Skip to main content
O

Onlydust

Onlydust offers CtrlG, an automated verification platform that screens every incoming pull request for open‑source projects. Using static analysis, vulnerability scanning, and AI‑driven risk scoring, CtrlG flags low‑skill or potentially harmful contributions and provides maintainers with clear, actionable reports and configurable policy controls, helping critical infrastructure stay secure without slowing development.

Paris, FranceFounded 2022403K+ followers
Updated 2 months ago

Funding

$3.2M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

ASECFVFSC

Founders

Product

Problem

Open‑source maintainers are overwhelmed by a flood of low‑skill, AI‑generated contributions that are difficult to distinguish from human work, leading to reduced code quality, increased security risk, and a reluctance to accept external patches.

Solution

CtrlG offers an automated verification platform that evaluates incoming code changes for safety and quality before they are merged into critical open‑source projects. The service analyzes each commit using static analysis, dependency scanning, and AI‑assisted risk assessment to flag potentially harmful or low‑quality contributions. Maintainers receive clear, actionable reports that indicate whether a change is safe to merge, reducing the coordination overhead and protecting the integrity of essential infrastructure. By integrating directly with existing version‑control workflows, CtrlG enables continuous, secure collaboration without slowing development velocity.

Target Audience

Primary users are maintainers and security teams of critical open‑source libraries and infrastructure projects that receive frequent external contributions.

Features

  • Automated static analysis and vulnerability scanning of every incoming pull request
  • AI‑driven risk scoring that distinguishes high‑quality contributions from low‑skill, bot‑generated code
  • Seamless integration with GitHub, GitLab, and other VCS platforms via pull‑request comments and status checks
  • Detailed security and quality reports with actionable remediation suggestions
  • Configurable policy rules allowing projects to set custom thresholds for merge approval
  • Real‑time alerts for high‑risk commits that could compromise critical infrastructure
This profile is AI-generated and may contain inaccuracies.