Our Mission: Secure Software for Everyone
We are a team of developers, security researchers, and open source enthusiasts dedicated to making software supply chains more secure. Learn more about our story, our values, and the people behind the product.
Innovators in Supply Chain Security
Founded in 2025, our company was born from the realization that software supply chain attacks were becoming one of the biggest threats to businesses worldwide. Our founders, ex-developers and security leads from industry giants, saw first-hand how traditional security tools weren't built for the modern development ecosystem of open source, containers, and CI/CD. We came together to build a platform that developers love to use and that gives security teams peace of mind. Today, we're a growing startup (backed by leading cybersecurity VCs) with a global presence. Our headquarters are in Seattle, WA (with remote team members across North America, Europe, and Asia).
What We Believe In
Developer Empathy
We design for developers first. We know security tools are often seen as a hindrance – we strive to be the opposite: a helpful teammate. This means performance, clear messaging, and integration with dev workflows are top priorities.
Security Excellence
Our security research team is always investigating new threats and techniques. We contribute to open source security projects and standards (you'll find us active in communities like OWASP, SPDX, etc.). We don't just use data – we help improve the state of the art in vulnerability detection and SBOM standards.
Transparency
Trust is earned through openness. We are transparent about how our tools work, what data we collect, and how we use it. For example, our vulnerability database sources are public, and we publish an annual report on the state of software supply chain security.
Customer-Centricity
We exist because of our users. From the smallest dev shop to the largest enterprise, we listen to feedback and rapidly iterate. Many of our best features (like the policy engine rules or specific framework support) came directly from customer suggestions. We pride ourselves on being responsive and solution-oriented.
Meet the Leadership Team
Jane Doe, CEO
A serial entrepreneur with a background in cybersecurity, Jane drives our vision and strategy. Previously at ABC Security Co., she helped build one of the first SAST tools on the market. She's passionate about bridging the gap between devs and security.
John Smith, CTO
John is a veteran open source maintainer (you might know him from the popular project "LibSecure"). He architects our technology and leads the engineering teams. His mantra: "automate the busywork, let humans do the creative work."
Alice Johnson, VP of Product
Alice spent 10 years as a software engineer before moving to product. She ensures our roadmap always reflects real developer needs. Under her guidance, we've prioritized usability and integration depth.
Bob Lee, Head of Research
Bob leads our vulnerability research team. A white-hat hacker at heart, he's uncovered dozens of CVEs himself. His team also contributes improvements to open source scanning tools and datasets that the community uses.
How It All Started
Our origin story involves a late-night incident response… Our founders were on a team responding to a critical open source vulnerability (imagine something like Log4Shell) at a large enterprise. Coordinating the response was chaos – figuring out what apps were affected, which teams owned them, and ensuring patches were applied quickly. In the aftermath, they thought, "there has to be a better way to get ahead of this." That's when the idea of a unified supply chain security platform took root. We started small – building an internal tool to generate SBOMs and check for vulns. It worked so well that we realized its potential as a product for others. Fast-forward to today: that prototype evolved into a full-fledged platform that solves not just that problem, but many adjacent ones developers and security teams face daily. We remain driven by the same motivation: making the software world safer through smarter tools.
Giving Back and Building Community
We wouldn't exist without open source, so we're committed to giving back. We open-sourced several components of our platform (check out our GitHub) – including our command-line SBOM generator and a lightweight license scanner library. We actively support open source projects by offering free licenses of our product to maintainers and through sponsorships/donations. You'll often find us at developer conferences, meetups, and hackathons, either speaking or learning from others. We also maintain an active blog and resource center to educate the community about supply chain security trends and best practices. It's not just about selling a tool – it's about raising awareness and skills industry-wide.
Join Us or Get in Touch
Interested in what we're doing? We'd love to hear from you.