
Sonar
Founded Year
2008Stage
Unattributed VC | AliveTotal Raised
$457.1MValuation
$0000Last Raised
$412M | 4 yrs agoRevenue
$0000Mosaic Score The Mosaic Score is an algorithm that measures the overall financial health and market potential of private companies.
-46 points in the past 30 days
About Sonar
Sonar provides tools for static code analysis, code quality assurance, and security measures for the software development industry. The company's tools integrate into CI/CD workflows and support a wide range of programming languages and frameworks. It was founded in 2008 and is based in Vernier, Switzerland.
Loading...
ESPs containing Sonar
The ESP matrix leverages data and analyst insight to identify and rank leading companies in a given technology landscape.
The software supply chain security tools market provides solutions that secure the software development lifecycle from code creation through deployment and runtime. These solutions secure the software supply chain from potential threats, such as cyber attacks, malware, and vulnerabilities. Key capabilities include detecting malicious code, ensuring component integrity, automating security controls…
Sonar named as Leader among 15 other companies, including Synopsys, Veracode, and JFrog.
Loading...
Research containing Sonar
Get data-driven expert analysis from the CB Insights Intelligence Unit.
CB Insights Intelligence Analysts have mentioned Sonar in 2 CB Insights research briefs, most recently on Nov 3, 2025.

Nov 3, 2025 report
Tech IPO Pipeline 2026: Book of Scouting Reports
Feb 20, 2024
The hardware security market mapExpert Collections containing Sonar
Expert Collections are analyst-curated lists that highlight the companies you need to know in the most important technology spaces.
Sonar is included in 2 Expert Collections, including Unicorns- Billion Dollar Startups.
Unicorns- Billion Dollar Startups
1,309 items
Tech IPO Pipeline
257 items
The tech companies we think could hit the public markets next, according to CB Insights data.
Sonar Patents
Sonar has filed 39 patents.
The 3 most popular patent topics include:
- intercontinental ballistic missiles
- short-range ballistic missiles
- vehicle law

Application Date | Grant Date | Title | Related Topics | Status |
|---|---|---|---|---|
5/10/2022 | 4/1/2025 | Vehicle law, Short-range ballistic missiles, Intercontinental ballistic missiles, Ground radars, Intermediate-range ballistic missiles | Grant |
Application Date | 5/10/2022 |
|---|---|
Grant Date | 4/1/2025 |
Title | |
Related Topics | Vehicle law, Short-range ballistic missiles, Intercontinental ballistic missiles, Ground radars, Intermediate-range ballistic missiles |
Status | Grant |
Latest Sonar News
Nov 12, 2025
The synergy between Sonar and Orion Governance enables organizations to eliminate code clutter, elevate code quality, and establish a trustworthy data foundation that drives sound business decisions.” — Ramesh Shurma SAN MATEO, CA, UNITED STATES, November 12, 2025 / EINPresswire.com / -- Orion Governance, a leading provider of metadata management and data fabric solutions, today announced a strategic integration with Sonar, the industry standard for code quality and automated code review. Orion's integration with Sonar will allow enterprises to harvest metadata from high-quality, secure code—accelerating and strengthening their data and AI governance initiatives. “We are extremely excited to partner with Sonar to extend data governance down to the code level,” said Ramesh Shurma, Founder and CEO of Orion Governance. “The synergy between Sonar and Orion Governance enables organizations to eliminate code clutter, reduce associated costs and risks, elevate code quality, and ultimately establish a trustworthy data foundation that drives confident business decisions.” "Trustworthy data and effective AI governance are impossible without confidence in the underlying code. That's why Orion Governance's integration of SonarQube into their platform is so important,” said Jeff Clawson, Head of Technology Partnerships. “This integration directly addresses a critical need, giving enterprises a clear line of sight from the quality of their code to the reliability of their data and AI initiatives." By incorporating code governance as part of the AI governance, this integration partnership uniquely bridges the gap between software development and enterprise data and AI governance, enabling organizations to: ● Optimize code maintainability in the Age of GenAI ● Improve visibility into code-level metadata ● Ensure code quality and security standards across development lifecycles ● Enhance data lineage, compliance, and audit readiness ● Build a trusted foundation for AI and analytics initiatives Sonar empowers developers to find and fix both code quality and code security issues across their entire codebase. Its SonarQube solution automates reviews and provides actionable code intelligence for all code—first-party, AI-generated, third-party open source. About Sonar Sonar is the industry standard for automated code review, integrating code quality and code security into a single platform built for the AI-coding era. Sonar provides the essential, independent verification of all code—AI-generated and developer-written—so development teams can find and fix security, reliability, and maintainability issues quickly and effectively. Rooted in the open source community, Sonar's solutions support over 35 programming languages and are used by 7M+ developers across 400K organizations, including Barclays, MasterCard, and T-Mobile. To learn more about Sonar, please visit: www.sonar.com About Orion Governance Orion Governance was founded in 2017 with a mission to disrupt the information management space. The company's Enterprise Information Intelligence Graph (EIIG) leverages deep knowledge of technologies, AI/ML, and LLMs in providing a vendor/technology/cloud agnostic single-pane view and near real-time capabilities through the most comprehensive knowledge graph in the industry. The EIIG has persona-based visualizations to create a self-defined data fabric with detailed data lineage, cataloging, traceability, augmented data quality, and analytics capabilities; ML/AI automation enables enterprises to take control of their complex IT landscape in near real-time. Customers include Global 5000 companies in banking insurance, retail, healthcare, telecom, and information technology. Orion's technology has been pivotal to several Global banks in helping them comply with Basel III endgame and other critical regulations. In addition to this, key use cases include acceleration of cloud migration/modernization, data governance and regulatory compliance, and cost optimization. Orion is headquartered in San Mateo, California, with global offices in other US cities, Estonia, Sweden, Singapore, Germany, India, and Ecuador. To learn more about Orion Governance, please visit: www.oriongovernance.com Niu Bai Orion Governance, Inc. niu.bai@orioinic.com Visit us on social media: LinkedIn YouTube Legal Disclaimer: EIN Presswire provides this news content "as is" without warranty of any kind. We do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the author above.
Sonar Frequently Asked Questions (FAQ)
When was Sonar founded?
Sonar was founded in 2008.
Where is Sonar's headquarters?
Sonar's headquarters is located at Chemin de Blandonnet 10, Vernier.
What is Sonar's latest funding round?
Sonar's latest funding round is Unattributed VC.
How much did Sonar raise?
Sonar raised a total of $457.1M.
Who are the investors of Sonar?
Investors of Sonar include Insight Partners, Advent International, General Catalyst, Permira and FONGIT.
Who are Sonar's competitors?
Competitors of Sonar include Qwiet AI, Moderne, Aikido, GuardRails, Codescene and 7 more.
Loading...
Compare Sonar to Competitors

Veracode provides application security solutions across sectors, including government, financial services, software, technology, retail, and healthcare. The company offers services for the software development life cycle, including vulnerability detection, static and dynamic application security testing, software composition analysis, container security, application security posture management, and penetration testing. Veracode's platform integrates into development processes, providing feedback and remediation supported by artificial intelligence to improve developer efficiency and security. It was founded in 2006 and is based in Burlington, Massachusetts.

Checkmarx provides a platform for securing application development from code to cloud across various sectors. The company's offerings include static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and tools for API security, container security, infrastructure as code security, and malicious package protection. Checkmarx serves a range of industries, with an aim to integrate security within the software development lifecycle. It was founded in 2006 and is based in Paramus, New Jersey.

Snyk operates in the technology sector and provides a platform for code security, open source vulnerability management, container environment protection, and infrastructure as code misconfiguration resolution. Its services offered by Snyk include continuous monitoring and actionable fix advice. It was founded in 2015 and is based in Boston, Massachusetts.

Mend focuses on application security within the cybersecurity industry. Its main offerings include a platform for managing application security risks, including tools for scanning source code, managing open source security, ensuring compliance, securing containerized applications, and analyzing artificial intelligence (AI) model risks. Mend's solutions serve developer and security teams, offering automated dependency updates, dynamic testing, and a framework for software supply chain security. Mend was formerly known as White Source. It was founded in 2011 and is based in Givatayim, Israel.

Semgrep provides products including static application security testing (SAST), software supply chain security, and semantic analysis to identify vulnerabilities in code. Its solutions include tools for enforcing code standards and integrating security into developer workflows. It was formerly known as r2c. It was founded in 2017 and is based in San Francisco, California.

Contrast Security focuses on runtime application security within the cybersecurity domain. The company provides products that integrate code analysis and attack prevention into software, aimed at enhancing security observability and protection for applications. Contrast Security works with developers, application security (AppSec) teams, and security operations (SecOps) teams in various industries. It was founded in 2014 and is based in Pleasanton, California.
Loading...