Case Studies

Vibes to vulnerabilities: Cloudsmith takes on vibe coding

Written by Priscillia Chun | Sep 11, 2025 11:29:49 AM

Client overview

Cloudsmith is a leading provider of cloud-native software artifact management, trusted by global enterprises across sectors to secure their software supply chains. Acting as the ‘backbone’ of global supply chains, Cloudsmith is committed to securing today’s systems and building an adaptive, resilient infrastructure for tomorrow.

Brief

Resonance was tasked with positioning Cloudsmith at the forefront of modern software supply chains, establishing them as the go-to experts on issues that could compromise the resilience of these systems. With AI-assisted development rising in prominence, we identified an opportunity to shape the narrative around “vibe coding” and its risks to enterprise security.

Execution

Resonance developed and executed a research-led thought leadership campaign to capture the emerging conversation on AI-driven coding. Starting with original research, we crafted a comprehensive PR and social plan designed to amplify Cloudsmith’s insights. The campaign was delivered seamlessly across Resonance’s team and Cloudsmith’s owned channels, ensuring consistent messaging and maximum impact.

This integrated approach established Cloudsmith’s authority while sparking sustained debate across the industry about the implications of AI on software supply chain integrity.

Results

  • Generated 17 pieces of coverage (and counting), including a letter placement in the Financial Times and tier-one coverage in The New Stack, DevClass, Computing, ITPro, SC Media, and more

  • Research findings achieved lasting traction, being cited in follow-up articles weeks after launch

  • Provided Cloudsmith with a strong foundation for ongoing commentary, ensuring they remain ahead of discussions on AI-driven coding

  • Coverage resonated with industry leaders and CISOs, including endorsement from the Dutch Railways following the Financial Times piece