Privately Held WhiteSource Reports Record 2014
WhiteSource’s open source management solution gains traction as company’s revenue increases by over 500%
WhiteSource, the market leader in open source component management, announced today the results for 2014. The number of customers increased by over 400%, while revenues increased by over 500%.
“2014 was an important year for open source management,” says Rami Sass, WhiteSource CEO. “As use of open source in commercial software rapidly grows, proper management of open source components becomes crucial.”
WhiteSource is the only solution in the market that is comprehensive, covers all popular languages and development environments, and can be deployed instantaneously and effortlessly.
Rami adds, “It was important for us to develop a solution that accelerates adoption of open source components by making open source component management effortless. To do that, we put great emphasis on ease of deployment, usability and integration with the software development lifecycle. Completeness was another important aspect: we support all programming languages in a single consistent manner. The solution was designed to accommodate the needs of companies of all sizes.”
In 2014, WhiteSource customers used it to manage open source in 7,946 projects, written in languages such as Java, C#, Python, npm, Ruby, Scala, C/C++, Obj-c and JavaScript. WhiteSource customers use a variety of tools, including Maven, Ant, Gradle, NAnt, Jankins, TeamCity, Bamboo, TFS, OpenShift and Artifactory.
2014 is also the year open source security vulnerabilities such as Heartbleed and Shellshock made national headlines. “Security vulnerabilities are one aspect of open source management. Our customers are regularly notified when security vulnerabilities or new versions are announced for the open source components that they use. So when Heartbleed was disclosed, our customers knew that they will be notified if they are exposed to it,” says Rami.
All in all, WhiteSource sent its customers 13,567 security alerts and 52,624 new version alerts in 2014.
“2014 has been a great year for us, and we expect 2015 to be even better. We have worked hard over the past four years to provide customers with a complete, mature and practical open source management solution, and we plan to continue doing so in 2015.”

About Mend.io
Mend.io offers the first AI native application security platform, empowering organizations to build and run a proactive AppSec program tuned for AI powered development. The unified platform secures AI generated code and embedded AI components, drives risk reduction through AI powered remediation, automates compliance, and provides a holistic enterprise scale view of risks and clear actions for developers across your entire codebase.