tiprankstipranks
Advertisement
Advertisement

Hopper Launches SUPPLYSHIELD to Create Trusted, Zero-CVE Open-Source Supply Layer

Hopper Launches SUPPLYSHIELD to Create Trusted, Zero-CVE Open-Source Supply Layer

New updates have been reported about Hopper.

Claim 30% Off TipRanks

Hopper has introduced SUPPLYSHIELD, a software supply layer that replaces direct reliance on public open-source registries with a vetted, continuously maintained registry designed to deliver components with no known vulnerabilities or malicious code across any library and version. The platform aims to address accelerating software supply chain risk, where more than 20,000 vulnerabilities are disclosed annually, exploitation now follows disclosure within days, and recent incidents involving widely used tools highlight how fast malicious code can spread before enterprises gain visibility or control.

SUPPLYSHIELD uses large-scale AI combined with human review to verify every package, remediate vulnerabilities across full dependency trees, and provide transparent evidence of changes via code diffs and build logs, with a stated goal of delivering fixed components within 24 hours of new disclosures. Positioned as an open-source analogue to trusted enterprise distributions, the service is already being used by multiple Fortune 500 companies to cut engineering overhead and support compliance with tightening regulatory regimes such as FDA, FedRAMP, PCI DSS, and the EU’s Cyber Resilience Act, as Hopper’s leadership frames the offering as a shift from reactive security to a security-by-design supply architecture where the company assumes responsibility for the software supply chain.

Disclaimer & DisclosureReport an Issue

1