Research · curated 27 Jun 2026

What nearly 10,000 developer environments reveal about agentic development risk

Coverage timeline

23 Jun 2026snyk.io

Single-source research — first reported, latest, and curated coincide.

Why it matters

AI coding agents expand the software supply-chain attack surface, and defenders need visibility into the tools and permissions these agents wield.

Snyk analyzed nearly 10,000 developer environments to examine risks introduced by AI coding agents as a new layer in the software supply chain, highlighting issues around tools, instructions, and permissions in agentic development.