In our Enterprise Security & Guardrails category alone, four of 21 listed tools changed ownership in the last ten months: Lakera, LLM Guard, Prompt Security, and CalypsoAI.
Analytical insight (our read, clearly labeled): platform buyers keep the technology and retire the standalone product. Protect AI's open-source tools were archived within a year. Deepchecks was bought as "team and IP" — the product was the hiring package. Promptfoo's buyers promise it "will remain open source under the current license." That promise is now the thing to watch, because Protect AI's tools were open source too.
What does an acquisition actually change for you?
The contract survives. Four other things usually don't:
The roadmap now serves the buyer's platform. Lakera's runtime firewall is becoming the foundation of Check Point's Infinity platform — great if you run Check Point, a detour if you don't.
The pricing model migrates from product pricing to platform bundling, typically at your first post-acquisition renewal.
Standalone open-source tools are the most fragile asset in the deal. They carry maintenance cost and zero revenue. LLM Guard is the proof.
Your vendor-risk paperwork goes stale. The entity name, the DPA, the sub-processor list, and the SOC 2 report may all now belong to a different company.
Does this play out differently for startups and enterprises?
Yes, almost opposite.
If you're a startup: consolidation is mostly downside. You picked a nimble point solution; you're getting a platform module with enterprise pricing. Your move is to prefer tools with genuinely open licenses and portable formats, and to keep one migration path documented per critical tool. Independent options still exist in every category — Straiker, Aurascape, and Noma Security are on our radar list precisely because they're young and unattached.
If you're an enterprise: consolidation can genuinely help. Fewer vendors, one throat to choke, and your existing Check Point or Cisco relationship suddenly covers AI security. The risk flips: you're now concentrated, so an acquisition-driven deprecation hits everything at once.
What happens next?
But it gets faster, not slower. Independent AI security pure-plays are scarce, buyer demand isn't. Watch two things through the rest of 2026:
HiddenLayer is the largest independent left in enterprise AI security — which makes it the most obvious next target. Its March 2026 agentic runtime launch and June Cohere partnership show a company building, not shopping. So far.
Open-source successor projects. Every archived tool creates migration demand. Where LLM Guard users go next — NeMo Guardrails, Guardrails AI, or managed APIs — will tell us whether open source can hold this category.
Your Action Plan
List every AI security tool in production and check its current owner against our directory — five of our 56 entries changed hands in ten months.
For each acquired vendor, pull the announcement and note the integration destination. "Foundation of our platform" means your standalone product is on a clock.
For open-source tools, check the repo status today. Archived or read-only means you're running unmaintained security code — plan the migration this quarter, not after the next CVE.
Re-verify your vendor-risk records (entity name, DPA, sub-processors, certifications) for anything bought since September 2025.
At renewal, ask one question first: "What is the standalone product's roadmap for the next 24 months?" A vague answer is an answer.
Next milestone to watch: whether Promptfoo's open-source commitment survives its first year inside OpenAI — March 2027 will tell us.
