Edgeless Systems
A German confidential-computing company whose open-source Constellation platform runtime-encrypts entire Kubernetes clusters using hardware trusted execution environments.
Visit Website ↗ + Add to CompareOverview
Edgeless Systems builds Constellation, an open-source Kubernetes distribution that runs entire cluster workloads, including the control plane, inside hardware-based confidential computing enclaves (AMD SEV-SNP and Intel TDX). The effect is that node memory is encrypted at the hardware level even from the cloud provider’s own hypervisor, extending the isolation promise of confidential computing from individual processes to a full orchestrated cluster — a materially harder engineering problem than protecting a single VM.
This targets a specific and growing anxiety among regulated and security-sensitive cloud customers: that a cloud provider’s own privileged access, or a compromised hypervisor, represents a residual trust boundary that standard encryption-at-rest and in-transit does not address. Confidential computing closes that gap by keeping data encrypted in use, and Edgeless Systems’ contribution is making that guarantee operable at the scale of a real Kubernetes deployment rather than a single isolated enclave, alongside a companion product line for confidential AI workloads that extends the same protections to LLM inference and training.
Founded in 2020 and headquartered in Bochum, Germany, Edgeless Systems has raised a seed round of $5 million (2023) from investors including Berlin’s SquareOne, on top of earlier funding, bringing disclosed funding to roughly $6.7 million. Constellation itself is open source, which gives outside security researchers the ability to inspect the implementation directly rather than relying on vendor claims — a real efficacy advantage over closed-source confidential computing offerings, even though the company’s commercial scale remains small relative to major cloud providers’ own confidential computing services.
Innovation Matrix Assessment
Since 2020, Edgeless Systems has built and open-sourced Constellation and extended it into a confidential-AI product line covering LLM inference and training, a meaningfully ambitious engineering scope for a seed-stage team of its size.
Constellation is delivered as an open-source Kubernetes distribution supporting both AMD SEV-SNP and Intel TDX hardware, which requires ongoing engineering work to track two separate confidential-computing hardware ecosystems, indicating real operational depth for a small team.
Edgeless Systems raised a $5M seed round in March 2023 led by SquareOne with angel investors from Fauna, Instana, Contentful, and Netlify, bringing total disclosed funding to roughly $6.7M; no larger Series A has been publicly reported since, suggesting momentum has been steady but not yet at scale-up pace.
Extending confidential computing's encrypted-in-use guarantee from a single enclave to an entire orchestrated Kubernetes cluster, including the control plane, is a genuinely hard and differentiated engineering achievement relative to point confidential-computing products that protect only individual workloads.
Constellation's open-source codebase allows independent security researchers to audit the implementation directly rather than relying on vendor assurance, which is a real, verifiable efficacy advantage, though no named large-scale production deployment or independent penetration test result was found for this review.
As regulated industries and sovereign-cloud initiatives increasingly demand that cloud providers themselves be excluded from the trust boundary, confidential computing for full Kubernetes workloads addresses a real and growing compliance and data-sovereignty requirement.
Why CISOs Should Care
CISOs in regulated industries who need to keep workloads encrypted even from their own cloud provider's infrastructure operators can use Constellation to run standard Kubernetes workloads inside hardware-enforced confidential computing without re-architecting applications.
What Makes It Different
Unlike confidential-computing offerings that protect a single enclave or VM, Constellation extends hardware-based encryption-in-use to an entire Kubernetes cluster's control plane and worker nodes, and does so as an auditable open-source project rather than a closed vendor black box.
The Matrix Verdict
60/100 — INCREMENTAL INNOVATOR
A technically ambitious, open-source confidential-computing platform tackling a genuinely hard problem (full-cluster encryption-in-use), constrained mainly by its still-modest funding and commercial scale relative to the hyperscale cloud providers whose infrastructure it seeks to make more trustworthy.
Editorial Note: Claims vs. Verified Findings
Vendor-sourced and unverified: specific performance overhead figures and confidential-AI product effectiveness claims are from the company's own materials without independent benchmarking cited. Independently verifiable: the 2020 founding, Bochum HQ, the $5M seed round led by SquareOne, and Constellation's open-source Apache-licensed codebase are corroborated by SecurityWeek and SiliconANGLE coverage and the public GitHub repository.
Sources
Alternatives to Edgeless Systems
Wiz
Agentless, graph-based cloud security platform that maps multi-cloud risk end-to-end, now owned by Google after a record $32B…
Chainguard
Provides hardened, minimal, continuously-rebuilt container images and software packages to eliminate vulnerabilities before they reach production.
Microsoft Defender for Cloud
Microsoft's built-in cloud-native application protection platform, unifying CSPM, workload protection, and DevOps security natively across Azure, AWS, and…
Obsidian Security
Obsidian Security provides a SaaS security posture management (SSPM) platform that detects identity-centric threats and misconfigurations across enterprise…
Sysdig
The company behind Falco, the CNCF's runtime security standard, offering an eBPF/kernel-level CNAPP built on live syscall-based threat…
Upwind Security
Fast-growing, venture-backed CNAPP startup combining agentless scanning with eBPF runtime sensors for real-time cloud and AI workload risk…