Skip to content
TrustList
Funding news

Reco raises $55 million for SaaS and AI-agent security, with AT&T Ventures taking part

Editorial

By TrustList Editorial

Reco announced $55 million in additional funding on 29 September 2026, with a strategic investment from AT&T Ventures and new investors Forestay and Quadrille Capital. It puts total funding at $140 million.

About Reco raises $55 million for SaaS and AI-agent security, with AT&T Ventures taking part

Reco raises $55 million for SaaS and AI-agent security, with AT&T Ventures taking part

29 September 2026 — Reco, a security company focused on software-as-a-service applications, announced on 29 September 2026 that it has raised $55 million in additional funding. It says its total funding is now $140 million.

The round

  • Amount: $55 million, described by the company as additional funding.
  • Scale it reports: more than 280 application integrations and more than 1,000 detection controls.
  • Investors named by the company: a strategic investment from AT&T Ventures, and new investors Forestay and Quadrille Capital.
  • Use of the money: "expansion across sales, partnerships, channels and customer support", in the company's words.

What the company does

Reco's platform discovers the SaaS applications and AI agents in use across a company, maps the identities and permissions attached to them, and flags risky configurations and data access. Its recent product work centres on AI agents: finding agents that staff have connected to business applications, and controlling what data and actions those agents can reach.

Why it matters for buyers

TechCrunch, reporting the round the same day, noted that start-ups selling security for AI agents are crowding the market. For security teams, the problem these tools address is real: agents connected to email, file storage or CRM systems often hold broad permissions that nobody reviews. The choice of tool matters less than having an inventory of which agents exist and what they can touch.

What to check

  • Security teams should ask any vendor in this space how it discovers agents (API connections, browser extensions, identity-provider logs), which SaaS applications it covers out of the box, and whether it can revoke access or only alert.
  • IT and procurement should check overlap with existing SaaS security posture management, identity governance and data-loss-prevention tools before adding another console.
  • Telecom and large enterprises may note the AT&T Ventures stake; a strategic investor does not by itself mean a reseller agreement, so ask.

Sources

Categories & features