Startup profile · funding coverage
Socket funding, valuation and investors
Software supply-chain security for open-source dependencies.
Keep track of Socket
Save this profile to your VCT watchlist for a quick return.
Funding, valuation & investors
Answer-first snapshotLatest funding
Series C
$60M · February 2026
Latest known valuation
$1B
Series C · February 2026
Total disclosed equity funding
$80M
Excludes debt, grants, acquisitions, secondaries, and IPO proceeds.
Current status
private
growth · San Francisco, California
Overview
Socket.dev analyzes open-source packages for malicious behavior — typosquatting, install scripts, network exfiltration — before they enter codebases. Founded by Feross Aboukhadijeh (creator of WebTorrent and standardjs), the company raised $20M Series A in 2022 led by a16z and $60M Series C in February 2026 at $1B valuation led by Thrive Capital.
Why Socket is interesting
Socket protects npm/PyPI from malicious packages — $1B unicorn in 2026 as AI coding increases dependency velocity.
Product & use cases
Socket's GitHub app and CLI scan dependency changes in PRs, flagging supply-chain attacks, protestware, and suspicious package updates across npm, PyPI, Go, and other ecosystems.
- Block malicious npm/PyPI packages in CI/CD
- PR-level dependency diff scanning
- Open-source supply chain risk scoring
- Protect AI-generated code dependency sprawl
Key facts
- Series C (Feb 2026): $60M at $1B led by Thrive — Socket blog
- Series A (2022): $20M led by a16z
- Founder Feross Aboukhadijeh: open-source veteran
- Supply-chain malware detection for npm/PyPI
Funding history (newest first)
Series C
2026-02 $60M Valuation: $1BInvestors in our directory
Funds linked from Socket's profile — open a fund page for stage focus and related deal articles.
Competitive landscape
Edge: Behavioral package analysis vs hash-based vulnerability DBs — catches zero-day malicious publishes before CVE assignment.
Supply-chain attacks on npm exploded with AI coding assistants pulling packages faster. Socket's $1B 2026 mark validates proactive malware detection as category distinct from CVE scanning.
-
Snyk direct
Developer security platform; broader SCA plus Socket's behavioral focus.
-
Dependabot / GitHub incumbent
Native dependency alerts; less behavioral malware detection.
-
Endor Labs direct
Dependency lifecycle and reachability analysis competitor.
-
Semgrep Supply Chain adjacent
Static analysis vendor expanding supply chain features.
Notable stories
- Feross built Socket after years of npm ecosystem abuse — productized the security review he did manually on popular packages.
- Thrive-led $1B round in 2026 reflects AI coding assistants accelerating dependency risk surface.
Industries
FAQs about Socket
Practical answers founders, operators, and investors typically search for.
Last updated:
Editorial note: AI tools assisted with research, structure, or drafting. Venture Capital Tracker retains human editorial responsibility for factual accuracy, relevance, and source quality before publication.