Startups

p0 uses LLMs to save enterprises from code catastrophes

Comment

African American young developer in eyeglasses concentrating on his online work on computer sitting at workplace
Image Credits: AnnaStills (opens in a new window) / Getty Images

Startup p0 is named after catastrophic events that can cause a platform to crash, leading to potential security breaches and loss of customer trust in businesses. Those are the problems that p0 was created to solve, using large language models (LLMs) to help developers catch serious issues in code before it is shipped. The startup announced today it has raised $6.5 million from Lightspeed Venture Partners, with participation from Alchemy Ventures.

p0 uses LLMs to identify safety and security issues in software before it is run in a production environment, and it does not need user configuration. Software issues it addresses include data integrity, validation failures, speed and timeouts. Developers use it by connecting their Git code repositories to p0. One of p0’s main customers is a large food service company with millions of live users on its system. They use p0 to find issues that can compromise the security and reliability of their platform. For example, p0 showed them that their sign-up sheets could’t handle emojis.

The startup was founded in 2022 by Prakash Sanker, who previously worked at companies like Palantir, and Kunal Agarwal, a founder of SoftBank-funded working capital startup C2FO. The company was started to “fundamentally change the manner in which code quality assurance is done,” Sanker told TechCrunch.

“While building software at our previous companies, we always felt that getting something into production was painful, typically involving a really boring and time-consuming bug bash process,” he says. “Our developers were always balancing the demands of shipping product or spending time writing tests.”

Sanker and Agarwal decided to build a one-click tool that could identify p0s before they affect customers, while shortening software delivery cycles. Sanker says the quality assurance tools currently used by developers, which typically focus on static analysis, security analysis, test writing or test execution, are less precise and require a lot of engagement and ingenuity to discover p0s.

p0’s founders say it is able to be part of the development process without slowing it down because it revolves around LLMs.

Agarwal explains that enterprises traditionally do security testing with a black box approach, which means external white hat hackers or security systems try to attack their systems without a deep knowledge of the system. Or internal developers who are very familiar with the system try to attack it. “Typically, it’s been very hard to know the internals of systems just by looking at code externally,” he said.

p0 uses LLMs to understand its customer’s codebases and create contextual challenges that have the potential to exploit vulnerabilities. For example, it can detect an API vulnerability that might give away private information when hit with a specific data payload.

“Without LLMs, it would be impossible to create a contextually relevant challenge,” Agarwal said. “This is critical because understanding context powers the system with intelligence and mounting a relevant challenge enables us to reduce noise.”

The company’s engine is currently powered by open source LLMs, including Llama and Mistral. p0 extracts the relevant parts of a customer’s codebase and embeds it with the right context and query for its LLM engine to respond to, Agarwal explained. Then it examines those responses and makes them readable by humans. As p0 develops, it plans to refine its model weights. For enterprise customers, LLMs are hosted within their environment for information security reasons.

Agarwal says hallucinations aren’t a challenge for the startup, because it doesn’t write code. Instead, it mounts challenges and it can detect challenges created by hallucinations.

p0 has launched from stealth and is revenue generating thanks to its first customer (the global food service provider). Sanker says it has 50 customers in its pipeline who will be onboarded in 2024 and monetizes through a SaaS model. In the future, it wants to include staging environments as an offering.

Other plans include expanding p0’s capability for finding different types of critical issues and supporting more languages. The founders also want to get rid of the need for a customer-hosted staging environment and turn p0 into an end-to-end solution.

In an investor statement, Lightspeed partner Hemant Mohapatra said, “p0’s cutting-edge approach to code and API security is unique and amongst the first ever truly LLM-native ways of solving this age-old and ever-evolving problem. We are excited to have incubated and backed them from when this was just an idea on paper.”

More TechCrunch

Here are quick hits of the biggest news from the keynote as they are announced.

Google I/O 2024: Everything announced so far

Apple released new data about anti-fraud measures related to its operation of the iOS App Store on Tuesday morning, trumpeting a claim that it stopped over $7 billion in “potentially…

Apple touts stopping $1.8BN in App Store fraud last year in latest pitch to developers

Online travel agency Expedia is testing an AI assistant that bolsters features like search, itinerary building, trip planning, and real-time travel updates.

Expedia starts testing AI-powered features for search and travel planning

Welcome to TechCrunch Fintech! This week, we look at the drama around TabaPay deciding to not buy Synapse’s assets, as well as stocks dropping for a couple of fintechs, Monzo raising…

Inside TabaPay’s drama-filled decision to abandon its plans to buy Synapse’s assets

The person who claimed to have stolen the physical addresses of 49 million Dell customers appears to have taken more data from a different Dell portal, TechCrunch has learned. The…

Threat actor scraped Dell support tickets, including customer phone numbers

If you write the words “cis” or “cisgender” on X, you might be served this full-screen message: “This post contains language that may be considered a slur by X and…

On Elon’s whim, X now treats ‘cisgender’ as a slur

Facebook once had big ambitions to be a major player in enterprise communication and productivity, but today the social network’s parent company Meta will be closing a very significant chapter…

Meta is shutting down Workplace, its enterprise communications business

The Oversight Board has overturned Meta’s decision to take down a documentary revealing the identities of child abuse victims in Pakistan.

Meta’s Oversight Board overturns takedown decision for Pakistan child abuse documentary

The keynote kicks off at 10 a.m. PT on Tuesday and will offer glimpses into the latest versions of Android, Wear OS and Android TV.

Google I/O 2024: How to watch

Adam Selipsky is stepping down from his role as CEO of Amazon Web Services, Amazon has confirmed to TechCrunch.  In a memo shared internally by Amazon CEO Andy Jassy and…

AWS CEO Adam Selipsky steps down

VC and podcaster David Sacks has revealed a new AI chat app called Glue that fixes “Slack channel fatigue,” he says.

David Sacks reveals Glue, the AI company he’s been teasing on his All In podcast

Harness isn’t founder Jyoti Bansal’s first startup. He sold AppDynamics to Cisco for $3.7 billion in 2017, the week it was supposed to go public. His latest venture has raised…

After surpassing $100M in ARR, Harness grabs a $150M line of credit

You can expect plenty of AI, but probably not a lot of hardware.

Google I/O 2024: What to expect

The company’s autonomous vehicles have had a number of misadventures lately, involving driving into construction sites.

Waymo’s robotaxis under investigation after crashes and traffic mishaps

The company is describing the event as “a chance to demo some ChatGPT and GPT-4 updates.”

OpenAI’s ChatGPT announcement: Watch the GPT-4o reveal and demo here

Sona, a workforce management platform for frontline employees, has raised $27.5 million in a Series A round of funding. More than two-thirds of the U.S. workforce are reportedly in frontline…

Sona, a frontline workforce management platform, raises $27.5M with eyes on US expansion

Uber Technologies announced Tuesday that it will buy the Taiwan unit of Delivery Hero’s Foodpanda for $950 million in cash. The deal is part of Uber Eats’ strategy to expand…

Uber to acquire Foodpanda’s Taiwan unit from Delivery Hero for $950M in cash 

Paris-based Blisce has become the latest VC firm to launch a fund dedicated to climate tech. It plans to raise as much as €150M (about $162M).

Paris-based VC firm Blisce launches climate tech fund with a target of $160M

Maad, a B2B e-commerce startup based in Senegal, has secured $3.2 million debt-equity funding to bolster its growth in the western Africa country and to explore fresh opportunities in the…

Maad raises $3.2M seed amid B2B e-commerce sector turbulence in Africa

The fresh funds were raised from two investors who transferred the capital into a special purpose vehicle, a legal entity associated with the OpenAI Startup Fund.

OpenAI Startup Fund raises additional $5M

Accel has invested in more than 200 startups in the region to date, making it one of the more prolific VCs in this market.

Accel has a fresh $650M to back European early-stage startups

Kyle Vogt, the former founder and CEO of self-driving car company Cruise, has a new VC-backed robotics startup focused on household chores. Vogt announced Monday that the new startup, called…

Cruise founder Kyle Vogt is back with a robot startup

When Keith Rabois announced he was leaving Founders Fund to return to Khosla Ventures in January, it came as a shock to many in the venture capital ecosystem — and…

From Miles Grimshaw to Eva Ho, venture capitalists continue to play musical chairs

On the heels of OpenAI announcing the latest iteration of its GPT large language model, its biggest rival in generative AI in the U.S. announced an expansion of its own.…

Anthropic is expanding to Europe and raising more money

If you’re looking for a Starliner mission recap, you’ll have to wait a little longer, because the mission has officially been delayed.

TechCrunch Space: You rock(et) my world, moms

Apple devoted a full event to iPad last Tuesday, roughly a month out from WWDC. From the invite artwork to the polarizing ad spot, Apple was clear — the event…

Apple iPad Pro M4 vs. iPad Air M2: Reviewing which is right for most

Terri Burns, a former partner at GV, is venturing into a new chapter of her career by launching her own venture firm called Type Capital. 

GV’s youngest partner has launched her own firm

The decision to go monochrome was probably a smart one, considering the candy-colored alternatives that seem to want to dazzle and comfort you.

ChatGPT’s new face is a black hole

Apple and Google announced on Monday that iPhone and Android users will start seeing alerts when it’s possible that an unknown Bluetooth device is being used to track them. The…

Apple and Google agree on standard to alert people when unknown Bluetooth devices may be tracking them

A human safety operator will be behind the wheel during this phase of testing, according to the company.

GM’s Cruise ramps up robotaxi testing in Phoenix