Skip to main content

Koi

Category: AI in Cybersecurity

Koi is an endpoint security platform that secures all software with an install button - governing browser extensions, packages, MCPs, AI models, AI agents, and containers across enterprise endpoints. Koi was founded in 2024. The company is led by Amit Assaraf. Based in Tel Aviv, Israel. Team size: 155. Total funding raised: $48.0M. Latest round: Series A. Key investors include ["Battery Ventures","Team8","NFX","Picture Capital","Cerca Partners"].

Founded
2024
Headquarters
Tel Aviv, Israel
Team size
155
Total funding
$48.0M

Value proposition

Provides unprecedented visibility, real-time risk assessment, and automated policy enforcement across all non-binary software and AI agents, enabling organizations to embrace developer autonomy and AI-powered workflows without sacrificing security. Blocks 70% of marketplace risk with automated preventive policies.

Products and solutions

["Supply Chain Gateway (flagship platform)","Wings AI Risk Engine","ExtensionTotal (browser extension security tool)","Endpoint Discovery & Inventory Management","Preventive Policy Enforcement","Automated Remediation System"]

Unique value

Koi pioneered the 'Supply Chain Gateway' category - a new architectural layer that acts as a single, proactive network-based gate for curating incoming software from all marketplaces and registries. First platform to provide organization-wide visibility into non-binary software artifacts that traditional EDR solutions cannot detect.

Target customer

Fortune 50 companies, major financial institutions, leading technology corporations, and large enterprises seeking visibility and control over self-provisioned software including AI tools and extensions.

Industries served

["Cybersecurity","Enterprise Software","Artificial Intelligence & Machine Learning","Software Supply Chain Security","Financial Services","Technology Infrastructure"]

Technology advantage

Proprietary Wings™ AI risk engine leverages large language models (LLMs), machine learning classification, sandboxing, and threat intelligence to analyze actual code behavior, publisher reputation, version history, and update channels in real-time. Agentless platform integrates with existing SWG, EDR, MDM, and PAC file infrastructure in under 60 minutes. Performs hourly full scans of all major software marketplaces including GitHub, Hugging Face, Chrome Web Store, VS Code Marketplace, and Homebrew.

How they differentiate

Koi pioneered the 'Supply Chain Gateway' category - a new architectural layer acting as a proactive network-based gate for curating incoming software. Unlike traditional EDR solutions that focus on precompiled binaries, Koi provides organization-wide visibility into non-binary software artifacts (extensions, packages, AI models, MCPs) that traditional tools cannot detect. Features proprietary Wings™ AI risk engine with real-time code behavior analysis, publisher reputation assessment, and threat intelligence. Agentless platform that integrates with existing SWG, EDR, MDM, and PAC file infrastructure in under 60 minutes.

Main competitors

["CrowdStrike","Microsoft Defender for Endpoint","SentinelOne"]

Key partnerships

["Palo Alto Networks (pending acquisition - $400M, announced Feb 2026)","Integration into Palo Alto Prisma AIRS™ AI security platform post-acquisition","Enhancement of Palo Alto Cortex XDR® endpoint security solution","Battery Ventures (Series A lead investor)","Team8 (Series A lead investor, venture firm)","NFX (Seed lead investor)","Picture Capital (Seed co-investor)","Cerca Partners (investor)"]

Notable customers

["Palo Alto Networks (customer before acquisition)","OpenAI Group PBC","Cambia Health Solutions","Jump Trading LLC","Fireblocks Ltd","Fortune 50 companies (finance sector)","Fortune 50 companies (retail sector)","Fortune 500 technology companies"]

Major milestones

["Founded in 2024 by IDF Unit 8200 alumni (Amit Assaraf, Idan Dardikman, Itay Kruk)","Created ExtensionTotal proof-of-concept that infected 300+ organizations including major EDR vendor and national court network","Raised $10M Seed round led by NFX and Picture Capital (December 2024)","Raised $38M Series A led by Battery Ventures and Team8 (September 2025)","Surpassed $1M ARR within 3 months of launch","Protected 500,000+ endpoints globally within first year","Acquired by Palo Alto Networks for $400M (announced February 2026)","Technology to be integrated into Palo Alto Prisma AIRS™ and Cortex XDR® platforms"]

Growth metrics

Scaled to 500,000+ protected endpoints within first year; reached $1M ARR in just 3 months; grew to 155 employees within 12 months of founding; deployed across Fortune 50 companies, major financial institutions, and leading tech corporations globally.

Market positioning

First-mover in Supply Chain Gateway category, positioned as complementary to existing EDR/UEM tools rather than replacement. Acts as a 'supply chain firewall' for endpoints, focusing on enterprise market with Fortune 50 customers. Addresses the 'governance problem' of self-provisioned software that major competitors lack credible solutions for.

Geographic focus

Global enterprise focus with primary operations in North America and Israel (founded by Israeli IDF Unit 8200 alumni). Protects 500,000+ endpoints worldwide across Fortune 50 companies, major financial institutions, and leading technology corporations globally.

Patents and IP

Platform backed by pending patents covering the Supply Chain Gateway technology and AI-driven risk assessment methodologies.

About Amit Assaraf

Amit Assaraf is a cybersecurity entrepreneur and IDF Unit 8200 alumnus. Prior to Koi, he co-founded Landa (a real estate technology startup) where he served as CTO. He also created ExtensionTotal, a widely-used security tool for browser extensions that became the technological foundation for Koi. He has four years of experience in Israeli Military Intelligence.

Official website: