Covertix

Cybersecurity Acquired asset Dual-Use Technology Founded 2006

Last updated: Jul 31, 2026

Covertix developed SmartCipher, a file-level information-rights and data-protection product that attached policy, monitoring, and usage controls to sensitive files as they moved beyond the enterprise perimeter. Public records now indicate an acquired or integrated asset rather than an independently operating startup, with the former web presence resolving to an OpenText data-governance product page.

Visit Website

Company Overview

Covertix's core proposition was data-centric security: protect the file itself instead of relying only on a trusted network, repository, or recipient endpoint. SmartCipher combined information rights management and data-loss-prevention concepts so an organization could define what a recipient was allowed to do with a document and continue monitoring that document after external sharing. A 2014 SecurityWeek interview described policy logic embedded in files, agent and agentless delivery modes, and controls that could vary by device, location, or action such as printing. That is a meaningful technical distinction from perimeter DLP, although the available evidence is historical rather than a current product specification.

The target market was regulated and IP-intensive organizations that must collaborate with suppliers, customers, contractors, clinicians, or professional-service providers without surrendering control of the underlying information. Historical public reporting identified healthcare and financial services as important markets, while the product could also address engineering drawings, development files, legal materials, and other non-Office content. The commercial value proposition is durable: persistent policy, revocation, auditability, and constrained external use can reduce accidental disclosure and improve evidence for privacy and compliance programs. However, adoption depends on integrations, endpoint coverage, policy administration, and whether controls remain usable enough that employees do not route around them.

The competitive field includes Microsoft and other productivity-suite rights-management capabilities, enterprise DLP and insider-risk platforms, secure collaboration vendors, and specialist information-rights-management providers such as Seclore and Virtru. Covertix's historical edge was breadth across file types and a policy model intended to travel with the content, including scenarios where the external party was not pre-registered. That advantage would have to be weighed against the distribution, identity integration, telemetry, and procurement scale of platform vendors. As data security has consolidated into broader security and information-management suites, a stand-alone product would face substantial bundling and go-to-market pressure.

The record should not be read as evidence of a currently independent venture. Startup Nation Central lists Covertix as presumed inactive due to acquisition, labels its funding stage acquired, and reports 11–50 historical employees; its profile also identifies SmartCipher and the company’s cyber/data-security positioning. The former company domain is no longer a reliable canonical destination, while the supplied OpenText data-access-governance URL is an active official OpenText product page. OpenText confirms its 2023 acquisition of Micro Focus, but the exact Covertix transaction terms and the present ownership or maintenance scope of SmartCipher were not independently confirmed in an official transaction announcement. The defensible classification is therefore acquired_asset with material lineage uncertainty, not startup.

The technology has credible dual-use relevance, but the evidence supports capability adjacency rather than current defense traction. Persistent file controls can help protect sensitive engineering data, contractor exchanges, controlled information, and coalition or mission-partner collaboration across semi-trusted environments. Those applications are technically plausible because the same file-level enforcement problem exists in commercial supply chains and government ecosystems. There is no verified evidence here of classified deployments, security certifications, government contracts, or continuing Covertix personnel. Strategic value is consequently strongest as a capability benchmark and acquisition lineage for data-centric security diligence, not as a direct strategic-screening signal in an active company.

Dual-Use Assessment

Military & Commercial Applications

The underlying capability has substantive commercial and security applicability: persistent file-level policy, monitoring, and revocation can protect enterprise IP and sensitive government or defense information shared across organizational boundaries. The dual-use case is technically credible, but there is no verified current defense customer, certification, contract, or active standalone Covertix operating team in the evidence reviewed.

Strategic Fit Assessment

Covertix addressed a strategically important security problem and appears to have had a differentiated historical file-centric approach, but the available evidence indicates that the original company is inactive or absorbed and no longer presents a clean independent venture-equity opportunity. The appropriate diligence path is to verify the surviving product/IP lineage, ownership, customer obligations, and team continuity within the OpenText/Micro Focus ecosystem, or to use Covertix as a benchmark when sourcing active data-centric security startups. This is a strategic assessment, not an investment recommendation.

Strategic Value to U.S.-Israel Alliance

Moderate-to-high technology and landscape value, but low direct company value as a startup target. Persistent information control remains relevant to zero-trust data security, regulated collaboration, contractor ecosystems, and sensitive defense-adjacent workflows. The record is useful for understanding file-native security architecture, acquisition lineage, and build-versus-buy questions; its value is reduced by uncertainty about current product ownership, maintenance, and personnel.

Key Technologies

  • File-level information rights management (IRM)
  • Policy logic embedded with or bound to protected files
  • Persistent encryption and usage-control enforcement
  • Agent-based and agentless secure file collaboration
  • Context-aware controls for device, location, and permitted actions
  • Post-distribution monitoring, alerts, and access revocation
  • Cross-platform protection for design, development, Office, and PDF files

Use Cases & Applications

  • Restricting printing, forwarding, copying, or offline use of sensitive enterprise files
  • Sharing engineering designs and development files with suppliers and contractors
  • Protecting healthcare records and regulated financial information across external workflows
  • Maintaining auditability when legal, board, or M&A documents leave the core repository
  • Applying persistent controls to government or defense contractor information exchanges
  • Supporting coalition or mission-partner collaboration across semi-trusted environments
  • Reducing insider and accidental disclosure risk for distributed intellectual property

Sources and verification

This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work.

This record lists 5 public references used for company identity, status, positioning, or material-claim review.

Public sources

The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.

Investor Lens

What this entry is

Acquired asset

Why it may matter

Covertix may matter as a Cybersecurity entry with not currently an investable standalone company for Israeli technology research.

How an independent investor should read this

Not currently an investable standalone company. Read this profile as a starting point for independent verification, not as a recommendation or suitability assessment.

Evidence to verify

  • Verify current status
  • Verify technical claims
  • Verify regulatory/export-control issues

Main investor questions

  • Is this entry a benchmark, buyer, ecosystem node, acquired asset, or strategic reference rather than a live startup opportunity?
  • What does this reference clarify about buyers, sector structure, public-market context, or strategic demand?
  • Does the dual-use claim map to actual commercial and government/defense/resilience buyer evidence?
  • What evidence would change the thesis or show that the profile is stale?

What not to infer

  • Inclusion does not imply endorsement.
  • Inclusion does not imply allocation availability or current fundraising.
  • Scores do not indicate investment suitability or expected returns.
  • Strategic importance does not automatically imply venture return potential.

Diligence questions

  • What evidence verifies Covertix's current customer traction, deployment status, and revenue concentration?
  • Which technical claims are independently demonstrable today, and which remain roadmap or pilot-stage assertions?
  • Where does the product create real defense, intelligence, critical-infrastructure, or emergency-response value beyond ordinary commercial adoption?
  • How does the platform integrate into existing SOC, cloud, identity, or compliance workflows without adding operational burden?
  • Is the company a live venture opportunity, a mature strategic reference, an acquired asset, or primarily a market-mapping entry?

Related sector

See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.

Need a diligence readout?

Use the profile and related checklists as a starting point. If the decision needs more context, request a company screen, founder-call prep, diligence memo, or sector readout.