Endor Labs
Palo Alto, US · Founded 2021 · 213 employees on LinkedIn · 13 known investors
Find your way into Endor Labs
518 people in our graph share verified history with the Endor Labs team — schools, employers, funds. One of them is your warm intro.
Endor Labs provides application security tooling to identify, prioritize, and fix vulnerabilities in software development, with particular focus on securing AI-generated code and open-source dependencies.
Also known as Endor Labs, Inc.
Founders & leadership
Endor Labs was founded in 2021 by Varun Badhwar and Dimitri Stiliadis.


Investors · 13
Also in the syndicate · 1
Funding
SEC filings, press & company announcements- Undisclosed amountseedOct 2022Source ↗
Source: company announcements and press reports — follow each round's link for the claim.
Company profile
researched Aug 2026Endor Labs is a Palo Alto-headquartered application security company that unifies static application security testing (marketed as AI SAST), secrets detection, software composition analysis, malicious package detection, a package firewall, container image scanning and governance of AI coding agents into a single platform. Its central technical claim is reachability analysis: the platform analyzes first-party code, dependencies and container images to determine which vulnerabilities are actually reachable and exploitable in a given application, so teams triage a smaller backlog rather than all known CVEs. Beyond detection, the product offers remediation guidance, upgrade impact analysis, automated patching, and backported security patches sold as drop-in replacements for vulnerable open source libraries.
The company began by securing open source package dependencies and, per its own account, expanded from reachability-based SCA to a full AppSec platform in 2024 and to an agentic AI platform in 2025. That agentic product, AURI, is aimed at what the company calls the "vibe coding" era: it plugs into AI coding agents and editors (Cursor, Claude Code, Codex, VS Code/Copilot, Antigravity) via hooks, skills, an MCP server or a CLI, inventories the agents, models, MCP servers and skills in use, checks each agent action against policy before it runs, blocks malicious packages before install, flags secrets, and runs agent-based pull request reviews for architectural and business logic risks. It is powered by what the company describes as a code context graph representing repositories, services, files, functions, code owners and change history, combined with a proprietary vulnerability database, call graphs for open source packages and embeddings used to trace the provenance of AI-generated code.
Founding story
Endor Labs was founded in 2021 in Palo Alto by serial entrepreneurs Varun Badhwar and Dimitri Stiliadis, who encountered the problems the company addresses while leading Prisma Cloud through its hypergrowth phase at Palo Alto Networks. Endor Labs is Badhwar's third company. The founding thesis was that traditional AppSec tooling was not built for the scale, speed and complexity of modern software development, particularly as code reuse, open source, microservices and later AI code generation expanded the attack surface.
Business model
Endor Labs sells software to enterprise engineering and security organizations on a seat-based subscription. Pricing is per contributing developer — defined as a developer who has committed to a monitored repository within the prior 90 days — with volume discounts as contributor counts grow and annual fair-usage scan quotas tied to seats purchased. Customers can also buy through the AWS, Microsoft Azure and Google Cloud marketplaces.
Tiered, seat-based subscriptions: a free Developer tier (AURI, local scanning, read-only vulnerability data, no UI, policies or scan history), plus paid Core and Pro editions adding deeper scanning, enterprise integrations, policy enforcement and reporting. Products are also sold individually — Endor Code (AI SAST, design/business logic review, secrets detection), Endor Open Source (SCA, container images, malware detection), AI Coding Agent Governance, Package Firewall, Patches and SBOM Hub — with bundling available for the full platform.
Traction
As of April 2025 the company reported protecting more than 5 million applications, running over a million scans per week, 30x ARR growth over the preceding 18 months, 166% net revenue retention and 133 employees. Customer-cited outcomes include 76% fewer SCA alerts and 11,424 development hours returned at Five9, 97-97.5% reductions in non-actionable alerts, 70% faster mean time to remediation, 10x fewer security tickets, 83% fewer blocked pull requests and 6x faster fixes.
Latest developments
The most recent publicly described developments are the launch of AURI, an agentic platform that governs AI coding agents across design, development, review and deployment and is offered free to individual developers; the addition of C language support to AI SAST; a strategic partnership with Zinfinity for enterprise open source adoption; and published research on the Shai-Hulud 2 npm supply chain malware campaign targeting GitHub and cloud credentials.
▸Full profile — market position, technology, go-to-market, geography, history, risks & controversies
Market position
Endor Labs positions itself as a consolidation play against disconnected point scanners, triage queues and manual remediation handoffs, competing with traditional SAST and SCA vendors on noise reduction through reachability. The company describes itself as the fastest growing AppSec company and cites 30x ARR growth since its 2023 Series A, 166% net revenue retention, more than 5 million applications protected and over a million scans per week as of April 2025. Its investors have separately backed peers such as Wiz and Snyk.
The company differentiates on reachability-based prioritization backed by transparent evidence (data flow and call paths) rather than signature-based alerting, on combining deterministic program analysis with agentic reasoning in one engine to catch business logic and architectural flaws, and on the breadth of its underlying security dataset covering open source packages, AI models, vulnerabilities and code relationships. Other stated differentiators include auditable, reproducible findings for compliance regimes such as FedRAMP, PCI and CRA, a native Bazel integration, C/C++ support in the absence of a standard package manager, and a research-heavy team in which roughly a third of code committers hold PhDs in program analysis and AI.
Technology
The platform blends deterministic program analysis with agentic AI reasoning. Core techniques include multi-file, multi-function dataflow and source-to-sink taint analysis, full-stack reachability tracing from code through direct and transitive dependencies to container images, and Endor scores computed from metadata on open source packages and AI models. Purpose-built security agents and sub-agents detect risks, evaluate exploitability, triage findings and generate merge-ready fixes with traceable evidence. Supporting data assets include a proprietary vulnerability database, call graphs for millions of open source packages, and embeddings for tracing the provenance of AI-generated code; support spans 40+ languages and frameworks, with C support added for AI SAST. Deployment options include agentless cloud scanning (source code cloned briefly and destroyed, not stored), in-pipeline CI/CD scanning where code stays in the customer's runner, and Endor Outpost for scheduled monitoring scans.
Go-to-market
The company combines a free, no-account developer tier distributed through AI coding editors and MCP/CLI installation as a top-of-funnel motion with an enterprise sales motion ("book a demo", contact sales) for Core and Pro editions. Distribution is supplemented by cloud marketplace listings on AWS, Azure and Google Cloud, integrations with source platforms such as GitHub, GitLab, Bitbucket and Azure DevOps, technology partnerships including Microsoft Defender for Cloud, channel partnerships such as Zinfinity, and content marketing via customer case studies, a blog and a prompt library.
Enterprise and high-growth technology companies' application security, product security and DevSecOps teams, plus the developers and AI coding agents they support. Publicly referenced users include OpenAI, Rubrik, Peloton, Snowflake, Egnyte, Dropbox, Atlassian, Glean, Cursor (Anysphere), Astronomer, Jellyfish, Five9, Netskope, Starburst, People.ai, Observe.ai, Grip Security and Mysten Labs.
Geography
Headquartered in Palo Alto, California, with additional offices in Delft, Netherlands and Bengaluru/Bangalore, India. The India site is led by a Managing Director and R&D Head. The company has stated it is expanding its global go-to-market.
History
Founded in Palo Alto in 2021, Endor Labs came out of stealth in October 2022 with a service focused on securing open source package dependencies and developer pipeline governance. It announced a $70 million Series A in 2023, expanded in 2024 from reachability-based SCA to a broader application security platform and launched a tool to discover and assess AI models and services embedded in customer codebases. In April 2025 it announced a $93 million Series B led by DFJ Growth, bringing total capital raised to $163 million, and during 2025 launched an agentic AI AppSec platform for AI-generated code. Its board includes partners from Lightspeed, DFJ Growth, Coatue, Dell Technologies Capital and Salesforce Ventures.
Risks & controversies
Performance figures such as 30x ARR growth, 166% net revenue retention, up to 95-97% noise reduction and 2.6x more true positives than frontier AI models are company-supplied and not independently verified in the available material. The company operates in a crowded application security market alongside vendors such as Snyk, and its 2025 repositioning toward AI-generated code and agentic security represents a change of course from its original open source dependency focus. Scanning architecture requires briefly cloning customer source code into Endor Labs' cloud in the default agentless deployment, though the company states source code is not stored.
Compiled by commissioned research from 8 cited public sources — announcements, filings, and press listed under research sources below.
Key figures
latest reportedCompany-reported or press-reported figures, each dated to when it was claimed — not independently audited.
Founder mafia
3 people who came through Endor Labs went on to found or lead other companies.
Competitors · 10
by search overlapCompanies competing with Endor Labs for the same Google search keywords, organic and paid, via search-intersection analysis.
Timeline · 11
launches, deals, and filingsEndor Labs announced a strategic partnership with Zinfinity, a global technology solutions and services provider focused on cyber security, cloud and digital infrastructure.
Endor Labs announced a $93 million Series B led by DFJ Growth with participation from Salesforce Ventures, Lightspeed Venture Partners, Coatue, Dell Technologies Capital, Section 32 and Citi Ventures. The company said the round was oversubscribed and preempted, bringing total capital raised to $163 million; CEO Varun Badhwar said it valued Endor at 'orders of magnitude higher' than the Series A.
$93M source ↗
DFJ Growth partner and former Sumo Logic CEO Ramin Sayar was added alongside the Series B; he is listed on the company's board.
Microsoft's Vlad Korsunsky, Corporate Vice President, Cloud & Enterprise Security, said the collaboration with Endor Labs makes Defender for Cloud the first CNAPP to provide code-to-runtime reachability.
Endor Labs launched an agentic AI AppSec platform aimed at securing AI-generated code, marketed under the AURI product name and covering code generation, review and remediation.
Endor Labs launched a capability to identify where AI models and services integrate with a customer's codebase and evaluate those integrations for security flaws.
Endor Labs raised a $70 million Series A to grow its developer pipeline governance and open source dependency security service.
$70M source ↗
The company came out of stealth in October 2022 with reachability-based software composition analysis.
Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.
In the news
# 1 Career Coaching & Resume Writing Services | YESyeswriting.com · Jul 2026▸Research sources · 8
primary sources listed
- Endor Labsendorlabs.com · web
8 public sources were cited for this profile; the first-party ones are listed here.
Frequently asked questions
- What does Endor Labs do?
- Endor Labs sells an application security platform that secures open source dependencies and AI-generated code.
- Who founded Endor Labs?
- Endor Labs was founded by Varun Badhwar, Dimitri Stiliadis in 2021.
- Who are Endor Labs's investors?
- Endor Labs's investors include Lightspeed Venture Partners, Dell Technologies Capital, Coatue Management, S32, Salesforce Ventures, Section 32, Sierra Ventures, Capital One Ventures and 4 more.
- Where is Endor Labs headquartered?
- Endor Labs is headquartered in Palo Alto, US.








.png)







