Market Opportunity
Supply chain risk in open-source AI - governance and sandbox enforcement targets a $6.0B = 60,000 enterprises x $100K ACV, representing large orgs that build or integrate AI toolchains and buy security/compliance tooling total addressable market with medium saturation and a year-over-year growth rate of 25% estimated growth driven by AI adoption and compliance spend.
Key trends driving demand: OSS LLM adoption -- wider use of open-source models increases dependency on external code and model artifacts, raising supply-chain exposure; Shift left security -- teams are moving security and compliance checks earlier in CI/CD, creating demand for upstream governance gates; Managed MCP and runtime platforms -- proliferation of managed execution sandboxes and MCP infrastructures enables enforcement at source rather than runtime; Regulatory pressure -- new rules for AI systems increase need for auditable pre-deployment controls.
Key competitors include Snyk, Chainguard, Sonatype (Nexus Lifecycle), Sigstore (open source) and OSS toolchains, Weights & Biases / Fiddler (model governance adjacent).