Ossprey
2 known investors
Ossprey detects supply chain attacks and malicious dependencies by monitoring code behavior at runtime, identifying packages that scan clean but behave maliciously. It serves engineering teams building software who need runtime security monitoring without slowing development velocity.
AI & Machine LearningCybersecurityDeveloper Tools

Founders & leadership
ND
Nate Dunningin
DR
David Read
Investors · 2
Competitors · 9
by search overlapWiz8 shared keywordsWiz provides cloud security platform that identifies and removes critical risks across multi-cloud environments. The company offers a unified security layer for organizations to manage risks and accelerate business operations on major cloud providers.
Snyk7 shared keywordsSnyk is a developer-focused security platform that identifies and fixes vulnerabilities in code, dependencies, containers, and cloud infrastructure using AI-powered analysis. The company serves organizations of all sizes looking to integrate security into their software development process.
Endor Labs6 shared keywordsEndor Labs provides application security tooling to identify, prioritize, and fix vulnerabilities in software development, with particular focus on securing AI-generated code and open-source dependencies.
Step Security5 shared keywordsStepSecurity provides a platform to prevent, detect, and respond to software supply chain attacks across developer machines, code repositories, and CI/CD pipelines. It offers security controls such as Harden-Runner, GitHub Actions monitoring, and a threat intelligence team focused on identifying supply chain attacks.
Infosecurity Magazine5 shared keywordsInfosecurity Magazine is an online publication covering cybersecurity news, analysis, and industry topics such as information security practices, quantum-safe cryptography, and AI in security. It serves security professionals and organizations across sectors.
Legit Security5 shared keywordsLegit Security provides an application security platform that helps organizations identify and manage software vulnerabilities and risks across their development environments. The platform serves enterprise security teams seeking to reduce alert fatigue and improve visibility into their application attack surface.
OX Security4 shared keywordsOX Security provides application security solutions that help organizations identify and prioritize exploitable, reachable, and impactful risks across the software development lifecycle.
Sonatype4 shared keywordsSonatype provides software supply chain management and security solutions for managing open source software and AI dependencies. The company serves enterprise development teams by offering visibility, policy enforcement, and vulnerability management across the software development lifecycle.
Socket4 shared keywordsSocket is a developer-first platform that detects and blocks malicious packages in real time to protect organizations from software supply chain attacks. The platform secures the open source ecosystem used across technology, media, healthcare, and finance industries.
Companies competing with Ossprey for the same Google search keywords, organic and paid, via search-intersection analysis.
Frequently asked questions
- What does Ossprey do?
- Ossprey detects supply chain attacks and malicious dependencies by monitoring code behavior at runtime, identifying packages that scan clean but behave maliciously. It serves engineering teams building software who need runtime security monitoring without slowing development velocity.
- Who are Ossprey's investors?
- Ossprey's investors include Episode1, Octopus Ventures.