Context AI Confirms Delve Link to Breach
Context AI confirmed it previously used Delve for security certifications. This link surfaced after the Vercel data breach, which was disclosed last week. The Vercel breach began with a compromised Google account belonging to a Context AI employee, granting hackers access to Vercel's internal systems. Context AI has since shifted its compliance program and is seeking new certifications from Vanta and Insight Assurance.
Widening Security Failures
The Vercel incident is the latest in a string of client issues for Delve. Earlier, LiteLLM disclosed a malware attack via open-source code linked to Delve's certification, prompting the company to end its relationship. Lovable also recently admitted to accidentally sharing customer data publicly, while downplaying earlier vulnerability reports. These events follow whistleblower accusations that Delve faked customer data and certifications.
Delve's Reputation in Freefall
Delve has strongly denied the whistleblower's allegations. However, its reputation has suffered significant damage, leading Y Combinator to end its partnership. Complicating matters further, a whistleblower alleges Delve refused refunds while sending its team on an expensive offsite trip to Hawaii. Delve did not respond to requests for comment; its media email bounced.
