What nearly 10,000 developer environments reveal about agentic development risk
Blog post from Snyk
The proliferation of AI coding tools and environments has introduced new layers of complexity and risk into the software development process, with Snyk research highlighting the widespread adoption of Model Context Protocol (MCP) servers and agent skills among developers. These tools are becoming integral to the development workflow, often operating outside traditional security frameworks and potentially exposing systems to vulnerabilities such as prompt injections and unauthorized access. With 43% of developers running two or more AI coding environments, and a significant portion having MCP servers and skills installed, the challenge for Application Security (AppSec) teams is expanding their oversight beyond code and dependencies to include the diverse array of tools, configurations, and instructions that shape AI-generated code. This shift necessitates a reevaluation of security protocols to incorporate agentic development environments into the software supply chain, ensuring visibility and governance over the systems and permissions that influence code creation.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| MCP | 26 | 7,755 | 862 | 214 | 0% |
| AI Coding Assistant | 17 | 2,234 | 577 | 171 | +12% |
| Harness engineering | 5 | 254 | 141 | 71 | +28% |
| AI Agents | 2 | 6,200 | 1,430 | 272 | +10% |
| Secrets Management | 1 | 2,539 | 400 | 136 | +9% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.