A tribe of builders, hackers, and OSS maintainers united by a single question: What if we could know what code actually does when it runs?
Our team brings deep experience building developer tooling and foundational observability infrastructure. We include leads and maintainers of tools like Tracee, Tetragon, Fluent Bit, systemd, and nmap, with roots at Red Hat, Canonical, Chronosphere, IBM, and Isovalent.
Garnet was born from hard lessons. At their previous AI infrastructure startup, Umar and Farrukh faced every founder's nightmare: a cryptominer infiltrated production through a compromised Python dependency—running undetected for weeks in a customer's environment.
While we had static and vulnerability scanners, we were running blind to what was actually running. With an early glimpse of what the future of supply chain attacks would look like, one thing became clear: you can't trust code if you can't see it at runtime. This became the spark for Garnet.
We're building the trust layer for modern software —with a vision to combine best-in-class infrastructure, intelligence, and a lovable developer experience—so teams at the frontier have the visibility and control to ship with confidence.

































