# Escape

> Escape sells a continuous offensive-security platform for teams securing APIs, web applications and cloud-native software. Its agentless discovery maps exposed assets, business-logic-aware DAST tests how applications behave, and Cascade AI pentesting attempts multi-step attacks. Founded by Tristan Kalos and Antoine Carossio in 2020, the company began with GraphQL security and now serves more than 2,000 security teams worldwide, according to Escape.

- **Founded:** 2020
- **Headquarters:** San Francisco, United States
- **Founders:** Tristan Kalos (Co-founder and CEO), Antoine Carossio (Co-founder and CTO)
- **Products:** GraphQL Armor, Attack Surface Management, Business-logic-aware DAST, Cascade AI Pentesting
- **Notable:** Y Combinator Winter 2023 company., Escape reported more than 1,000 organizations using its platform six months after launch in 2023 and more than 2,000 security teams in 2026., Thinkific reported a 54% reduction in GraphQL API security risk in its first weeks using Escape.

## Products & services

- **GraphQL Armor** — Open-source middleware that adds configurable GraphQL protections for Apollo Server, Yoga and Envelop.
- **Attack Surface Management** — Agentless discovery and inventory of APIs, web apps and other application-layer assets, including shadow APIs, with owner mapping and integrations.
- **Business-logic-aware DAST** — Dynamic testing of APIs and web apps, including authenticated workflows, access control and business-logic flaws, with CI/CD integration and remediation context.
- **Cascade AI Pentesting** — Multi-agent pentesting that uses application context, attempts multi-step attack chains and turns validated findings into recurring tests. Source-aware whitebox mode became available to selected customers in 2026.

## Achievements

- Y Combinator Winter 2023 company.
- Escape reported more than 1,000 organizations using its platform six months after launch in 2023 and more than 2,000 security teams in 2026.
- Thinkific reported a 54% reduction in GraphQL API security risk in its first weeks using Escape.
- Escape announced SOC 2 Type II completion in October 2023.
- Escape researchers reported more than 2,000 high-impact vulnerabilities in 5,600 publicly available AI-built applications in 2025.

## Latest updates

- **2026-09** — Antoine Carossio published Escape's guide to building a continuous penetration-testing program.
- **2026-08** — Escape joined OpenAI's Trusted Access for Cyber preview and Anthropic's Cyber Verification Program.
- **2026-07** — Escape opened source-aware whitebox pentesting in Cascade to selected customers and published Sigma Computing's GraphQL DAST case study.
- **2026-06** — Escape introduced Cascade as its multi-agent pentesting engine and opened a channel-partner program.
- **2026-03** — Escape raised an $18 million Series A led by Balderton and introduced a broader offensive-security platform and new brand.

## Links

- Website: https://escape.tech/
- LinkedIn: https://www.linkedin.com/company/escapetech/
- Twitter/X: https://twitter.com/EscapeTechHQ
- GitHub: https://github.com/Escape-Technologies

---

Profile page: https://yespress.io/escape
Published by YesPress — https://yespress.io
Last updated: 2026-09-28
