
Protecode
Innovative provider of products and services for open source licensing and security vulnerability management.
Date | Investors | Amount | Round |
---|---|---|---|
investor | €0.0 | round | |
investor | €0.0 | round | |
N/A | Acquisition | ||
Total Funding | 000k |
Protecode Inc., founded in 2006 in Ontario, Canada, established itself as a specialized provider of software composition analysis (SCA) tools. The company was founded by Mahshad Koohgoli, who served as President and CEO, and Kia Mousavi, the Chief Technology Officer. They addressed a critical need in the software development market by helping organizations manage the complexities associated with using open-source software (OSS).
The core of Protecode's business was its suite of products designed to automatically scan a client's codebase to identify third-party and open-source components. This service was crucial for clients needing to ensure compliance with various software licenses, thereby mitigating legal risks. Its technology created a detailed inventory, or a Software Bill of Materials (SBOM), cross-referencing found components with their licensing obligations and known security vulnerabilities. The business model centered on selling its Protecode Enterprise System and related tools, as well as offering code auditing services, particularly valuable during mergers and acquisitions. The company catered to a range of technology organizations, from small teams to large enterprises, and formed partnerships with major industry players like IBM and the Linux Foundation.
The company's main offering, Protecode Enterprise System, utilized a proprietary database to detect OSS and manage compliance and security risks. A key feature was its ability to perform deep analysis on both source code and binary files, providing a comprehensive view of software dependencies. This dual capability allowed it to flag known security issues and enforce corporate governance policies on software development. In November 2015, the company's trajectory culminated in its acquisition by Synopsys, a major player in the electronic design automation and software integrity space. The acquisition was a strategic move by Synopsys to bolster its Software Integrity Platform by integrating Protecode's advanced source code analysis and license compliance technology. Following the acquisition, Protecode's technology was integrated and is now known as Black Duck Binary Analysis.
Keywords: software composition analysis, open source license compliance, SCA tools, security vulnerability management, binary analysis, Software Bill of Materials, SBOM, source code scanning, third-party code, IP compliance, code auditing services, Mahshad Koohgoli, Synopsys acquisition, Black Duck Binary Analysis, software supply chain security, dependency analysis, license risk management, OSS governance, automated code analysis, Kanata