Blogs by Gal Sapir

AI-BOM: How to Identify, Understand and Govern AI Supply Chain Risk

Kodem AI-BOM extends your SBOM with an AI bill of materials: identify AI packages, verify runtime execution, and govern AI supply chain risk at scale.

When Vulnerabilities Come From Images You Don’t Own

Runtime visibility for third-party container images and the missing context for ownership and remediation.

Securing Vibe Coding: Security for AI-Generated Development

AI coding assistants are reshaping how software is written. Developers increasingly rely on models to read repositories and generate or modify files directly inside local projects, often introducing dependencies, configuration changes and large sections of application logic.