Company profile
Chainguard
Safe-source open-source: zero-CVE container images, libraries, and supply-chain factory.
- Status
- PrivateListed on CyberMerge Startup Radar (private vendors), snapshot Oct 1, 2026
- Valuation
- Undisclosed
- Latest funding
- Undisclosed
- HQ
- Remote-first / US (Startup Radar)
- Website
- chainguard.dev
- Last updated
Categories
Funding & valuation
Funding: Undisclosed — no round recorded in the CyberMerge Funding Tracker.
Latest signals
- Startup Radar · Application Security · snapshot Oct 1, 2026 23 Apr 2025: $356M Series D led by Kleiner Perkins & IVP at $3.5B valuation (company). Later Oct 2025 equity reported by aggregators—use Series D as primary cited round. Source
- Startup Radar · Cloud Security · snapshot Sep 23, 2026 1 May 2026: FIPS-validated zero-CVE EKS add-ons on AWS Marketplace. Last disclosed: $356M Series D Apr 2025 (Kleiner/IVP) plus $280M debt Nov 2025; LinkedIn lists ~$892M total. Source
Competitors
Same-category peers from CyberMerge Research maps, Startup Radar and What's The Use tags.
- OX SecurityPrivateAI-native AppSec from prompt to runtime: ASPM/PBOM, VibeSec for AI-generated code, plus OX Cloud CNAPP with…
- Aikido SecurityPrivateUnified developer AppSec suite (SAST/SCA/secrets/cloud/runtime) with autofix; European unicorn.
- AnchorePrivateSBOM-centric software supply-chain security for containers and cloud-native builds.
- Kodem SecurityPrivateRuntime SCA / code-to-runtime composition risk without heavy instrumentation.
- TridentPrivateAgentic pentester chaining verified attack paths across cloud, web apps, and APIs.
- Oligo SecurityPrivateRuntime exploit blocking / virtual patching for cloud-native and agentic/LLM apps.
- FAZE SecurityPrivateOffensive Security Orchestration with Agentic Red Team: continuous agentic testing of web apps, APIs, and…
- Data TheoremPrivateAPI and cloud-native application protection spanning analysis, runtime, and AI/API attack surface.
- RASPIREPrivateIn-app runtime protection against API abuse, fraud, and runtime threats (RASP/CWPP-adjacent).
- ArmadinPrivateAI-native offensive security: autonomous agent swarms chain low-severity weaknesses into validated kill…
- UpwindPrivateRuntime-first CNAPP: eBPF sensors for CSPM, CWPP, CDR, and AI-workload protection; expanding via Upwind AI…
- Aqua SecurityPrivateKubernetes-native CNAPP: Trivy/Tracee OSS, image/admission, CWPP, CSPM, KSPM, and supply chain.
Figures appear only as recorded in CyberMerge data, with source and date. “Undisclosed” means no published figure in our data. Editorial, not investment advice. Last updated . Spot an error? Tell the desk.
