
Chainguard
Founded Year
2021Stage
Series C | AliveTotal Raised
$256MValuation
$0000Last Raised
$140M | 3 mos agoMosaic Score The Mosaic Score is an algorithm that measures the overall financial health and market potential of private companies.
+153 points in the past 30 days
About Chainguard
Chainguard specializes in fortified software delivery within the cybersecurity sector. The company offers hardened container images designed to reduce attack surfaces and integrates tools for vulnerability remediation, compliance, and risk mitigation. Chainguard's solutions cater to the needs of developers and organizations aiming to secure their software supply chains and maintain open source software security. It was founded in 2021 and is based in Kirkland, Washington.
Loading...
ESPs containing Chainguard
The ESP matrix leverages data and analyst insight to identify and rank leading companies in a given technology landscape.
The AI security market provides solutions designed to protect machine learning models and algorithms from adversarial attacks, data poisoning, model evasion, backdoor injections, and other cyber attacks. Vendors offer a range of products, including intrusion detection systems, adversarial defense systems, secure machine learning frameworks, and anomaly detection tools.
Chainguard named as Highflier among 15 other companies, including HiddenLayer, Patronus AI, and Calypso AI.
Loading...
Research containing Chainguard
Get data-driven expert analysis from the CB Insights Intelligence Unit.
CB Insights Intelligence Analysts have mentioned Chainguard in 2 CB Insights research briefs, most recently on Oct 3, 2024.

Oct 3, 2024 report
State of Venture Q3’24 ReportExpert Collections containing Chainguard
Expert Collections are analyst-curated lists that highlight the companies you need to know in the most important technology spaces.
Chainguard is included in 5 Expert Collections, including Cybersecurity.
Cybersecurity
9,889 items
These companies protect organizations from digital threats.
Defense Tech
1,273 items
Defense tech is a broad field that encompasses everything from weapons systems and equipment to geospatial intelligence and robotics. Company categorization is not mutually exclusive.
Unicorns- Billion Dollar Startups
1,249 items
Supply Chain & Logistics Tech
4,053 items
Companies offering technology-driven solutions that serve the supply chain & logistics space (e.g. shipping, inventory mgmt, last mile, trucking).
Artificial Intelligence
6,888 items
Latest Chainguard News
Nov 4, 2024
Cloud Native Now As we approach SigstoreCon at KubeCon + CloudNativeCon , an exciting convention where experts will share their insights on the project’s progress, adoption and future directions, I’d like to take this opportunity to reflect on the significant impact Sigstore has had over the years. A Global Effort: Maintaining a Diverse and Collaborative Community Sigstore boasts an impressive list of maintainers from top companies and academic institutions, including Purdue, NYU, Google, Chainguard, GitHub, Red Hat, Stacklok, VMware, IBM, Trail of Bits, Yahoo and more. This diverse contributor base is crucial to the project’s success, ensuring that Sigstore remains open, transparent and secure. Our community has grown significantly since its inception, with many repositories spanning polyglot client SDKs, servers (transparency logs, certificate authorities, policy controllers) and supporting automation tools like Helm charts and Terraform templates. This extensive collection of resources demonstrates the project’s commitment to providing a robust foundation for digital signing. Sub-Groups and Specialized Teams In Sigstore we have two formalized sub-groups, to help improve standardization and conformity, along with a more robust and highly available public service. SIG-Clients : Focuses on developing client SDKs for various programming languages. SIG-Public-Good-Operations : Concentrates on building and maintaining services that support public-good operations. Public Good Service: Community SREs Keep the Service Up, Running and Signing! Sigstore’s Public Good Service is a remarkable example of community-driven collaboration. In this model, volunteer Site Reliability Engineers (SREs) from around the world contribute their time and expertise to ensure the smooth operation of Sigstore’s services. This community-driven approach has several benefits. The service has Increased resilience, with multiple SREs involved over an on-duty rotation, the risk of a single point of failure is minimized. Community SREs can quickly respond to incidents, reducing downtime and minimizing the impact on users, made even better by all the work to improve monitoring and service health probes. We have multiple vendors providing dedicated volunteers to provide Sigstore with a round-the-clock roster of SREs, including Google, Chainguard, GitHub, Red Hat and Stacklok. Sigstore’s Graduation Within the OpenSSF Sigstore was originally incubated within the OpenSSF under the guidance and help of the OpenSSF Technical Advisory Committee (TAC). The project received valuable feedback, mentorship and support during this period, and eventually reached the stage where it was suitable for graduation. After a rigorous evaluation process , Sigstore successfully graduated to become an official OpenSSF Project. This milestone marked a significant achievement for the community, recognizing the project’s maturity, security and adherence to best practices. What Does it Mean to be an OpenSSF Project? As a certified OpenSSF Project, Sigstore has demonstrated its commitment to the following key aspects of a healthy open-source project: Security We always prioritize implementing robust security measures to protect the users of sigstore. A full security audit of Sigstores code was conducted and the report was publicly available . Our CI contains multiple security measures such as API fuzzing and more. We have a dedicated security response team to act quickly on any discovered/reported vulnerable code. We maintain a point of contact for vulnerability reports and follow coordinated vulnerability disclosure practices. Governance Transparency Maintaining open communication channels with the community, ensuring that all stakeholders are informed about project progress. Any is welcome to join the community meetings which are held publicly, along with the technical steering committee meetings. Project Adoption: The De-Facto Approach to Code Signing and a Move Towards Package Manager Support and Adoption Sigstore has become the de-facto approach to code signing for open-source projects. In 2024 and beyond, package repositories are the focus for adoption, to improve supply chain security for package ecosystems. npm now leverages Sigstore to sign SLSA provenance attestations, a feature that went into general availability last year. GitHub Actions now uses Sigstore for provenance in its Artifact Attestations , which went into GA status in June 2024. Homebrew , PyPI and Maven Central Sigstore integration is actively underway for each ecosystem. Looking Ahead: SigstoreCon and Beyond As we celebrate the impact of Sigstore at SigstoreCon, we’re excited to share our vision for the future. Join us as we discuss the latest developments, best practices and emerging trends in digital signing and supply chain security. Stay tuned for more updates from SigstoreCon and follow our blog at blog.sigstore.dev for the latest news on the project’s progress. Let’s continue to work together towards a more secure and trustworthy software ecosystem! To learn more about Kubernetes and the cloud native ecosystem, join us at KubeCon + CloudNativeCon North America , in Salt Lake City, Utah, on November 12-15, 2024.
Chainguard Frequently Asked Questions (FAQ)
When was Chainguard founded?
Chainguard was founded in 2021.
Where is Chainguard's headquarters?
Chainguard's headquarters is located at 810 7th Street South, Kirkland.
What is Chainguard's latest funding round?
Chainguard's latest funding round is Series C.
How much did Chainguard raise?
Chainguard raised a total of $256M.
Who are the investors of Chainguard?
Investors of Chainguard include Amplify Partners, MANTIS Venture Capital, Sequoia Capital, Spark Capital, Lightspeed Venture Partners and 15 more.
Who are Chainguard's competitors?
Competitors of Chainguard include Legit Security and 6 more.
Loading...
Compare Chainguard to Competitors

Ox Security specializes in software supply chain security solutions. The company offers services that help manage security risks in the software development process, including automating protective actions, managing security findings from a single location, and ensuring the security and integrity of all cloud artifacts. It primarily serves the software development and cloud computing industries. It was founded in 2021 and is based in Tel Aviv, Israel.

Aikido develops a cloud security platform. It aims at preventing security issues and resists malware attacks. It scans and monitors the open-source dependencies in the codebase for known vulnerabilities and risks and helps secure the supply chain. The company also integrates with major cloud providers to detect risks that can make cloud infrastructure more susceptible to attacks. It was founded in 2022 and is based in Ghent, Belgium.

Myrror Security specializes in software supply chain protection within the cybersecurity domain. The company offers a solution that detects and prevents attacks during the development process, particularly those originating from third-party sources, to maintain product security and prevent the spread of malicious activity. It primarily serves the cybersecurity industry. Myrror Security was formerly known as BlindSpot Security. It was founded in 2022 and is based in Tel Aviv, Israel.

StackHawk focuses on application and application programming interface (API) security testing in the technology sector. The company provides services that enable developers to find, understand, and fix security vulnerabilities in their software before it is shipped, with a particular emphasis on integrating these services into continuous integration and continuous delivery (CI/CD) workflows. It primarily serves the software development and cybersecurity industries. It was founded in 2019 and is based in Denver, Colorado.
Binarly specializes in firmware security and supply chain risk management within the cybersecurity industry. The company offers an AI-powered platform that detects and remediates known and unknown vulnerabilities in firmware and software supply chains. Binarly's services are designed to provide visibility into firmware and software vulnerabilities, identify malicious code, and offer prescriptive fixes for rapid resolution. It was founded in 2021 and is based in Santa Monica, California.

ReversingLabs is a company that focuses on software supply chain security and threat intelligence in the cybersecurity industry. The company offers a platform that provides security for software development workflows, containers, and release packages, detecting high-risk threats, malware, backdoors, exposed secrets, and software tampering across the software development cycle. Its primary customers are organizations and DevSecOps teams in various industries. It was founded in 2009 and is based in Cambridge, Massachusetts.
Loading...