G2 logo

The Endor Labs Experience

From startup to enterprise, we have you covered.

Endor Labs is for:
We’re excited to partner with Endor Labs as we continue to strengthen our security posture in this AI era. Their focus on actionable insights and seamless integration aligns with our commitment to building secure, reliable products for our customers."
Mark Turner
Mark Turner
Head of Product Security, Atlassian
My team is responsible for remediating vulnerabilities. Endor helps us do it quickly so we can deliver the most secure AI product possible.”
Travis McPeak
Travis McPeak
Security,
Cursor (Anysphere)
Citi runs one of the largest software development organizations in the world. Endor Labs integrates seamlessly into the developer workflow and helps pinpoint supply chain risks that may affect our business."
Placeholder
Clark Smith
Head of Engineering and Architecture for CISO & Managing Director at Citi
grip logo
Endor Labs delivered on its promise to make SCA way more efficient and bubble up what actually matters much quicker."
Idan
Idan Fast
Co-Founder & CTO, Grip Security
People AI logo
Without the tedium and minutia of tracking down individual items that might not matter, we can focus on the remaining vulnerabilities that would impact customers and our FedRAMP compliance."
Raphael
Raphael Theberge
Head of Security Enablement at Relativity
Zebra logo
Endor Labs helped us cut through the noise and focus on what matters. With fewer alerts and more accuracy, our teams now spend more time building and less time chasing false positives."
Michael
Michael Hammond
Information Security Engineer, Zebra Technologies

Customer Stories

Filter by Industry
AI & Blockchain
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Customer Stories
SCA
Tech
Compliance & SBOM
Malware
Rubrik Hits Aggressive SLAs via Endor Labs
Customer Story

Rubrik Hits Aggressive SLAs via Endor Labs

Dec 2, 2025
Customer Stories
SCA
Tech
Cursor Develops a Secure Product with Endor Labs
Customer Story

Cursor Develops a Secure Product with Endor Labs

Aug 20, 2025
Customer Stories
SCA
Tech
Five9 Transforms Software Supply Chain Security with Endor Labs
Customer Story

Five9 Transforms Software Supply Chain Security with Endor Labs

Aug 20, 2025
Open Source
Security
Compliance & SBOM
AI & Blockchain
Tech
People.ai transforms security and compliance with Endor Labs
Customer Story

People.ai Transforms Security and Compliance with Endor Labs

Jul 1, 2025
SCA
First Party Code
AI/ML
AI & Blockchain
Tech
Mysten Labs Improves DevEx with Endor Labs
Customer Story

Mysten Labs Improves DevEx with Endor Labs

Jun 17, 2025
Open Source
SCA
Devices & Manufacturing
Tech
Zebra Technologies Cuts SCA Noise by 97% with Endor Labs
Customer Story

Zebra Technologies Cuts SCA Noise by 97% with Endor Labs

Jun 11, 2025
Open Source
SCA
Security & Compliance
Tech
Grip Security Reduces Noise by 99%
Customer Story

Grip Security Reduces Noise by 99%

Dec 11, 2024
SCA
Security
Compliance & SBOM
Tech
Customer Story

Relativity Blocks Risks with Endor Labs

Sep 24, 2024
SCA
Security
Data Management
Tech
Starburst Gets 98.3% Noise Reduction with Endor Labs
Customer Story

Starburst Gets 98.3% Noise Reduction with Endor Labs

Sep 9, 2024
SCA
Security
Tech
Customer Story

Jellyfish Enables Data-Driven AppSec with Endor Labs

Jul 24, 2024
Compliance & SBOM
Tech
VMware achieves SBOM compliance for over 100 services with Endor Labs
Customer Story

VMware Achieves SBOM Compliance for Over 100 Services with Endor Labs

Jan 29, 2024
Security
SCA
Tech
MileIQ securely reimagines a decade old product with Endor Labs
Customer Story

MileIQ Securely Reimagines a Decade Old Product with Endor Labs

Dec 11, 2023

Our FedRAMP environment requires more rigor than you would normally get in any other kind of product release, with near zero tolerance for vulnerabilities. Endor Labs’ reachability analysis and consolidated findings reduced the number of true positives requiring remediation, which is a huge time- and money-saver.”

Marty Garvin
Head of Security, Rubrik
Marty GarvinCompany Logo

Without the tedium and minutia of tracking down individual items that might not matter, we can focus on the remaining vulnerabilities that would impact customers and our FedRAMP compliance."

Raphael Theberge
Head of Security Enablement at Relativity
Raphael ThebergeCompany Logo

Endor Labs catches malicious dependencies before we even hear about a CVE. Their security research team goes beyond automated detection to help us verify the threat so we can act early and decisively.”

Aman Sirohi
SVP - Chief Security Officer & Platform, People.ai
Aman SirohiCompany Logo

We recently removed Checkmarx in favor of Endor. I like them as they allow us to eliminate the need to fix vulns when they are on unused code paths (a hard to resolve problem with SBOM based scanners). When we used Snyk (prior to Cx), we were overwhelmed with all the unrelated findings. Endor scans are also much faster than Cx (and no strict parallelism limits that stall CI) which we appreciate. Their support teams have been great to us and got us very early warning of the latest NPM malware issues (~6h before Cx notified us)."

AppSec Engineer
Reddit comment
AppSec EngineerCompany Logo

Endor Labs' exceptional timeliness and proactive communication during the recent spate of npm malware attacks allowed us to expedite our internal investigation and remediation. I've never experienced that level of support from a vendor before."

George Jenkins
Product Security Architect, Beyond Identity
George JenkinsCompany Logo

“When it comes to malware attacks, Endor Labs helps me sleep better at night because I know we can quickly figure out whether we’re impacted, and if not, move on with our day.”

Marty Garvin
Head of Security, Rubrik
Marty GarvinCompany Logo

If it wasn’t for reachability, this program would fail. A little extra effort up front to onboard is worth the deep application context we use every day."

Greg Pettengill
Principal Product Security Engineer, Five9
Greg PettengillCompany Logo

Reachability is table stakes these days. That's why we switched to Endor recently which actually builds the entire call graph and is incremental. Its comments are informational so for level1 triage can be done by the devs. Moreover, now we can actually do SLA and ticketing which is always a struggle with os Trivy."

Sr. Security Engineer
Reddit comment
Sr. Security EngineerCompany Logo

AppSec for The Software Development Revolution