Dossier · Private startup · 1 independent source

Reco

Cybersecurity Dual-Use Technology Priority Signal Founded 2020

Last updated: Jul 31, 2026

Reco is a privately held cybersecurity company that discovers, maps, and governs SaaS applications, identities, integrations, and AI agents across enterprise environments. Its platform combines dynamic SaaS security, posture management, identity and permission analysis, data-exposure context, and threat detection for the growing AI-enabled SaaS attack surface.

Visit Website

Company Overview

Reco is building a control plane for the security problems created when enterprise work moves through hundreds or thousands of SaaS applications. Its platform continuously discovers sanctioned and shadow applications, third-party connections, human and machine identities, permissions, and AI-driven activity. Reco describes an agentless, read-only monitoring architecture for SaaS applications, with automated enforcement and remediation workflows available to security teams. The important technical asset is not simply an application inventory: the company models relationships among applications, identities, permissions, data access, and actions in a SaaS ecosystem graph. That context can help distinguish an unused low-risk integration from an overprivileged connection that can move sensitive data across multiple systems.

The product scope has expanded from SaaS Security Posture Management into dynamic SaaS security and AI agent security. Current company materials describe AI agents that monitor SaaS environments, investigate or summarize alerts, and support response, alongside an App Factory for adding integrations and a Knowledge Graph for representing application and agent relationships. Reco reports more than 215 supported applications in its February 2026 funding announcement, while its current LinkedIn profile advertises 235+ integrations and 1,000+ detection controls; these are company-reported coverage figures rather than independently audited measurements. The March 2026 AI Agent Security launch specifically targets agents embedded in or connected to tools such as Copilot, ChatGPT, Salesforce Agentforce, Make, and n8n, where non-human identities can inherit broad access and trigger actions without a conventional interactive user.

The primary customer is an enterprise security, identity, IT, or governance team that needs continuous visibility into SaaS sprawl without deploying software into every application. Reco's commercial case is strongest in regulated or complex organizations where security teams must reconcile business enablement with least privilege, auditability, and rapid investigation. Its 2025 funding announcement reported fivefold ARR growth, a threefold increase in customers, and adoption across financial services, insurance, healthcare, pharma, and technology; its 2026 Series B announcement said it works with multiple Fortune 500 companies and global enterprises. Those are company-reported traction signals, not a substitute for diligence on retention, expansion, gross margin, deployment counts, or customer concentration. The 2026 round, led by Zeev Ventures with participation from existing and new investors, brings reported total funding to $85 million and gives Reco resources to expand engineering, product, and go-to-market operations.

Competition is broad and comes from specialist SSPM and SaaS security vendors such as Adaptive Shield and Wing Security, identity and SaaS governance products such as Valence Security and BetterCloud, and bundled platforms from Microsoft and larger security vendors. Reco's claimed differentiation is the combination of dynamic discovery, contextual risk prioritization, threat detection, and AI-agent governance rather than a static configuration checklist. That advantage depends on connector breadth, rapid support for new SaaS and AI services, high-quality relationship modeling, and remediation that customers trust. The company states that its App Factory can add integrations in days, but the durability and economics of that process need verification.

The national-security and defense relevance is credible but indirect. Defense organizations, intelligence programs, critical-infrastructure operators, and contractors increasingly depend on cloud identity, collaboration, workflow automation, and AI tools, so unmanaged integrations and overprivileged agents can create data-exfiltration, supply-chain, and insider-risk pathways. Reco could provide visibility and policy control in those environments, especially where a read-only deployment is operationally attractive. Nothing in the reviewed public materials establishes defense contracts, classified-environment deployment, or government accreditation. Strategic diligence should therefore test tenant isolation, data residency, deployment models, privileged-access controls, integration failure behavior, detection quality, and whether the product can operate under restricted connectivity or procurement requirements.

Dual-Use Assessment

Military & Commercial Applications

Reco's core capabilities have substantive commercial and security applicability: discovering SaaS and AI assets, modeling identities and permissions, detecting anomalous activity, and enforcing governance are relevant to enterprises as well as defense contractors, intelligence organizations, critical infrastructure, and other sensitive cloud users. The dual-use case is credible but indirect because public evidence reviewed here does not establish classified deployment, government contracts, or defense-specific accreditation.

Strategic Fit Assessment

Research priority signal

Priority signal means this entry may be worth researching within the Claw & Talon thesis. It does not mean investable, suitable, endorsed, available, or likely to produce returns.

Reco is a credible strategic-priority signal for a dual-use cybersecurity database because it addresses a concrete control gap at the intersection of SaaS sprawl, identity governance, and AI-agent adoption. The reported Series B and enterprise traction support continued diligence, while the diligence case remains contingent on retention, net expansion, connector economics, detection precision, and evidence that its graph and workflow layer are differentiated from bundled security suites. This is a strategic assessment, not an investment recommendation.

Strategic Value to U.S.-Israel Alliance

Reco could serve as a visibility and governance layer for the SaaS and AI-agent dependencies of enterprises, contractors, and critical operators. Its strategic value comes from linking applications, identities, permissions, data access, and automated actions in one risk model. For national-security use, the key question is whether it can satisfy restricted deployment, data residency, audit, and integration requirements; public materials establish relevance, not validated government adoption.

Key Technologies

  • Dynamic discovery of sanctioned, shadow, third-party, and AI-powered SaaS applications
  • Knowledge-graph modeling of applications, identities, permissions, data access, and integrations
  • SaaS security posture management with continuous configuration and exposure monitoring
  • AI-agent and non-human-identity inventory, access-scope analysis, and governance
  • App Factory for rapid SaaS connector development and integration coverage
  • Behavioral threat detection and alert investigation across SaaS activity
  • Policy enforcement, remediation workflows, and SIEM/SOAR/endpoint integrations

Use Cases & Applications

  • Finding shadow SaaS, unsanctioned AI tools, and unmanaged third-party integrations
  • Mapping which human and non-human identities can access sensitive SaaS data
  • Detecting permission drift, risky configurations, and excessive OAuth access
  • Governing Copilot, ChatGPT, Salesforce Agentforce, Make, n8n, and custom agents
  • Investigating anomalous SaaS behavior and producing contextual response narratives
  • Prioritizing remediation using application, identity, data, and business context
  • Supporting SaaS security and compliance reviews in regulated enterprises
  • Assessing cloud collaboration and AI-agent exposure in defense-adjacent environments

Sources and verification

This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work; the research methodology documents how evidence is graded, what counts as an independent source, and why some profiles are excluded from search indexing.

This record lists 6 public references used for company identity, status, positioning, or material-claim review.

Public sources

The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.

  • reco.ai Public source used for profile verification.
  • reco.ai Public source used for profile verification.
  • reco.ai Public source used for profile verification.
  • reco.ai Public source used for profile verification.
  • LinkedIn company page Public source used for profile verification.
  • securityweek.com Public source used for profile verification.
  • Profile update timestamp Last updated in the Claw & Talon database on Jul 31, 2026.

Related sector

See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.