Nokod Security mentioned in the 2025 Gartner® Research on Governing Low-Code/No-Code Applications

NEW YORK and TEL AVIV, June 3, 2025 – Nokod Security, the security company for no-code development, today announced that its main dashboard is mentioned via a photo as an Example of a Third-Party Application Health Inventory Page in the 2025 Gartner How to Support and Govern Low-Code Applications for Citizen Development report by Mukul Saha and Oleksandr Matvitskyy.

The Gartner report offers software engineering leaders guidance on how to govern low-code/no-code usage at scale, stating that “Software engineering leaders struggle to manage security and privacy risks in low-code/no-code development, because the governance approaches they use for IT developers are difficult or impossible to apply to citizen developers.”

According to Gartner, “Third-party tools can help mitigate the security and compliance risks associated with business-led low-code/no-code development. Dashboard capabilities provide organizations with visibility into their risk-based security posture and allow users to take timely corrective actions.” The Figure 3 of the report is an example of such a dashboard, demonstrating visibility into application health across distributed low-code/no-code environments.

Gartner Referencing Nokod

The report also states that: “Alternatively, citizen developers may decide to forgo software engineering’s assistance and proceed with low-code/no-code platforms anyway. This approach results in low-quality applications that frustrate users, fail to meet business needs and expose the organization to unacceptable risks, such as:

  • “Severe security and privacy issues”
  • “Operational and compliance risks like data breaches and duplication”
  • “Poor application quality and stability”
  • “Violation of internal and external policies and regulations”

“We believe Nokod’s mention in this research validates our mission to make no-code development secure by design,” said Yair Finzi, CEO of Nokod Security. “Citizen developers are rapidly building business-critical workflows, yet these applications often fall outside the purview of traditional AppSec programs. Our platform gives security teams the visibility and control needed to identify risks early, enforce guardrails, and support secure innovation at scale.”

As the report outlines, leading low-code/no-code platforms offer their own governance tools, but they often lack support for multivendor environments. These governance blind spots, if unaddressed, can expose organizations to regulatory violations, data exfiltration, and other business risks. Nokod’s cross-platform visibility and risk modeling capabilities help organizations discover unmanaged no-code apps, evaluate their exposure, and apply scalable security policies.

Gartner Attribution and Disclaimer

Gartner, How to Support and Govern Low-Code Applications for Citizen Development, by Mukul Saha and Oleksandr Matvitskyy, April 17, 2025.

Gartner is a registered trademark of Gartner, Inc. and/or its affiliates in the U.S. and internationally, and is used herein with permission. All rights reserved. Gartner does not endorse any vendor, product, or service depicted in its research publications and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner research publications consist of the opinions of Gartner’s research organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose.

About Nokod Security

The Nokod Security platform protects enterprises amidst digital transformation and their pursuit of productivity gains from low-code/no-code application development.

Nokod Security offers application security and governance for applications and automations developed in low-code / no-code (LCNC) and RPA environments such as Microsoft Power Apps, UiPath, ServiceNow, etc. Nokod Security detects vulnerabilities and compliance issues and allows for managing a governance policy in a field currently invisible to security teams and considered a Shadow Engineering area.

Media Contact

Marc Gendron
Marc Gendron PR for Nokod Security
[email protected]
617-877-7480

Dr. Ursula Ron
Director of Marketing
ursula[at]nokodsecurity.com

More News from Nokod

Bridging the Gap: Integrating LCNC Apps into the CTEM Framework

The rapid adoption of low-code/no-code (LCNC) development and robotic process automation (RPA) presents unique cybersecurity challenges. Incorporating LCNC and RPA into the Continuous Threat Exposure Management framework can help mitigate associated risks effectively.

Black Hat Europe 2024

Meet us in London. Black Hat Europe, part of the globally renowned Black Hat conference series, brings together the information security community to share cutting-edge research, tools, and insights in cybersecurity.

Scroll to Top