API Security Tools
Compare the best API security tools. Protect your APIs with discovery, testing, runtime protection, and compliance monitoring.
Acquired by Akamai. noname built an API security tool the way a network engineer would, and the Akamai acquisition makes sense. They build maps of API's based on network logs, and alert with anomaly detection. That puts them in an awkward middle position compared to eBPF based solutions like Impart, or more developer focused tools like StackHawk or Escape. The response actions are building WAF rules and they're building testing functionality.
Wallarm is one of the most robust and mature of API security vendors. They offer a ton of features - from API like runtime protection, to secrets detection, to static security testing.
Fortinet's API security offering gets the job done, but we wouldn't recommend buying it as a standalone product. It's a good addition to their other offerings, but doesn't stand out on its own.
Like AWS, the GCP WAF offering is quite substantial. They also have an 8KB limit, but offer a great solution for GCP native applications.