Enhancements to Akamai API Security, Q2 2025
The recent Akamai API Security updates 3.48 and 3.49 introduce expanded compliance coverage, deeper traffic visibility, and new integrations to help you reduce risk, streamline operations, and stay ahead of evolving API threats.
Expanded compliance framework support
Our Compliance Dashboard continues to evolve into a central hub for tracking API security and privacy alignment across regulatory frameworks. In this release, we’ve added support for three major frameworks:
Digital Operational Resilience Act (DORA): A European Union regulation that mandates that financial institutions strengthen their digital operational resilience, including secure and resilient API use.
HITRUST CSF v11: A widely adopted framework for managing information risk in the healthcare sector and other highly regulated industries.
Lei Geral de Proteção de Dados Pessoais (LGPD): Brazil’s comprehensive data protection law that governs the use of personal data.
With these additions, customers that operate globally can now assess their APIs against region-specific and industry-specific requirements from a single interface.
The Compliance Dashboard offers intuitive widgets to make it easy to identify gaps, prioritize remediation, and generate evidence for audits (Figure 1). The result: less time preparing for compliance assessments and greater confidence in your security posture.
Real-time protection with Zuplo integration
Akamai API Security now integrates with Zuplo — the first API management solution built for the edge from the ground up, offering API gateway, management, governance, and monetization capabilities (Figure 2).
With this integration, our API Security solution analyzes your API traffic in real time and sends enforcement signals directly to Zuplo to block malicious actors. This enables instant protection against API attacks without disrupting performance or user experience.
This integration combines Zuplo’s agility with Akamai’s API security intelligence, delivering a unified API protection experience.
Sensor support for Python and Node.js frameworks
API traffic visibility is essential to understanding your risk and maintaining strong governance. With this release, we’re expanding our sensor coverage to include several popular back-end frameworks across both Python and Node.js environments.
Python frameworks: Flask, Django, and FastAPI
Node.js frameworks: Express, Fastify, Nest, Koa, Hapi, and Hono
With support for these technologies, you can now capture encrypted traffic, uncover visibility gaps across modern app environments, and extend your security coverage to more of your tech stack. These additions help you achieve comprehensive visibility, improve governance, and strengthen your ability to respond to API risks across distributed architectures.
Learn more
Please review the release notes for more information about these and other features.