Trickest
Founded 2020 · 12 employees on LinkedIn · 3 known investors
Trickest offers a platform for security testing built around composable, reproducible workflows, where each workflow is represented as a graph of trusted, largely open-source tools. It targets security teams and defenders who need repeatable, transparent offensive security testing.
Also known as Trickest d.o.o.
Investors · 3
Company profile
researched Aug 2026Trickest operates a security execution platform that turns offensive security testing into composable workflow graphs. Users build workflows on a visual canvas as directed acyclic graphs of pre-integrated security tools, then execute them at scale on managed or self-hosted machines; individual nodes can be burst across a fleet and re-executed with upstream dependencies memoized. Tool output is normalized into typed "Live Tables" that sync with run data, are queryable through the Trickest Query Language and a write API, and can be surfaced in dashboards.
The platform is accessible through a web builder, a CLI, a typed TypeScript SDK (@trickest/sdk), an API, and an MCP integration for coding agents such as Claude Code, Cursor and Codex. In July 2026 the company released Agents, which build workflow graphs from a described task, place agent nodes beside tool nodes, and run each agent in its own isolated sandbox for tools, files, and runs. Product areas marketed to security teams include offensive security (discovery, testing, validation, red team as continuous workflows) and exposure management (finding reachable assets, validating exploitability, and tracking the attack surface). Additional capabilities shipped over time include Modules (packaged, auto-updating tools), Private Agents for scanning internal networks, private tooling and a private Docker registry, self-hosted execution machines, advanced variables, RBAC, SAML SSO, and audit logs.
Founding story
Founded in 2020 by Nenad Zarić and Mihailo Tomić. Zarić was a security professional and bug bounty hunter who held top rankings on HackerOne for programs including Uber, PayPal and Snapchat, and has described the field's shortage of practitioners as forcing individuals to do the work of several people — the problem the platform was built to address. The team describes itself as engineers, former bug bounty hunters and technology people focused on making security testing composable and reproducible.
Business model
Software platform sold on a tiered model: a free Community edition for a single user with three self-hosted execution slots, the workflow builder and public workflow library, an AI agent using the customer's own model, CLI/SDK/API/MCP access and 7-day data retention; and a custom-priced Teams & Enterprise tier adding managed and self-hosted execution at scale, multiple users and shared workspaces, modules and private tooling, RBAC, SAML SSO, audit logs, flexible hosting, onboarding, training and dedicated support. The company has publicly argued against per-asset pricing in attack surface management in favor of pricing execution capacity.
Free Community tier for individual developers and custom-priced enterprise subscriptions covering platform access and execution capacity, presented as a single API and a single bill.
Traction
Case studies cite a financial technology customer reducing adversary simulation from three weeks to six hours per tactic and a fast-moving consumer goods customer scaling from eight to thirty security tests per month with the same team. The company reported $3M in total funding as of mid-2024 and maintains a regularly updated product and research blog through 2026.
Latest developments
In July 2026 Trickest introduced Agents, which compose real tools into a DAG from a described task and execute across the fleet alongside handwritten workflows, with each agent isolated in its own sandbox. Recent blog output covers deterministic workflows as a response to AI-accelerated attacks, slopsquatting of AI-hallucinated packages, security team burnout and automation, continuous validation versus point-in-time testing under DORA, NIS2 and SEC requirements, and consolidation of offensive security stacks.
▸Full profile — market position, technology, go-to-market, geography, history
Market position
Positions itself as an execution layer that complements AI agents' planning with deterministic, reproducible runs, and as a consolidation play against enterprises running many separate offensive-security and ASM point tools. Coverage has described the company as a pioneer in enterprise security automation working to democratize offensive security.
Stated principles are composability (workflows are graphs of tools the user already trusts rather than a black box), reproducibility (identical inputs and parameters yield identical results), and being open by default, built on and contributing back to open-source tooling. The platform combines a human-editable canvas with agent-generated graphs, and pairs execution with typed, queryable output rather than opaque scan reports.
Technology
A hyperscalable execution engine that runs workflows as graphs of pre-integrated open-source and packaged security tools across ephemeral managed machines or customer-hosted execution slots. Outputs are stored as typed rows in a managed database (Live Tables) queryable with the Trickest Query Language, and the platform is reachable through a REST API, CLI, npm-distributed typed SDK, and an MCP server. Agents run in per-agent sandboxes that isolate tools, files, and runs.
Go-to-market
Self-serve free Community sign-up and CLI install alongside enterprise sales via a 30-minute personalized demo covering stack mapping, pricing and deployment. The company also publishes a technical blog with vulnerability research and methodology content, maintains an indexable tools library and public workflow library, and works with recognized security practitioners as advisors and community advocates.
Enterprise and mid-market security teams, managed security service providers, and ethical hackers or bug bounty practitioners; publicly cited customer sectors include financial technology and fast-moving consumer goods.
Geography
Belgrade, Serbia base per press coverage; the platform is delivered as cloud software with managed and self-hosted deployment options.
History
Founded in 2020 and headquartered in Belgrade, the company raised a €1.4M seed round announced in August 2021 with Credo Ventures among the backers, and reported $3M in total funding by June 2024. Product milestones include the Community Edition launch in December 2023, private tooling and self-hosted execution in early 2024, Modules in June 2024, Private Agents in October 2024, unified dashboards in November 2024, the Trickest Query Language in February 2025, CLI 2.0 and RBAC in July 2025, and the Agents release in July 2026.
Compiled by commissioned research from 8 cited public sources — announcements, filings, and press listed under research sources below.
Key figures
latest reportedCompany-reported or press-reported figures, each dated to when it was claimed — not independently audited.
Timeline · 11
launches, deals, and filingsAgents compose real tools into a DAG from a natural-language description, place agent nodes alongside tool nodes, and run across the managed fleet like handwritten workflows.
RBAC gives offensive security teams granular control over who can run, build, and view workflows.
A query language for unifying fragmented offensive security data and filtering large datasets to prioritize vulnerabilities.
Dashboards unify offensive security data from multiple tools for real-time visibility into vulnerabilities and attack-surface changes.
Private Agents allow organizations to scan internal environments on any device using Trickest workflows and modules.
Modules package offensive security tools with automatic updates, built-in scalability, and standardized inputs and outputs for workflow automation.
Added self-hosted execution machines, a private Docker registry, a team script library, and a new community data retention policy.
Release adding private tooling for custom workflows and advanced variables for dynamic workflows.
Trickest launched a Community Edition providing 24/7 platform access with free Run Units and self-hosted execution, and added Ben 'NahamSec' Sadeghipour to its advisory team.
The Belgrade-based offensive security startup announced a €1.4M seed round with participation from Credo Ventures.
Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.
▸Research sources · 8
primary sources listed
- Trickesttrickest.com · web
8 public sources were cited for this profile; the first-party ones are listed here.
Frequently asked questions
- What does Trickest do?
- Trickest is a security execution platform that runs composable, reproducible offensive-security workflows across a managed fleet.
- Who are Trickest's investors?
- Trickest's investors include Moonfire Ventures, Underline Ventures, Credo Ventures.



