CrowdSec Pitch Deck (2020): 33-Slide Seed Deck

See all 33 slides of the CrowdSec pitch deck — a 2020 deck — with a slide-by-slide teardown of what the deck does well and where it falls short.

CrowdSec presents a compelling case for a 'Waze-like' approach to cybersecurity, moving away from static IP reputation lists toward a dynamic, crowd-sourced behavior assessment engine. The deck, dated June 2020, seeks a 300,000 Euro 'Smart Money' round to transition from an open-source tool to a monetized SaaS platform. The core value proposition relies on the network effect: as more users join the free open-source community, the precision of the security data increases, creating a proprietary database of aggressive traffic. While the deck is visually simple, it clearly articulates a 'Why Now…

Key takeaways

CrowdSec: A Collaborative Approach to Mass-Scale Hacking

The CrowdSec 'Smart Money Round' deck, dated June 18, 2020, represents a strategic pivot point for an open-source project moving toward a commercial SaaS model. With 33 slides in total (9 provided for this teardown), the deck focuses heavily on the power of the network effect and the technical superiority of a crowd-sourced security engine over traditional, siloed reputation lists.

Slide 1: Title and Vision

The cover slide introduces the company name, CrowdSec, alongside the tagline 'Safer Together.' It establishes four pillars for the brand: Open Source, Collaborative, Dynamic, and Security engine. The visual theme uses a mountain landscape, perhaps symbolizing the scale of the challenge or the 'peak' of security technology. The date indicates this deck was used during the early stages of the COVID-19 pandemic, a time of increased digital activity and cyber threats.

Slide 5: The Next Generation Solution

This slide breaks down the technical components of the CrowdSec offering. It highlights five key features: Real Time processing, Behavior assessment, Reputation assessment, Decoupled detection & remediation, and Crowd intel sharing. By 'decoupling' detection from remediation, the company suggests a modular architecture that can adapt to various environments without being tied to a specific firewall or blocking tool.

Slide 9: The Power of the Crowd

CrowdSec uses a 'Waze' analogy to explain their competitive advantage. The slide explicitly states that 'more users means better precision.' It argues that previous IP reputation systems failed because they were not crowd-based. The strategic choice to remain Open Source is framed here not just as a philosophy, but as a growth lever to 'enlarge our crowd' and improve the underlying data product.

Slide 13: One Stone, Ten Birds

This slide uses a flow diagram to show how the system qualifies traffic. An 'unknown' user (represented by a masked icon and a professional icon) passes through the CrowdSec brain. The system identifies various threats—symbolized by icons for bots, exploits, and phishing—and then qualifies, discards, and notifies the central database of aggressive traffic. This illustrates the data-loop that feeds their reputation engine.

Slide 17: API and Monetization

The business model is clarified here. The slide titled 'API: Monetizing the Network effect' shows a three-step process. 1) Unknown IPs make queries. 2) The first packet is screened by the CrowdSec API. 3) The API replies with a 'Pass' or 'Act' instruction. This indicates that while the tool may be free to use, the real-time access to the global 'crowd' intelligence is the primary value driver for monetization.

Slide 21: The 'Why Now' and Competitive Landscape

This is a critical slide for investors. It addresses why previous attempts by giants like Symantec and Cisco (Talos) missed the mark. CrowdSec identifies three factors: Size (accuracy comes from numbers), Versatility (API-first vs. email-focused), and Community (Open Source vs. self-financed). They position themselves as the successor to Fail2ban, aiming to reach a much broader audience than just mail administrators.

Slide 25: Conversion Strategy

CrowdSec sets a specific target of a 3.5% conversion rate. The slide outlines a funnel inside a human head graphic: Communication (getting known), Easy deployment (onboarding), Ignite the need (premium incentives), Frictionless premium (easy payment/VAT handling), and Always offer more (retention). This shows a sophisticated understanding of SaaS growth mechanics beyond just the technical security aspect.

Slide 29: The Ask and Use of Funds

The company seeks approximately 300,000 Euros. The use of funds is split into three categories: Building the community (noting that adoption rate is the 'sole KPI' currently), Strengthening the SaaS (preparing for monetization), and Ramping up signal collection. The slide includes pie charts suggesting the allocation of resources, though specific percentages are not labeled. They explicitly state this round is to prepare for a 'Serie A.'

Slide 33: Conclusion and Contact

The final slide reiterates the core belief: 'Only the crowd can defeat mass scale hacking.' It provides contact information for the CEO (Philippe) and the COO (Laurent). Notably, this deck lacks a traditional 'Team' slide in the provided selection, which would usually detail the founders' backgrounds in cybersecurity to validate their ability to build such a complex engine.

What CrowdSec Does Well

The deck excels at explaining the Network Effect . By comparing themselves to Waze, they make a complex cybersecurity concept immediately understandable to a generalist investor. They also show a clear path to monetization through an API-first strategy, which is highly scalable. The inclusion of a specific conversion rate target (3.5%) on Slide 25 demonstrates that the founders are thinking about the business as a data-driven SaaS company, not just an open-source project.

What is Missing from the Deck

Team Background: While contact emails are provided, there is no slide detailing the founders' previous exits, technical expertise, or history in the security sector. · Unit Economics: The deck mentions a 3.5% conversion rate but does not provide projected Average Revenue Per User (ARPU) or Customer Acquisition Cost (CAC). · Detailed Financials: Beyond the 300,000 Euro ask, there are no projections for revenue growth or burn rate over the next 18-24 months. · Market Size (TAM/SAM/SOM): The deck assumes the investor understands the massive scale of the cybersecurity market but does not quantify the specific segment CrowdSec is targeting.

Founder Takeaways: What to Copy

Use Analogies for Complex Tech: If you are building a platform that relies on user data, the 'Waze for X' analogy is incredibly effective for explaining why your product gets better as it grows. Be Specific About KPIs: Stating that 'Adoption rate is our sole KPI' (Slide 29) shows focus. Investors prefer a team that knows exactly what metric matters most at their current stage. Visualize the Funnel: Slide 25 is a great example of how to visualize a go-to-market strategy. It moves beyond 'we will use social media' and looks at the actual friction points in a user's journey from free to paid.

Frequently asked questions

What is the primary problem CrowdSec is solving?
CrowdSec addresses the failure of traditional, centralized IP reputation systems. According to Slide 21, previous attempts by large firms like Symantec and Cisco were limited because they were self-financed, closed-source, and lacked the scale of a distributed community. CrowdSec solves this by using an open-source security engine that allows a global crowd to identify and share data on aggressive traffic in real-time.
How does CrowdSec plan to make money?
The monetization strategy is centered on an API-first SaaS model. Slide 17 illustrates a process where unknown IPs making queries are screened by the CrowdSec API. The API then provides a 'Pass' or 'Act' response based on the collective intelligence of the network. Slide 25 further details a 'frictionless premium' conversion path to move free open-source users into paying customers.
What is the significance of the 'Smart Money' round?
The round, totaling roughly 300,000 Euros, is intended to bridge the gap to a Series A. Slide 29 specifies that the funds will be used to build the community (their primary KPI), strengthen the SaaS infrastructure for monetization, and ramp up signal collection to increase the network effect value.
What is the 'Waze' comparison mentioned in the deck?
On Slide 9, the founders compare their security network to the navigation app Waze. The logic is that a security system's precision is dependent on the volume of its users. By being open source, CrowdSec aims to 'enlarge the crowd,' ensuring that the behavior and reputation data they collect is more accurate than closed, smaller networks.
Who are the competitors identified by CrowdSec?
Slide 21 lists several 'attempts' at IP reputation systems that the company views as predecessors or competitors, including Symantec, Talos (Cisco), Gossip, Repuscore, and IP group REP. They also credit Fail2ban for 'paving the way' but suggest it failed to reach a larger crowd beyond mail administrators.
Cover slide of the CrowdSec pitch deck — Seed / Smart Money Round 2020
CrowdSec pitch deck, slide 1 (2020)

CrowdSec pitch deck: the facts

Company
CrowdSec
Year
2020
Stage
Seed / Smart Money Round
Slides
33
Sector
Cybersecurity
Deck type
Fundraising
Outcome
Unknown from slides
Headquarters
Unknown from slides

CrowdSec pitch deck PDF

The full CrowdSec deck is embedded on this page and can be read slide by slide in the browser — no download or account required. Each slide is covered in the breakdown above.

What the CrowdSec pitch deck was used for

This is CrowdSec’s 2020 "Smart Money Round" deck, a 33-slide pitch deck for a seed-stage fundraise. The deck positions CrowdSec as an open-source, behavior-based security engine designed to replace or augment traditional IP reputation systems by using community intelligence. It was used while the company was raising early capital for product development and growth of the network, with the deck itself referencing a smart-money round and the broader fundraising timeline later disclosed by the company.

Business model: Open-source, community-driven cybersecurity platform that builds a collaborative firewall using behavior-based threat intelligence and shared IP reputation.

Round
Seed / smart money
Year
2020
Raising
Smart money round
Raised
€1.5M-€1.8M
Lead investor
Reflexion Capital
Investors
Reflexion Capital
Founded
2019
Founders
Philippe Humeau, Thibault Koechlin
Headquarters
Paris, France
Industry
Cybersecurity
Total funding
€20.6M

Use of funds as presented: Early product development and growth of the community firewall network

What happened after the CrowdSec deck

The 2020 smart-money deck helped finance CrowdSec’s early stage. Later sources show the company went on to raise additional capital in 2021 and 2022, indicating the company progressed beyond the initial round.

What the CrowdSec deck got right

What could have been stronger

How an investor would read this deck

What draws attention

Risks that stand out

Questions this deck invites

What founders can take from the CrowdSec deck

CrowdSec pitch deck: common questions

What does CrowdSec do in this deck?

CrowdSec described itself as an open-source, community firewall that identifies malicious IP behavior by aggregating intelligence from users’ systems and the wider network.

Which fundraising round was this deck used for?

The deck is for the company’s 2020 Smart Money Round, which is shown in the slide-share title and corroborated by later company materials describing a smart-money round in summer 2020.

Where does this deck sit in CrowdSec’s fundraising history?

The deck appears to be a 33-slide seed-stage fundraising deck. Later public materials indicate CrowdSec raised a smart-money round around 2020, then a $5M seed in 2021, and a €14M Series A in 2022.

When and where was CrowdSec founded?

CrowdSec later said the company was founded in December 2019 and that its early fundraising was organized through a group of business angels in an SPV; the company was based in Paris.

Who invested in this round and what happened afterward?

Later external sources show the 2020 round was completed and followed by additional financings, but the specific investors in this deck’s round are not fully disclosed in the sources retrieved here beyond later references to Reflexion Capital in the early 2020 financing and Breega in later rounds.

Sources

Funding and outcome facts on this page were researched on 2026-08-22 from the pages below.

CrowdSec pitch deck slides

CrowdSec pitch deck slide 1 of 33
CrowdSec pitch deck — slide 1 of 33
CrowdSec pitch deck slide 2 of 33
CrowdSec pitch deck — slide 2 of 33
CrowdSec pitch deck slide 3 of 33
CrowdSec pitch deck — slide 3 of 33
CrowdSec pitch deck slide 4 of 33
CrowdSec pitch deck — slide 4 of 33
CrowdSec pitch deck slide 5 of 33
CrowdSec pitch deck — slide 5 of 33
CrowdSec pitch deck slide 6 of 33
CrowdSec pitch deck — slide 6 of 33

What each slide of the CrowdSec pitch deck says

Slide 1

~ Q : gan 8 wv ~ ~ = - ~~ ~ a : Open Source ; Security engine CrowdSec

Slide 2

By 2021, the estimated cost of Cyber criminality is $6 trillion (Cybersecurity ventures) In 2018 hackers stole half a billion personal Why records (Cybersecurity ventures) “Cyber defense collaboration is the space race oi Hackers attack occur every 39 ourgeneration. seconds. (University of Maryland) Williams David The average cost of a data breach is $150 M. (Juniper)

Slide 3

Cybersecurity: not (only) a problem of means These companies had amongst the largest security budgets on earth, yet this did not prevent cyber criminals to succeed. : F\\uote EQuirpax fi sony as (7.5 million accounts stolen) ~ (800 K records, 57 000 (2:2 bn records) ($171 million global cost) B ri users) - as Linked f}) & YaHoOO! a (117 million of email/pass) ($500 million robbed) ($117 million settlement) ($252 million cost) JPMorgan Uber © TARGET (83 million of accounts) (57 million of accounts) ($162 million cost) We need another approach A a ~ ee,

Slide 4

Not solved, for a reason Apps require ports opened to Hackers use stolen servers, free open everyone on the firewall, which just source tools and their time. They don't even let everything ... pass. need 1% of your budget to attack you. uUnFiLTeren POIrTsS PerimerTer Shadow IT (Cloud / SaaS) & Covid19's "Work at home" policy created an uneven security level across the perimeter. CTOs have no idea where are their assets and how they are cared for. Time between intrusion and detection, Oday and patch, safe and ... sorry.

Slide 5

The next generation solution assessment sharing i TEN Dad Behavior Pemauree

Slide 6

The Waze of firewalls ASA Nfs 9 a £8 ANG aA Fue ¥ Sri@e TT a Te gman @ | py © EEL 8 _ J) Our parents used this. We use this, because it’s free, real time, fed by community and gives traffic insights.

Slide 8

A seasoned founders triumvirate 2 hilippc Thibault Humeau Koechlin Defensive Security Forecast Leadership Tactician Strategy Open source sawy Experience Networks Mentoring Polyvalent Experience Lead Dev Cash efficient Marketing @) Offensive security Accountable for Accountable for Accountable for Delivery Vision Security Planning Means Architecture Execution Business Stability 06 600 Wee (The team will introduce itself)

Slide text above is read directly from the CrowdSec deck PDF embedded on this page.

Related fundraising guides (24)

Decks from the same year (1)

Browse companies alphabetically (1)

More pitch deck teardowns (16)

Recently published pitch deck teardowns (12)

Fundraising library · Pitch deck examples · Investor directory · Founder database