CloudTrace
Security for cloud-native teams

Security products that fix things, not just report them.

CloudTrace builds focused tools for teams running containers in the cloud. Each product answers one hard question clearly and then does the work for you.

Products

Every product has its own home and is part of the CloudTrace family.

Container security

Ocimend

● Live

Point at a container image. Pull it back fixed.

Scans any Docker/OCI image for known vulnerabilities and FIPS 140-3 gaps, then rebuilds it for you: patched or FIPS-enforced, rescanned, smoke-tested and published to a public registry, ready to docker pull.

  • CVE scanner with fixes
  • FIPS 140-3 verdict with live test
  • Fixed & FIPS images at ocimend.io
  • CLI, API, SARIF, CycloneDX, OpenVEX
More on the way

New CloudTrace products will appear here as they launch.

How we build

Evidence, not guessesResults come with the proof: reports, live tests and before/after comparisons.
Do the workWhere a fix is possible, our products produce it, verified before it is delivered.
Private stays privateAnything scanned with your credentials is never published.