{
  "slug": "constellation-edgeless-systems",
  "name": "Constellation (by Edgeless Systems)",
  "description": "Constellation is the first Confidential Kubernetes distribution. It wraps an entire Kubernetes cluster into a single Shielded Virtual Machine, ensuring that all data remains encrypted even during processing by using hardware-based Trusted Execution Environments.",
  "url": "https://optimly.ai/brand/constellation-edgeless-systems",
  "logoUrl": "",
  "baiScore": 62,
  "archetype": "Challenger",
  "category": "Cybersecurity",
  "categorySlug": null,
  "keyFacts": [],
  "aiReadiness": [],
  "competitors": [
    {
      "slug": "anjuna-confidential-computing",
      "name": "Anjuna Confidential Computing"
    },
    {
      "slug": "azure-confidential-computing-acc",
      "name": "Azure Confidential Computing Acc"
    },
    {
      "slug": "scone-scontain",
      "name": "Scone Scontain"
    }
  ],
  "inboundCompetitors": [],
  "aiAlternatives": [],
  "parentBrand": {
    "slug": "edgeless-systems",
    "name": "Edgeless Systems (Domain Asset)"
  },
  "subBrands": [],
  "updatedAt": "2026-04-10T05:25:06.402+00:00",
  "verifiedVitals": {
    "website": "edgeless.systems",
    "founded": "2018",
    "headquarters": "Bochum, Germany",
    "pricing_model": "Freemium / Enterprise Subscription",
    "core_products": "Constellation (Confidential Kubernetes Distribution)",
    "key_differentiator": "It is the only solution that shields the entire Kubernetes cluster as a single unit using TEEs, rather than just individual containers or nodes.",
    "target_markets": "Finance, Healthcare, Defense, High-Compliance SaaS",
    "employee_count": "Not publicly available",
    "funding_stage": "Not publicly available",
    "subcategory": "Cloud Security / Infrastructure"
  },
  "intentTags": {
    "problemIntents": [
      "DIY Hardened Infrastructure: Setting up Kubernetes on-premise or on bare metal with manual cryptographic sealing and hardware security module (HSM) integration.",
      "Standard CSP Managed Services: Using standard managed Kubernetes services like GKE, EKS, or AKS without confidential computing features, relying purely on IAM and network policies."
    ],
    "solutionIntents": [
      "what is a confidential kubernetes distribution?",
      "how to encrypt kubernetes data in use",
      "best kubellation software for security",
      "top cloud infra management tools 2024",
      "Encryption-at-rest/motion Tools: Software-only encryption tools like HashiCorp Vault or Cilium for network encryption which do not protect data in use (RAM)."
    ],
    "evaluationIntents": [
      "Edgeless Systems Constellation vs Anjuna"
    ]
  },
  "timestamp": 1776104629011
}