Product Hunt logo dark
  • Launches
    Coming soon
    Upcoming launches to watch
    Launch archive
    Most-loved launches by the community
    Launch Guide
    Checklists and pro tips for launching
  • Products
  • News
    Newsletter
    The best of Product Hunt, every day
    Stories
    Tech news, interviews, and tips from makers
    Changelog
    New Product Hunt features and releases
  • Forums
    Forums
    Ask questions, find support, and connect
    Streaks
    The most active community members
    Events
    Meet others online and in-person
  • Advertise
Subscribe
Sign in
Subscribe
Sign in

Arnica

Behavior-based software supply chain security

9 followers

Behavior-based software supply chain security

9 followers

Visit website
Software supply chain attacks have caught the security community off-guard. Arnica, starting with GitHub & Azure DevOps, addresses the two primary root causes: 1) 🪄 excessive permissions 2) 🥸 lack of abnormal behavior detection
  • Overview
  • Launches1
  • Reviews
  • Alternatives
  • Team
  • Awards
  • More
Company Info
app.arnica.ioGitHub
Arnica Info
Launched in 2022View 1 launch
Forum
p/arnica
  • Blog
  • •
  • Newsletter
  • •
  • Questions
  • •
  • Forums
  • •
  • Product Categories
  • •
  • Apps
  • •
  • About
  • •
  • FAQ
  • •
  • Terms
  • •
  • Privacy and Cookies
  • •
  • X.com
  • •
  • Facebook
  • •
  • Instagram
  • •
  • LinkedIn
  • •
  • YouTube
  • •
  • Advertise
© 2025 Product Hunt
SocialX
Arnica gallery image
Arnica gallery image
Arnica gallery image
Arnica gallery image
Arnica gallery image
Free Options
Launch tags:
SaaS•Software Engineering•Security
Launch Team
Simon WenetNenad NikoloskiChris Jacob Abraham

What do you think? …

Nir V
Nir V

Arnica

Maker
Hi Product Hunt, My name is Nir! I am one of the three co-founders of arnica.io. I’ve worn many hats in cyber security over the years – sys admin, pen-tester, security architect, and Chief Information Security Officer (CISO). What really gets me excited about my work is making security easy and effective for developers and ops teams! In my last role, at one of the largest FinTech companies in the world, our CEO needed me to secure our software supply chain. I met with 15+ vendors, did a few POCs, and each solution either increased operational cost or was too narrow in scope. I also found that many fellow CISOs faced the same problem. This is when I joined forces with my incredible co-founders – @diko_dahan (Diko) and @eranation (Eran). They were seeing the same pain in their worlds (engineering and ops) too! As a starting point for Arnica, we researched every software supply chain attack since 2018, and based on our research, we found two primary root causes: 1. 🪄 improper access management to developer tools 2.🥸 inability to identify abnormal identity and code behavior We studied the anatomy of each supply chain attack and designed a product to effectively secure developer tool stacks with a DevOps-first approach: 1. Identify excessive permissions to source code starting with GitHub and Azure DevOps repos 🆓 2. Mitigate excessive permissions with an ability to regain access via self-service on Slack for your developers 3. Automatically generate & modify a CODEOWNERS file via pull request, based on the contextual behavior of the pull request reviewers 4. Secret detection and validation without modifications of the build pipelines for all repositories, public and private without any user-count limitations. 🆓 5. Map GitHub users to your SAML/SSO provider. Also 🆓 forever. Why are we giving away so much functionality for free? I believe Arnica can do well by doing good in the DevSecOps community. Our mission is to be the easy button for DevOps security. Anything that is considered “single pane of glass” is our free contribution. If we do that first and foremost, we are sure we will build a successful business. Sign up today for a 30-day Arnica trial today (extended to celebrate our launch)! ~Nir
Report
3yr ago
Rob McDonald
Rob McDonald
@diko_dahan @eranation @nir_v @simon_wenet Phenomenal! Very excited about what you are doing and this important milestone. Gas pedal down!!!!
Report
3yr ago
Simon Wenet
Simon Wenet

Arnica

Maker
@rob_mcdonald3 thank you for the support!!
Report
3yr ago
Fares
Fares
@diko_dahan @eranation @nir_v @simon_wenet1 @nenad_nikoloski1 @ajsirch @burim_ismaili @raptorseverywhere @eranation @marked_content13 Congratulations on the launch 🚀
Report
3yr ago
Simon Wenet
Simon Wenet
Amazing work by the @Arnica team! Congrats on the launch!
Report
3yr ago
Nir V
Nir V

Arnica

Maker
Congrats team!
Report
3yr ago
Mike Doyle
Mike Doyle
Just Wow.
Report
3yr ago
Nir V
Nir V

Arnica

Maker
Thanks Mike
Report
3yr ago
GoPerfect - Real-Time Hiring
GoPerfect - Real-Time Hiring — Skip the Search. Meet top Candidates fast.
Skip the Search. Meet top Candidates fast.
Promoted

Do you use Arnica?

Reviews
Helpful

You might also like

The Pitch
The Pitch
The podcast where early stage startups pitch investors
Socket
Socket
Secure your JavaScript supply chain
Waste Not
Waste Not
Open-source database of sustainable suppliers
Chroma Signet
Chroma Signet
An open source barcode that makes supply chains transparent
The New Rules of Clinical Supply Chain Management
The New Rules of Clinical Supply Chain Management
Learn the top areas to invest resources in 2016
View more
Review Arnica?Be the first to review Arnica