Remediation

Automated remediation guidance and fix verification for security findings.

DryRun Security integrates with AI coding tools to turn security findings into automated fixes. When a vulnerability is detected, an AI coding tool connected to DryRun Security can read the finding in context, understand the affected code, and generate a targeted fix - without requiring the developer to manually triage or research the issue.

Why Remediation Matters #

Connecting remediation directly to the detection workflow delivers measurable value across your development organization:

  • Speed of deployment - Fixing vulnerabilities faster means shipping faster
  • Reduced time-to-remediation - Vulnerabilities are resolved quickly rather than sitting in backlogs
  • Developer productivity - Developers spend less time on manual security fixes and more time building features
  • Consistent remediation - AI-powered fixes follow security best practices every time
  • Shift-left at scale - Security fixes happen as part of the development workflow, not as a separate process

How Remediation Works with AI Coding #

DryRun Security enables remediation by integrating with AI coding tools. Supported tools include:

  • Claude Code
  • Codex
  • Cursor
  • GitHub Copilot
  • Windsurf
  • VS Code

Remediation is enabled by:

  1. Creating an API key from the DryRun Security dashboard (see API Access Keys)
  2. Connecting your AI coding tool to the DryRun Security MCP (Model Context Protocol) server
  3. Installing the DryRun Security remediation skill: see the DryRun Skill page for instructions

Once connected, the AI coding tool can read DryRun Security findings and automatically generate fixes in the context of your codebase.