Skip to main content
DS

Dark Sky Technology

This startup provides a software supply chain security platform that uses advanced analytics to identify and mitigate open-source vulnerabilities and threats. It helps organizations ensure the trustworthiness and integrity of their software components, enabling the deployment of secure and reliable applications.

Fort Collins, United StatesFounded 202171K+ followers
Updated 17 months ago

Funding

$250K raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

AI
Funding rounds are not available yet.

Founders

Product

Problem

Organizations face increasing risks from vulnerabilities and malicious code within open-source software components integrated into their systems. Determining the trustworthiness and security of these components is challenging, potentially leading to compromised systems and intellectual property. Existing methods often fail to provide comprehensive risk assessment, origin tracing, and continuous monitoring of open-source packages.

Solution

Dark Sky Technology offers a software assurance and intelligence platform, Bulletproof Trust, that quantifies software risk and uncovers threats in open-source packages. The platform generates and manages Software Bill of Materials (SBOMs) to meet government requirements and provides continuous vulnerability monitoring from multiple data sources. Bulletproof Trust analyzes package health, traces the origins of open-source components, and identifies malicious contributors. It enables organizations to deploy secure and reliable software by minimizing false positives through customizable alerts and offering deployment in air-gapped environments. Additionally, the company offers Bulletproof Code, a machine learning engine that translates C and C++ code into memory-safe Rust code, eliminating a large class of vulnerabilities.

Target Audience

The primary target audience includes software companies, government agencies, and organizations that integrate open-source software into critical systems and require robust software supply chain security.

Features

  • SBOM generation and management in CycloneDX and SPDX formats
  • Continuous vulnerability monitoring from 18 different vulnerability data sources
  • Deep package health monitoring for code quality, license mismatches, and contributor issues
  • Origin tracing to identify the countries and companies influencing open-source code
  • Identification of malicious contributors to safeguard software integrity
  • Customizable alerts to minimize false positives based on specific security requirements
  • Deployment options for air-gapped environments to protect sensitive code
  • API integration for seamless analysis and platform management
  • Bulletproof Code: Machine learning-based translation of C/C++ to Rust
This profile is AI-generated and may contain inaccuracies.