YC Summer 2026 (S26) company

Caution

Hosting platform for software you can't afford to have hacked

b2binfrastructurecybersecuritycloud computingdeveloper tools53 public signals

About Caution

Caution is a hosting platform for software you can't afford to get hacked. It simplifies and extends confidential compute, and lets developers deploy workloads to secure enclaves in minutes and give customers, auditors, and counterparties cryptographic proof that production is running the exact reviewed source code, build, configuration, and runtime - not an opaque binary controlled by a cloud operator or internal admin. Confidential computing hardware exists, but the tooling is too fragmented and incomplete for most teams to use well. Today, attestation often proves only that a binary has a certain hash; it does not prove what source code produced that binary. Building the missing deployment, reproducibility, and verification layer requires specialized security engineering and often locks teams into one cloud or hardware stack. Caution turns that into a simple git-based workflow that builds reproducible enclave images, provisions infrastructure, and lets anyone independently verify what is running. We built Caution after years securing high-risk systems through Distrust, where we worked with hedge funds, custodians, blockchain teams, cloud platforms, and critical grid operators on systems responsible for more than $600B in assets. Again and again, the same problem showed up: teams running mission-critical infrastructure could not reliably prove what was executing in production. As AI, fintech, healthcare, and regulated data collaboration move into the cloud, "trust us" is no longer enough. Caution is a general-purpose platform: if it runs on a server, it can run verifiably on Caution. We're starting where trust failures cost the most, but we believe verifiable compute will become the default way software runs, the same way HTTPS became the default way it's served. Infrastructure you can verify, not trust.

Public traction evidence

Each signal links to the public source used for attribution.

  1. X

    Introducing @CautionHosting! @antonlivaja and Lance are the people companies call in after they get hacked. Here, they finally built the …

    Introducing @CautionHosting! @antonlivaja and Lance are the people companies call in after they get hacked. Here, they finally built the thing they kept wishing existed. Confidential compute made simple and easy.

  2. X

    we've partnered with @OpenRelayInc as a compute partner to provide private AI inference hmu if you need provably end-to-end encrypted tokens register for capacity here: https://t.co/Ixotrgs5OU

    we've partnered with @OpenRelayInc as a compute partner to provide private AI inference hmu if you need provably end-to-end encrypted tokens register for capacity here: https://t.co/Ixotrgs5OU

  3. X

    mythos makes finding exploits cheaper and easier to scale.

    mythos makes finding exploits cheaper and easier to scale. open models like kimi mean these capabilities aren't going to stay gated either. an attacker needs one path. a defender needs every layer to hold. confidential compute changes what happens when a layer fails:

  4. X

    Mid-June we packed up and flew to San Francisco.

    Mid-June we packed up and flew to San Francisco. Today, Caution launches publicly with Y Combinator. We're building the platform that removes blind trust from infrastructure: proof, not promises, about what's actually running in production. Proud of this team beyond words 🧡

  5. X

    Proud to be working with @ShieldedLabs, @ZecRocks and Stardust to make zero-indexer’s privacy-sensitive infrastructure independently verifiable.

    Proud to be working with @ShieldedLabs, @ZecRocks and Stardust to make zero-indexer’s privacy-sensitive infrastructure independently verifiable.

  6. X

    we’re part of the team behind https://t.co/7BMLEjwki3, so entropy is a thing we’ve thought about a lot.

    we’re part of the team behind https://t.co/7BMLEjwki3, so entropy is a thing we’ve thought about a lot. it’s probably a good moment to share two tools some may find useful right now: * AirgapOS: a minimal (and audited) OS for offline secrets management used by several well known

  7. X

    now more than ever focusing on attack surface area reduction is the way to go when securing systems.

    now more than ever focusing on attack surface area reduction is the way to go when securing systems. any surface area will be exploited given a long enough time horizon. AI just drastically compressed that time horizon.

  8. X

    @ShieldedLabs (Zcash) and @CautionHosting have been brewing something really cool.

    @ShieldedLabs (Zcash) and @CautionHosting have been brewing something really cool. It has been an absolute blast working together! tldr we added some nice privacy layers for the latest zcash protocol migration using TEEs