Thistle Technologies provides a security platform for embedded and IoT devices running Edge AI, delivering hardware‑rooted trust, secure/verified boot, and cryptographically signed OTA firmware and model updates. Their tools—including a memory‑safe update client, CI/CD‑integrated release helper, and a unified control center—enable device manufacturers to quickly embed robust security, ensure model confidentiality, and meet compliance requirements at scale.
Funding
$6.7M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.



Founders
Product
Problem
Embedded and IoT devices, especially those running Edge AI workloads, often lack built‑in mechanisms for hardware‑rooted trust, secure boot, and authenticated over‑the‑air updates, leaving them vulnerable to firmware tampering, model theft, and non‑compliance with emerging regulations such as the EU Cyber Resilience Act.
Solution
Thistle Technologies offers a security platform that integrates hardware‑anchored trust, secure/verified boot, and cryptographically signed OTA firmware and AI model updates for a wide range of edge hardware. The platform provides a memory‑safe on‑device update client (TUC) and a control center for managing releases, device cohorts, and fleet health. Developers can use the Thistle Release Helper to automate signing and publishing from CI/CD pipelines, with support for cloud KMS, YubiKey, or local keys. The solution also encrypts AI models end‑to‑end and verifies model provenance during deployment, helping manufacturers meet compliance requirements while reducing the engineering effort needed to secure devices at scale.
Target Audience
Primary customers are device manufacturers and IoT product teams building embedded or Edge AI systems who need to embed security features quickly and at scale.
Features
- Secure/Verified boot tooling with support for Infineon OPTIGA Trust‑M and a broad list of reference hardware (BeagleY‑AI, ESP32, Nvidia Jetson, Raspberry Pi, etc.)
- OTA firmware and software update service for embedded Linux and Zephyr RTOS, including automatic fallback to the last stable state on failure
- Thistle Update Client (TUC): a memory‑safe on‑device agent that validates signed updates before installation
- Thistle Release Helper (TRH) for CI/CD integration, offering flexible key management via Cloud KMS, YubiKey, or local files
- Thistle Control Center: unified dashboard to create OTA releases, generate verified‑boot bundles, tag device cohorts, and monitor fleet health
- End‑to‑end encryption and cryptographic signing of AI models, ensuring model confidentiality and provenance across the deployment lifecycle
- Compatibility with enterprise‑grade hardware and the ability to extend support to any platform through custom integration