Making frontier cybersecurity capabilities available to defenders

https://www.anthropic.com/news/claude-code-security

Making frontier cybersecurity capabilities available to defenders

Claude Code Security is one step towards our goal of more secure codebases and a higher security baseline across the industry.

Asking for a friend who’s working on a startup around this general space: do you think it’s better to go niche, focusing on agents for a specific type of application or a specific language/ecosystem, or is that effectively “killing the startup” by limiting market size too soon?

Another question that came up in conversations with them: there might be value in offering a nonscalable, high-touch service, where you build and maintain customized agents tailored to a client’s specific codebase on a periodic basis.

I think it's probably a bad idea to do an "AI looking for vulnerabilities" startup, since the frontier labs have all basically declared that they believe that's a feature of a coding agent and not a standalone product.