Skip to main content
G

Gradient

The startup develops cryptographically attested software that establishes trust and authenticity in digital interactions through a framework for secure identity verification and data sharing. This technology enables users to collaborate without compromising privacy or data integrity, addressing the critical issues of digital trust and security.

Boston, United StatesFounded 2018111K+ followers
Updated 3 months ago

Funding

$800K raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

Funding rounds are not available yet.

Founders

Product

Problem

Traditional multi-factor authentication (MFA) methods, including hardware keys and authenticator apps, can be cumbersome for users and costly to manage. These methods are also vulnerable to sophisticated phishing and post-authentication attacks, leading to account takeovers and data breaches.

Solution

Gradient provides a "Stealth MFA" solution that replaces traditional MFA with a one-click, passwordless experience, eliminating credential-based cyberattacks and post-authentication vulnerabilities. As a SaaS plugin to existing Single Sign-On (SSO) infrastructure, Gradient anchors user identities and session tokens to devices, preventing credential theft, account takeovers, and token replay attacks. The solution leverages hardware features already present on enterprise endpoints to achieve military-grade cybersecurity without requiring additional hardware or frustrating user workflows. Gradient's continuous attestation of device and user integrity ensures that the hardware remains uncompromised throughout the session, providing a more secure cloud infrastructure.

Target Audience

Gradient is designed for enterprises seeking to enhance their security posture, simplify access management, and reduce the total cost of ownership associated with traditional MFA solutions.

Features

  • Passwordless authentication: One-click access without passwords, MFA prompts, authenticator apps, or hardware security keys.
  • Device-anchored identity: Binds user identity and session tokens to the device, preventing credential compromise and session hijacking.
  • Protection against post-MFA attacks: Secures against Adversary-in-the-Middle (AitM) attacks, token replay, and token theft.
  • Continuous attestation: Validates the trustworthiness of the hardware root of trust throughout the session.
  • Rapid deployment: Integrates with existing IAM, IdP, and security tools in under 30 minutes.
  • Lightweight software client: Compatible with Windows, Mac, Linux, iOS, and Android.
  • Automated credential rotation & management
  • Integrates with IdP & SAML 2.0 including Azure, Okta, Ping, PingFederate, OneLogin
This profile is AI-generated and may contain inaccuracies.