Cloudsmith Secures $72M Series C as AI Coding Agents Outpace Human Code Review

4 Sources

Share

Belfast-based Cloudsmith raised $72 million in Series C funding led by TCV, with Insight Partners participating. The investment comes just 13 months after its $23 million Series B, as enterprises struggle to manage the unprecedented volume of software generated by AI coding agents. The company's artifact management platform is positioning itself as the critical security layer when human review can no longer keep pace.

Belfast's Cloudsmith Closes $72M Series C Led by TCV

Cloudsmith, the Belfast-based artifact management platform, has secured $72 million in Series C funding led by TCV, with participation from Insight Partners and other existing investors

1

. The round arrives just 13 months after the company's $23 million Series B in March 2025, which was also led by TCV

2

. This rapid follow-on investment, three times the size of the previous round, signals renewed conviction from both firms in Cloudsmith's approach to managing the software supply chain amid the explosion of AI-driven development.

Founded in 2016 by Lee Skillen and Alan Carson, Cloudsmith has raised approximately $124.5 million to date across seed, two Series A tranches totaling $26 million in 2021 and 2023, and now two back-to-back institutional rounds

1

. Glenn Weinstein, formerly Chief Customer Officer at Twilio, joined as CEO when Carson transitioned to Chief Strategy Officer. The company's customer base is predominantly US-based, representing approximately 75% of revenue, despite being headquartered in Belfast

1

.

Source: Silicon Republic

Source: Silicon Republic

AI Coding Agents Create Unprecedented Security Challenge

The investment thesis centers on a structural shift in how enterprises build software. AI coding agents now generate code at such velocity and volume that human review processes can no longer adequately assess security and compliance risks

3

. "AI agents generate so much software, so fast, it's nearly impossible for humans to carefully review it all," said Weinstein

2

. This creates an expanding threat surface where open-source dependencies can be compromised after ingestion, AI-generated code can introduce novel vulnerability patterns, and regulators increasingly demand that enterprises demonstrate their software is secure by design

1

.

Artifacts—the software packages, binary files, compiled applications, and dependencies produced during development—are multiplying faster than traditional governance methods can track. Cloudsmith's platform enables engineering teams to govern every package at every stage, maintaining security and control while moving at the speed AI development demands

3

.

Cloud-Native Platform Targets Legacy Tool Replacement

Cloudsmith operates as a cloud-native private registry and artifact management platform that allows enterprises to host and distribute internal software packages, mirror public registries like PyPI, Docker Hub, Maven, and npm in controlled environments, and apply security scanning, policy enforcement, and access controls across build pipelines

1

. The company positions itself against incumbents JFrog Artifactory and Sonatype Nexus, arguing those tools were designed for hand-crafted software and cannot scale to the AI-agentic development model

1

.

Recent product additions include an ML Model Registry that applies the same governance to machine learning models and datasets as it does to code packages, and an Enterprise Policy Manager for policy-as-code enforcement across the software supply chain

1

. In November 2025, Cloudsmith added a Model Context Protocol Server that integrates its capabilities directly into AI-powered developer workflows

3

.

Enterprise Adoption Accelerates Amid Compliance Pressure

The company reported nearly 150% year-over-year growth at the time of its Series B, with Fortune 500 and Global 2000 companies actively switching from legacy platforms

1

. Morgan Gerlak, Partner at TCV, described Cloudsmith as "defining artifact management for the AI era" and positioned it as a platform enterprises will rely on for "enterprise compliance and control, and security at global scale"

3

. Thomas Krane, Managing Director at Insight Partners, emphasized that "securing the software supply chain is critical" as AI-driven development becomes the norm

2

.

The Series C funding will accelerate product development and expand go-to-market capabilities

4

. Cloudsmith positions itself to address mounting challenges enterprises face in securing software development and deployment pipelines, particularly as businesses seek modern infrastructure to keep pace with the speed and scalability demands of secure AI-generated software

2

. Weinstein emphasized that Cloudsmith has "the scale, and the broad view across the open-source ecosystem, to protect enterprises against the new kinds of threats that AI-driven development introduces"

1

. The company's ability to manage dependencies at scale will determine whether enterprises can maintain governance while adopting AI coding agents across their software teams

2

.

Today's Top Stories

TheOutpost.ai

Your Daily Dose of Curated AI News

Don’t drown in AI news. We cut through the noise - filtering, ranking and summarizing the most important AI news, breakthroughs and research daily. Spend less time searching for the latest in AI and get straight to action.

© 2026 Triveous Technologies Private Limited
Instagram logo
LinkedIn logo