# Maze Cloud

- URL: https://mazehq.com/platform/cloud
- Markdown: https://mazehq.com/platform/cloud.md
- Published: 2026-06-19T14:07:12+00:00
- Modified: 2026-07-03T16:45:11+00:00
- Description: Get cloud vulnerabilities under control AI agents deeply investigate vulnerabilities, prove what's exploitable, and deliver fixes your developers will ship. AI agents that understand your cloud. Deeply investigate every

![](https://mazehq.com/wp-content/uploads/2026/06/Cloud-Header-Image.png)

 

 

 



  Maze Cloud

 

Get cloud vulnerabilities under control
=======================================

AI agents deeply investigate vulnerabilities, prove what’s exploitable, and deliver fixes your developers will ship.
--------------------------------------------------------------------------------------------------------------------

 [Book a Demo](https://mazehq.com/demo)



 

 

 

 



---

Trusted by the **fastest growing** security teams





![PartSource](https://mazehq.com/wp-content/uploads/2026/06/partssource-logo.svg)> Vulnerability scanners analyze a system in a vacuum. Maze shows you what’s actually on fire.

![Ted Kieffer](https://mazehq.com/wp-content/uploads/2026/06/ted_720-150x150.png)Ted Kieffer

Head of Information Security and Risk Management, PartsSource









![Forge](https://mazehq.com/wp-content/uploads/2026/06/forge-1.svg)> Maze actually understands what’s exploitable in our environment, not just CVSS or EPSS, but truly exploitable. That’s what set Maze apart from every other vendor.

![Jonathan Mattey](https://mazehq.com/wp-content/uploads/2026/06/jon_720-150x150.png)Jonathan Mattey

Chief Information Security Officer, Forge









![Halycon](https://mazehq.com/wp-content/uploads/2026/06/halycon.svg)

![Contentful](https://mazehq.com/wp-content/uploads/2026/06/contentful.svg)

![Cohere](https://mazehq.com/wp-content/uploads/2026/06/cohere-framed-1.svg)

![Alloy](https://mazehq.com/wp-content/uploads/2026/06/alloy.svg)> Maze has made it feel like we have a team of security engineers that I can confidently rely on for triaging vulnerabilities.

![Nathan Cooke](https://mazehq.com/wp-content/uploads/2026/06/nathan_720-150x150.png)Nathan Cooke

Engineering Manager, Product Security, Alloy









 

 



 



---



### From finding to fixed, run by AI agents

    Find every vulnerability  Maze pulls and deduplicates findings from your existing scanners. Agents then map your cloud and containers, separating what’s running from what isn’t. Every finding carries the full context of your environment. ![](https://mazehq.com/wp-content/uploads/2026/06/Find-Every-Vulnerability.png)









 

    Investigate with context  AI agents investigate every vulnerability using context from code to cloud. They determine its exploitability by reasoning over its deployment, runtime, and exposure. Every recommendation comes with the evidence and reasoning behind it.![](https://mazehq.com/wp-content/uploads/2026/06/Investigate-with-Context.png)









 

    Prioritize what matters  Maze agents rank exploitable vulnerabilities by how hard they are to exploit and how harmful they are to your business. No false positives, only real risk prioritized by your environment.![](https://mazehq.com/wp-content/uploads/2026/06/Prioritize-What-Matters.png)









 

    Generate and route fixes  Once a vulnerability is confirmed exploitable, agents generate a fix and route it to the developer who owns that code. Maze delivers every fix with the evidence behind it so developers can ship with confidence.![](https://mazehq.com/wp-content/uploads/2026/06/Generate-and-route-fixes.png)









 



 

 

 



![](https://mazehq.com/wp-content/uploads/2026/06/Find-Every-Vulnerability.png)

 

 

![](https://mazehq.com/wp-content/uploads/2026/06/Investigate-with-Context.png)

 

 

![](https://mazehq.com/wp-content/uploads/2026/06/Prioritize-What-Matters.png)

 

 

![](https://mazehq.com/wp-content/uploads/2026/06/Generate-and-route-fixes.png)

 

 







 

 



---



#### AI agents that understand your cloud.



 



---



![](https://mazehq.com/wp-content/uploads/2026/06/Investigation-Agent.png)

 

 

 



##### Deeply investigate every vulnerability

From known CVEs to zero-days, our AI agents think the way your best security engineer would. They use context from your cloud, code, and runtime to determine risk to your environment.



 

 

 

 



---

##### Prioritize what’s exploitable



Over 90% of vulnerabilities can’t be exploited in your environment, and our agents prove it. The few that are exploitable get prioritized by the risk to your environment.







 





![](https://mazehq.com/wp-content/uploads/2026/06/Exploitable.png)

 

 

 

 



---



![](https://mazehq.com/wp-content/uploads/2026/06/Remediation-1.png)

 

 

 



##### Fix vulnerabilities at  
machine speed

Our AI agents trace the root cause, validate a fix for your environment, and route it to the right owner. When patching isn’t an option, they create a mitigation that makes the threat not exploitable.



 

 

 

 



---



###### One platform  
for code &amp; cloud



 



---

  [ ###### Cloud Vulnerabilities



Triage and remediate CVEs in containers and VMs, and catch zero-days before scanners see them.

 

  ](https://mazehq.com/platform/cloud) [ ###### Dependencies (AI-SCA)



Find, triage, and remediate CVEs in third-party code, using your existing scanner or ours.

 

  ](https://mazehq.com/platform/code) [ ###### Your Code (AI-SAST)



Find and fix business-logic vulnerabilities that SAST misses, or triage results from your existing scanner.

 

  ](https://mazehq.com/platform/code) [ ###### Why Maze?



Everyone uses AI now. What makes Maze different, and how is the platform built for AI agents?

 

  ](https://mazehq.com/platform) [ ###### Our Story



Why we’re building Maze to be a security company that thinks differently.

 

  ](https://mazehq.com/our-story) [ ###### Resources



Security research, blogs, video, and more from security leaders and the Maze team.

 

  ](https://mazehq.com/resources) 

 



---



  



###### Get cloud vulnerabilities  
under control

See how Maze AI agents investigate and resolve cloud  
vulnerabilities like your best security engineer.

 [Book a Demo](https://mazehq.com/demo)



 



---



Frequently Asked Questions
--------------------------

The questions we get asked most often answered as clearly as we can. Anything we missed, just ask.

 [Get in touch](https://mazehq.com/contact-us)



 

 

#### How long does it take to get started?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Deployment can be done in under five minutes. All we need is a read-only role in your cloud environment and an API connection to one or more vulnerability scanners.









#### How does pricing work?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

We aim to keep pricing simple and fair. Large language models aren’t cheap, but we’ve worked hard to optimize cost and performance to make sure our pricing is reasonable. We price based on the size of your cloud infrastructure and are unlikely to be the most expensive tool in your stack.









#### What’s the difference between Maze Cloud and Maze Code?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Maze Cloud investigates vulnerabilities in your cloud environment and helps you fix them. Maze Code scans your repos for dependency vulnerabilities and vulnerabilities in code you wrote. When combined, both engines use context from the other for more accurate investigations and deduplicate findings across code and cloud, so you never chase the same vulnerability twice.









#### Which scanners and clouds does Maze work with?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Whichever vulnerability scanners you already have, chances are we connect to them. If we haven’t built an integration yet, we build them fast. Maze works across your cloud.









#### Do I need to install agents on my machines?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

No, the only agents we use are AI agents (confusing, we know). For clarity, we call something you need to install a sensor, and you won’t need to install any sensors on your machines. We use a combination of clever techniques to give us deep runtime visibility in a sensorless fashion.









#### How does Maze handle zero-days?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

When a new zero-day drops, agents sweep every instance across your environment in hours, using the same context-rich investigation we run on any other vulnerability. You know what’s exploitable here before scanners have a signature.









#### What does “exploitable” actually mean at Maze?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Exploitable means a vulnerability could technically be exploited given the specific configuration, controls, and context of your environment. It’s not about whether an exploit exists in the wild or whether the CVE has a high CVSS score. It’s about whether it can be exploited here.









#### Where do fixes go?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Validated fixes route to your engineers in your ticketing platforms or to the coding agents your team already uses. If you really want, you could send them to Slack or Teams too.









#### How reliable is the AI?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

We know modern AI can be both incredible and unpredictable in equal measure. We spend a lot of our time focused on testing and optimizing the accuracy of our system to deliver a predictable and reliable experience. Maze is built by leading AI engineers, continuously tested by internal and external security experts, and has been deployed by multiple Fortune 100 organizations.









#### Will you send my data to LLM providers?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

No, we only use orchestrators that guarantee your data is not shared with the model provider for training. For example, AWS Bedrock and Google Vertex.









#### What category are you in?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

As far as we know, there are no directly comparable products to Maze. There have been (too) many attempts at coining names for categories that try to solve similar problems: CTEM, RBVM, UVM, RemOps, ASPM. We don’t fit perfectly into any of these. Rather than coining another acronym, we’ll just tell you what we do: we use AI agents to investigate, triage, and resolve cloud vulnerabilities (and code vulnerabilities).









#### Is Maze hosted in the cloud?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Yes, Maze is cloud-hosted in AWS. Customers can choose between multi-tenant and single-tenant hosting.









#### What compliance standards do you meet?![](https://mazehq.com/wp-content/themes/okd/static/img/accordion_plus.svg)

Maze has been built for enterprise from day one. We have passed our ISO 27001 accreditation and are currently in our SOC 2 Type 2 observation window.











 

 

 



---



Latest from Maze.

 

[View all articles](https://mazehq.com/resources)

 

 

 



---

  [[Company]

Maze Code found a Langfuse SSO bug. Are you affected? Find out how to fix it.
-----------------------------------------------------------------------------

Langfuse has a setting called SSO enforcement, and it has one goal. Turn it on and nobody at your domain can log in except through your identity provider.…

 July 2, 2026  

 

 ![Langfuse vulnerability](https://mazehq.com/wp-content/uploads/2026/07/Blog-2-1024x764.png) 

 ](https://mazehq.com/blog/maze-code-found-a-langfuse-sso-bug-are-you-affected-find-out-how-to-fix-it) 

 

- [[Security]
    
    ### Code security isn’t dead
    
     
    
     June 30, 2026  
    
     ](https://mazehq.com/blog/code-security-isnt-dead)
- [[Company]
    
    ### Introducing Maze Code: Code Security You Can Finally Trust
    
     
    
     June 23, 2026  
    
     ](https://mazehq.com/blog/maze-code)
- [[Security]
    
    ### Patching: the dirty secrets and how to fix them
    
     
    
     May 29, 2026  
    
     ](https://mazehq.com/blog/patching-the-dirty-secrets-and-how-to-fix-them)

 

 



---
