Unpacking The Security Complexity Of No-Code Development Platforms
HelpNet Security, Friday, June 13th, 2025
In this Help Net Security interview, Amichai Shulman, CTO at Nokod Security, discusses how the abstraction layer in no-code environments complicates security by obscuring data flow, identity propagation, and control logic.
Shulman also addresses why vulnerabilities in no-code applications go far beyond simple misconfigurations or insecure defaults.
How does the abstraction layer in no-code environments complicate visibility into data flow, identity propagation, or control logic?
The use of no-code tools to generate custom applications in enterprises creates a bigger distance between the representation of software as reflected to the developer and the actual machine code implementing the application. This distance creates a number of challenges for visibility: