Insignary
Insignary is a private Toronto- and Seoul-based software security vendor that sells Insignary Clarity, an enterprise Software Composition Analysis platform using patented binary fingerprinting to generate SBOMs from source code and compiled binaries, serving government and enterprise customers with over 70% overseas revenue.
- Company typePrivate
- Founded2016
- HeadquartersSeoul, South Korea
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Insignary does
Insignary Inc. is a privately-held software security vendor founded in 2016 and headquartered in Toronto, Canada, with operating presence in Seoul, South Korea. The company sells Insignary Clarity, a Software Composition Analysis (SCA) platform that scans source code, compiled binaries, and IT infrastructure to generate Software Bills of Materials (SBOM) and map open source components against known CVEs, license conflicts, and emerging threats. Its core technical differentiator is a patented binary fingerprinting approach that derives SBOMs from compiled binaries without requiring source code access and without reverse engineering that would breach open source licenses, complemented by package manager inspection, hash matching, reachability analysis, and continuous vulnerability monitoring. The platform supports SPDX and CycloneDX SBOM standards and integrates with Snyk and FOSSID for comparative analysis, with deployment options including SaaS, on-premises, and hybrid.
The company sells Clarity as an annual subscription under a separate Subscription Agreement, with quote-based enterprise pricing that is not publicly disclosed, targeting enterprise development and security teams, embedded systems and device manufacturers, and government/public-sector buyers. Confirmed end customers include the U.S. and Japanese governments, and Insignary states that over 70% of its revenue is generated overseas, primarily driven by U.S. cybersecurity policy demand. The company has raised approximately 3 billion KRW (~USD 2.3M) from BM Ventures LLC in December 2023 to fund global marketing and expansion, follows a sales-led enterprise field motion supplemented by technology partnerships, and was named a Representative Vendor in Gartner's 2025 Hype Cycle for Application Security. Insignary reported net profit of over 1 billion KRW in the year prior to the BM Ventures round and has stated an intention to pursue an IPO within three years of that round. Leadership consists of Co-CEOs Mahnjoon Jang (Founder) and Tae-Jin (TJ) Kang (President).
Insignary firmographics
Firmographics- Name
- Insignary
- Legal name
- Insignary Inc.
- Website
- https://insignary.com
- Company type
- Private
- Founded year
- 2016
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Insignary is a private Toronto- and Seoul-based software security vendor that sells Insignary Clarity, an enterprise Software Composition Analysis platform using patented binary fingerprinting to generate SBOMs from source code and compiled binaries, serving government and enterprise customers with over 70% overseas revenue.
- Ownership category
- akta.pro rank
Insignary industry classification
Industry- Product category
- Application Security Software
- NAICS
- Software Publishers (513210)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Software Supply Chain & Dependency Security (SBOM, Signing) (HDADACAD)
Keywords
Where Insignary is headquartered
LocationHeadquarters
- HQ city
- Seoul
- HQ country
- South Korea
- HQ region
- Asia
Offices2 records
Markets served
Insignary business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Subscription / Licensing: Insignary Clarity is offered under an End User License Agreement that references a Subscription Agreement; fees are paid in advance of the applicable subscription or usage period, are non-refundable, and may be updated by Insignary over time, indicating a recurring subscription / license-based revenue model.
- Enterprise SaaS / On-Prem / Hybrid Deployments: The Clarity product suite is deployable as SaaS, on-premises, or hybrid, and integrates with tools like Snyk and FOSSID — supporting enterprise subscription contracts with deployment and integration-driven revenue.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Subscription-based enterprise licensing (quote-based) |
Go-to-market motion3 records
Distribution channels3 records
Marketing channels6 records
Insignary product offering
Product offeringCore offering
Insignary Clarity is a Software Composition Analysis (SCA) platform that generates a Software Bill of Materials (SBOM) from source code, compiled binaries, and IT infrastructure, identifying open source components with vulnerabilities, restrictive licenses, and policy violations. It continuously maps the SBOM to known CVEs, license conflicts, and emerging threats, and supports AI-generated and third-party code risk detection. The product is delivered as SaaS, on-premises, or hybrid deployments and integrates with security tools such as Snyk and FOSSID.
Product overview
Insignary offers Clarity, a single unified Software Composition Analysis (SCA) suite that delivers end-to-end visibility into security and license risks across the software supply chain. The Clarity suite scans source code, binaries, and infrastructure to identify open source software with vulnerabilities, restrictive licenses, and policy violations, and continuously maps an organization's Software Bill of Materials (SBOM) to known CVEs, license conflicts, and emerging threats. Clarity is delivered via SaaS, on-prem, and hybrid deployment models, integrates with scanning tools such as Snyk and FOSSID, and supports import of SBOMs in SPDX and CycloneDX formats. Insignary was named a Representative Vendor in the Gartner 2025 Hype Cycle for Application Security.
Differentiator
Problem solved
Functional benefit
Brands
- Insignary Clarity: Software Composition Analysis (SCA) solution that generates and manages Software Bills of Materials (SBOMs) from source code and compiled binaries; identifies open source vulnerabilities, license risks, and policy violations across the software supply chain.
Products and services
- Insignary Clarity Software Composition Analysis (SCA) suite that scans source code, compiled binaries, and infrastructure to generate a Software Bill of Materials (SBOM), continuously map it to known CVEs, license conflicts, and emerging threats, and detect risk in AI-generated and third-party code. Sold to enterprise and government customers.
Quantifiable outcome
- 97% of applications leverage open source code, and 90% of companies use open source software in some way (industry context cited on Insignary Clarity page).
- +1 more outcomes
Companies that use Insignary
Customer profileSegments3 records
Ideal customer profiles3 records
Insignary technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration4 records
AI capability2 records
Feature8 records
Insignary partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered core integration partner; enables comparative sbom analysis between tools., core integration partner; enables comparative sbom analysis. and analyst validation; co-marketed via dedicated homepage banner and gartner report landing page..
- Snykcore integration partner; enables comparative sbom analysis between tools.Insignary Clarity integrates seamlessly with Snyk and can provide comparative analysis between SBOMs generated by different tools or provided by third parties, allowing customers to leverage Insignary's binary SCA alongside Snyk's developer security platform.
- FOSSIDcore integration partner; enables comparative sbom analysis.Insignary Clarity integrates seamlessly with FOSSID and supports comparative analysis between SBOMs generated by different tools, allowing customers to combine Insignary's binary fingerprinting with FOSSID's open source detection capabilities.
- Gartneranalyst validation; co-marketed via dedicated homepage banner and gartner report landing page.Insignary's homepage features a Gartner® Report banner promoting the 2025 Hype Cycle™ for Application Security, in which Insignary was named as a Representative Vendor, with a direct link to a dedicated report page.
Scale indicators6 records
Recent moves6 records
Expansion highlights6 records
Insignary competitors and assessment
Company assessmentDirect peers
- Snyk: Leading developer security platform with a broad SCA/SBOM product. Insignary integrates with Snyk for comparative SBOM analysis, but Snyk is the most direct competing SCA vendor targeting the same enterprise and government buyers.
- Sonatype: Pioneer of SCA and SBOM management with Nexus Repository and Lifecycle products. Targets the same enterprise and government software supply-chain use cases as Insignary Clarity, including binary and source analysis.
- Synopsys Black Duck: Black Duck is a long-standing SCA suite covering open source license compliance, security, and SBOM generation. Directly competes with Insignary on enterprise software composition analysis and SBOM workflows.
- Mend (formerly WhiteSource): Mend offers an enterprise SCA platform focused on open source vulnerability and license management with SBOM capabilities. Competes head-to-head with Insignary in enterprise open source risk and SBOM delivery.
- JFrog: JFrog's Xray and Curation products provide SCA, SBOM, and software supply chain security. A broader DevOps platform that overlaps Insignary's SCA and SBOM value proposition for enterprise and government buyers.
- FOSSA: FOSSA is a SaaS-first SCA and SBOM management platform targeting enterprise engineering teams. Competes with Insignary on license compliance, vulnerability detection, and SBOM generation use cases.
- Anchore: Anchore provides SBOM-centric software supply chain security with strong government and regulated-industry adoption, including SPDX/CycloneDX workflows. Closely comparable to Insignary's SBOM-first positioning.
- ReversingLabs: ReversingLabs performs binary-level software analysis and malware detection, with SBOM and software supply chain security offerings. Closely comparable to Insignary's binary fingerprinting niche within enterprise/government buyers.
Emerging players
- Cycode: Cycode is a venture-backed software supply chain security platform with SBOM and SCA capabilities. Targets the same enterprise security buyer persona as Insignary but with a broader ASPM/platform play rather than a binary-SCA niche.
- Chainguard: Chainguard focuses on hardened container images and software supply chain integrity with SBOM and provenance tooling. Competes with Insignary for the same software supply chain security budgets at large enterprises and government agencies.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Insignary social profiles
Digital presenceInsignary financial estimates
Financial estimateRevenue estimate
Valuation estimate
Insignary leadership team
Management profileNumber of profiles
Profiles2 records
Insignary funding detail
Funding detailFunding overview
Funding rounds5 records
Investors5 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Insignary M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Insignary
What does Insignary do?
Insignary Clarity is a Software Composition Analysis (SCA) platform that generates a Software Bill of Materials (SBOM) from source code, compiled binaries, and IT infrastructure, identifying open source components with vulnerabilities, restrictive licenses, and policy violations. It continuously maps the SBOM to known CVEs, license conflicts, and emerging threats, and supports AI-generated and third-party code risk detection. The product is delivered as SaaS, on-premises, or hybrid deployments and integrates with security tools such as Snyk and FOSSID.
Is Insignary a public or private company?
Insignary is a private company. It is classified as venture growth investor backed and is currently operating.
When was Insignary founded?
Insignary was founded in 2016. It employs 11 to 50 people.
Where is Insignary based?
Insignary is headquartered in Seoul, South Korea, in the Asia region.
How does Insignary make money?
Two revenue lines are on record. Subscription / Licensing is the primary driver. The others are enterprise SaaS / On-Prem / Hybrid Deployments.
Who are Insignary's main competitors?
Direct peers on record are Snyk, Sonatype, Synopsys Black Duck, Mend (formerly WhiteSource), JFrog, FOSSA, Anchore and ReversingLabs. Emerging players are Cycode and Chainguard.
Does Insignary have an API?
No public API is recorded for Insignary.
What industry is Insignary in?
Insignary's product category is Application Security Software. Its primary akta.pro industry code is HDADACAD, Software Supply Chain & Dependency Security (SBOM, Signing). Its NAICS code is 513210 and its SIC code is 7372.