Devdatta Akhawe
Engineering at Figma
Ryan Noon
Chairman, Material Security
What do you do when an old friend builds an obviously great product and raises a medium-sized fortune from one of your mentors?
You tell everybody, of course.
Congrats Feross Aboukhadijeh and Zane on announcing to the world that you're working together. Have learned so much from both of you over the years. So proud to be an investor.
John Tuckner
Manager of Tines Labs
Socket is one of those products that you see and immediately know it is not only thinking about problems differently, but a taking completely new approach on carrying out the solution also. They're working towards empowering every developer to know exactly what is being introduced into their code when building while also managing the complexity in the full lifecycle of projects.
I'm blown away by what they've created so far, the caring team they've grown, and can't wait to see where they're going to go with this additional support. Congrats! Check them out!
Aaron Brown
Head of Security at Vercel
Big congrats to Socket on their Series A milestone! Their product provides our teams with the early touchpoints we need to ensure a greater level of open-source software security, and help our engineers ship with confidence.
Discover more about their impressive journey and what this achievement means for the industry on TechCrunch:
Austin Kelleher
Co-founder at Opine
Too many developers and engineering teams do not take the dangers of packages seriously enough. Our Engineering and Security teams at JupiterOne use Socket every day for deep visibility into the packages that we are using and install. Socket provides a new level of confidence that we previously didn't have. If you're using JavaScript/TypeScript or Python, you should seriously consider checking out this product and the free tools that Socket offers. I hear that support for new ecosystems and languages is actively being worked on. 👀
Thank you for building this awesome product and for complimenting an awesome product with awesome swag!
Abhishek Agrawal
Co-founder & CEO at Material Security
Deian Stefan
Associate Professor at UCSD
Brendan Eich
Co-founder & CEO at Brave
Matteo Collina
Co-Founder & CTO at Platformatic
Arash Ferdowsi
Co-Founder at Dropbox
Dylan Field
CEO at Figma
Mark Hillick
Head of Trust at Brex
Nat Friedman
CEO at GitHub
Elad Gil
Co-founder at Color Genomics, legendary investor
John Lilly
Board member at Figma, Duolingo, Nuro, Code for America, VotingWorks
Zach Tratar
Founder @ Embra
Dylan Field
Co-founder and CEO at Figma
Congrats on launch @feross and team!!
Andrew Peterson
CEO and Co-Founder at Signal Sciences (acq. Fastly)
How do you track the validity of open source software libraries as they get updated? You're prob not. Check out @SocketSecurity and the updated tooling they launched.
Supply chain is a cluster in security as we all know and the tools from Socket are "duh" type tools to be implementing. Check them out and follow Feross Aboukhadijeh to see more updates coming from them in the future.
Frederic Kerrest
Founder and COO at Okta
Congrats to Feross Aboukhadijeh and the Socket team on the progress and capital raise to accelerate growth. Defending open source from supply chain attacks is key for the future of enterprise software and technological innovation!
Joseph Jacks
Founder and GP at OSS Capital
Exciting work to improve OSS supply chain security by the exceedingly talented @feross 🙌🏼
Theodor Marcu
Software Engineer at Retool
Really excited for this! Congrats on the ship @feross
Austin Kelleher
Principal Software Engineer at JupiterOne
Devdatta Akhawe
Security and Production Engineering at Figma
Socket is one of the most interesting approaches to supply chain security. If you are interested in the risks of malicious deps in oyur apps, I definitely recommend taking a look at Socket!@feross
Jed McCaleb
Co-founder at Stellar Development Foundation
If what you are building needs to be secure and you use open-source, socket is a must!
DC Posch
Director of Technology at AppFolio, CTO at Dynasty
This is going to be super important, especially for crypto projects where a compromised dependency results in stolen user assets.
Dan Gillmor
EFF Pioneer Award Winner
A brilliant initiative -- so, so needed.
Eric Wooley
Full-stack developer, Open source contributor
Security is such an issue with our software supply chains.
I'm thrilled to see tools that can catch the issues, before they destroy our projects, or even the whole business.
JD Ross
Founder at OpenDoor
Software supply-chain attacks are not talked about nearly enough. Socket is really cool and Feross gets this stuff better than anyone
Erik Torenberg
Founder at OnDeck, Co-founder at Village Global
Congrats to Feross Aboukhadijeh for launching Socket, a new effort to solve some of the biggest problems in security!
Fabio Berger
#9 at Airtable, #3 at 0x Labs
Congrats to @feross and the entire @SocketSecurity team for launching socket.dev! It's great to have such a talented team tackling the software supply chain problem for the JS ecosystem in a scalable way 👏
Max Goisser
Lead Engineer at Field33
Love seeing efforts like this! Tooling around package management has such a big leverage on ecosystem quality but is worked on far too rarely.
Brandon Garcia
VP of Product at FemTec, Forbes 30 Under 30
Wow, this looks pretty incredible… and complete with snazzy js visualizations, ofc ✨✨✨
Matthew Mueller
Founder at Standup Jack
Congrats @feross ! Awesome to see @MikolaLysenko on the team as well. What a stacked group!
Brendan Falk
Co-founder + CEO at Fig (YC S20)
Super excited for this. Especially for suspicious package search that's an absolute game changer. Excited to switch @fig's package search for npm over to this!!
Shawn Swyx Wang
Head of DX at Airbyte
congrats on your launch!!
Mark Dalgleish
Co-creator of CSS Modules, Engineer at Rainbow
Congrats on the launch! Looks really cool.
Samee Siddiqui
Founder at ProjectFives
The best hacker I know has decided to use his skills to… make a service that protects you from hackers
Buy buy buy
Josh Goldberg
Staff Developer at Codecademy
This is such a great idea & looks fantastic, congrats & good luck @feross + team!
Michael Sindicich
General Manager at TripActions Liquid
CONGRATS Feross Aboukhadijeh and Socket on the huge milestone!!
Thomas Reggi
Full Stack Engineer at Twitter
Really inspired by seeing people in the JavaScript open source scene for years turn around and create companies. Thinking of @SocketSecurity and @vercel ❤️.
Finn Meeks
Partner at South Park Commons
@feross was always the open-source expert @southpkcommons. Excited to see him and the team take on the challenge of securing that ecosystem!
Yan Zhu
Head of Security at Brave, DEFCON, EFF, W3C
glad to hear some of the smartest people i know are working on (npm, etc.) supply chain security finally :). @SocketSecurity
Ryan Noon
Founder & CEO at Material Security
Congrats to Feross Aboukhadijeh and Socket on announcing their existence!
The NPM ecosystem is a horrible horrible place and I'm glad you're doing something about it.
Devdatta Akhawe
Head of Security at Figma
The @SocketSecurity team is on fire! Amazing progress and I am exciting to see where they go next.
Viktor Stanchev
I do software things at Anchorage Digital
Nico Waisman
CISO at Lyft
This is an area that I have personally been very focused on. As Nat Friedman said in the 2019 GitHub Universe keynote, Open Source won, and every time you add a new open source project you rely on someone else code and you rely on the people that build it.
This is both exciting and problematic. You are bringing real risk into your organization, and I'm excited to see progress in the industry from OpenSSF scorecards and package analyzers to the company that Feross Aboukhadijeh is building!
Adam Baldwin
VP of Security at npm, Red Team at Auth0/Okta
Congrats to everyone at @SocketSecurity ❤️🤘🏻
Luis Naranjo
Software Engineer at Microsoft
If software supply chain attacks through npm don't scare the shit out of you, you're not paying close enough attention.
@SocketSecurity sounds like an awesome product. I'll be using socket.dev instead of npmjs.org to browse npm packages going forward
Elena Nadolinski
Founder and CEO at Iron Fish
Huge congrats to @SocketSecurity! 🙌
Literally the only product that proactively detects signs of JS compromised packages.
Jed McCaleb
Co-founder at Stellar Development Foundation
@SocketSecurity is great! Check it out if you use open source in your product.
Danny Crichton
Head of Editorial at Lux Capital, Managing Editor at TechCrunch
My far-smarter-than-me former roommate just nabbed a great seed round – amazing @feross (and my far-smarter-than-me former colleague @zackwhittaker has the scoop)
Liran Tal
Developer Relations at Snyk
Congrats, Feross. That's awesome! 🙌
A great win and a good testament for the much needed investment in supply chain security concerns around open source ecosystems. Also, more friends for me to collab with 😉
Lucian Buzzo
For the Lord, the Crown and England
Ben Michel
Technical Evangelist at Datadog, OpenJS Foundation, Node.js, tc39, Unicode Consortium, W3C, PDXNode
Alex Wykoff
Director of Product at WRST Collabs, Organizer of Distributed Camp
This is super exciting news! Way to go Team Socket!!
David Gobaud
Founder and CEO at Passfolio
Congrats @feross @SocketSecurity! Best service for preventing software #supplychainsecurity attacks we use it at @PassfolioApp
Wei Lien Dang
Co-founder at StackRox
Congrats @feross on launching @SocketSecurity! Excited for how this solves a huge problem in securing open source supply chains. Check it out at producthunt.com/posts/socket-2
Cameron Teitelman
Founder and Chairman of StartX
Super useful tech as usual by @feross! Congrats.
Zbyszek Tenerowicz
Senior Security Engineer at ConsenSys
socket.dev is getting more appealing by the hour
Sebastian Bensusan
Engineer Manager at Stripe
I find it surprising that we don't have _more_ supply chain attacks in software:
Imagine your airplane (the code running) was assembled (deployed) daily, with parts (dependencies) from internet strangers. How long until you get a bad part?
Excited for Socket to prevent this
Abi Raja
Head of Engineering at Patio
congrats to @SocketSecurity for raising! supply chain attacks are by far one of the hardest things to prevent.
Joe Previte
Engineering Team Lead at Coder
Congrats to @feross and the @SocketSecurity team on their seed funding! 🚀 It's been a big help for us at @CoderHQ and we appreciate what y'all are doing!
Zach Tratar
Engineering Manager at Stripe
Congratulations Feross and team!!!! ✨✨🚀🚀✨✨
Diego Rodríguez Baquero
Engineer at Protocol Labs and Filecoin
Yeah babyyyy @SocketSecurity just raised a big seed round to continue working on the FOSS ecosystem security. Congrats @feross @jhiesey @alxhotel and team!
Daniel Salvadori
Software Engineer at Ondo Finance
Congrats @feross and team!
We're using @SocketSecurity at @OndoFinance to help keep us safe!
John Vrionis
Founder and Managing Partner at Unusual Ventures
Grateful to be supporting and working w @feross (for the 2nd time) and excited to see @SocketSecurity launch!
Malte Ubl
@Vercel CTO. he/him
Ruchi Sanghvi
Partner at South Park Commons, VP of Ops at Dropbox, First Female Engineer at Facebook
Trust the former @southpkcommons open source expert to protect your open source software!
Richard B Fuisz
Founder at Strandbase
Unsurprisingly great stuff from great people. Huge congrats to the team @SocketSecurity!
Matteo Collina
Node.js maintainer, Fastify lead maintainer
So awesome to see @SocketSecurity launch with a fresh approach! Excited to have supported the team from the early days.
Suz Hinton
Senior Software Engineer at Stripe
heck yes this is awesome!!! Congrats team 🎉👏
Chris Lengerich
Science & psych @ContextFund
Austin Kelleher
Principal Software Engineer at JupiterOne
Congrats to Socket and Feross Aboukhadijeh for raising Socket's $4.6M seed round! Ever since I started using JavaScript, I've been concerned about the risks of transitive dependencies. Socket provides free, and transparent, analysis of dependencies. Excited to see where Socket heads!
Kris Kaczor
Co-founder at L2BEAT, Engineer at MakerDAO
Seriously, if you're working on web3-related open-source software please consider using @SocketSecurity. Supply chain attacks are becoming a real issue, especially if your code handles millions of dollars in value.
Btw. they just raised some money 🤑
Areeb Malik
Co-founder at Glacier, Senior Software Engineer at Facebook
Congrats to Socket on their launch! Feross Aboukhadijeh and the team are building incredibly cool tech to keep software safe from bad actors and I can think of few founders with as much drive and passion for what they do. [...]
Paul Frazee
Web Developer and Protocol Engineer at Twitter Bluesky
Mix Irving
Open Source Developer at Scuttlebutt
Brian Gu
Open Source Developer at Dark Forest, Executive Director at 0xPARC
Ryan Zimmerman
JavaScript Programmer at Exodus
Jeroen Engels
Software Engineer at Humio
Thomas Watson
Principal Software Engineer at Elastic
Christina Kim
Member of Technical Staff at OpenAI
Vinayak Ramesh
Co-founder and CEO at Ikigai, Co-founder and CTO at Wellframe
Hansen Qian
Engineering Manager at Affinity.co
Kevin Kwok
Prolific Hacker
Ray Zhou
Co-founder and CEO at Affinity
Thorsten Lorenz
Senior Software Engineer at Metaplex
Congrats!
Aditya Agarwal
CTO at Dropbox, Engineering at Facebook
Mike Gualtieri
Staff Security Engineer at Gatsby
Kevin Kwok
Investor at Greylock Partners
Dylan Field
Co-founder and CEO at Figma
Jerod Santo
Co-host @Changelog
Elad Gil
Co-founder at Color Genomics, legendary investor
Wei Lien Dang
Co-founder at StackRox