Company profile
Anchore
SBOM-centric software supply-chain security for containers and cloud-native builds.
- Status
- PrivateListed on CyberMerge Startup Radar (private vendors), snapshot Oct 1, 2026
- Valuation
- Undisclosed
- Latest funding
- Undisclosed
- HQ
- US (Startup Radar)
- Website
- anchore.com
- Last updated
Categories
Funding & valuation
Funding: Undisclosed — no round recorded in the CyberMerge Funding Tracker.
Latest signals
- Startup Radar · Application Security · snapshot Oct 1, 2026 PitchBook: private VC-backed; ~$37.7M raised to date (Series A 2020 + later debt). Still independent. Source
- Startup Radar · Cloud Security · snapshot Sep 23, 2026 Still private. Enterprise around Grype/Syft. No 2026 equity round found. Source
Competitors
Same-category peers from CyberMerge Research maps, Startup Radar and What's The Use tags.
- OX SecurityPrivateAI-native AppSec from prompt to runtime: ASPM/PBOM, VibeSec for AI-generated code, plus OX Cloud CNAPP with…
- Aikido SecurityPrivateUnified developer AppSec suite (SAST/SCA/secrets/cloud/runtime) with autofix; European unicorn.
- ChainguardPrivateSafe-source open-source: zero-CVE container images, libraries, and supply-chain factory.
- Kodem SecurityPrivateRuntime SCA / code-to-runtime composition risk without heavy instrumentation.
- TridentPrivateAgentic pentester chaining verified attack paths across cloud, web apps, and APIs.
- Oligo SecurityPrivateRuntime exploit blocking / virtual patching for cloud-native and agentic/LLM apps.
- FAZE SecurityPrivateOffensive Security Orchestration with Agentic Red Team: continuous agentic testing of web apps, APIs, and…
- Data TheoremPrivateAPI and cloud-native application protection spanning analysis, runtime, and AI/API attack surface.
- RASPIREPrivateIn-app runtime protection against API abuse, fraud, and runtime threats (RASP/CWPP-adjacent).
- ArmadinPrivateAI-native offensive security: autonomous agent swarms chain low-severity weaknesses into validated kill…
- UpwindPrivateRuntime-first CNAPP: eBPF sensors for CSPM, CWPP, CDR, and AI-workload protection; expanding via Upwind AI…
- Aqua SecurityPrivateKubernetes-native CNAPP: Trivy/Tracee OSS, image/admission, CWPP, CSPM, KSPM, and supply chain.
Figures appear only as recorded in CyberMerge data, with source and date. “Undisclosed” means no published figure in our data. Editorial, not investment advice. Last updated . Spot an error? Tell the desk.
