Introducing G2.ai, the future of software buying.Try now
Product Avatar Image

Sonatype

Show rating breakdown
28 reviews
  • 5 profiles
  • 8 categories
Average star rating
4.5
Serving customers since
2008

Profile Name

Star Rating

19
9
0
0
0

Sonatype Reviews

Review Filters
Profile Name
Star Rating
19
9
0
0
0
Vis C.
VC
Vis C.
Cybersecurity Expert
06/02/2025
Validated Reviewer
Review source: G2 invite
Incentivized Review

Best SCA tool in the market for Java, and .NET

Zero false positives in component identification and vulnerability reported for those built in Java and .NET.
Ardhiya C.
AC
Ardhiya C.
DevOps Engineer at TCS | AZ-104 Certified
03/11/2024
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Easy to use repository for sharing artifacts within team

I like that it is very easy to use. We are able to simple login to the repository as admins and view all the artifacts that are being used by various proxies and also by various teams. It is also helpful to upload binaries from any server and retrieve them using simple commands. We use Nexus Repository in our daily BAU activities in our devops team.
Juan Diego P.
JP
Juan Diego P.
01/16/2024
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Perfect solution for artifact management

Fit all my needs for artifact management. Easy to use, flexible, and easy to integrate into our CI/CD processes.

About

Contact

HQ Location:
Fulton, US

Social

@sonatype

What is Sonatype?

Sonatype is the software supply chain management company, helping organizations build faster and safer with open source and AI. As the maintainers of Maven Central and the creators of Nexus Repository, Sonatype has spent years pioneering how the world discovers, manages, and secures third-party components that power modern applications. Sonatype’s Nexus One Platform unifies open source intelligence, governance, and automation to reduce risk and friction across the software development lifecycle. Teams use Sonatype to understand component risk, enforce security and license policies consistently, and automate remediation so developers can fix issues early, where they work. Sonatype’s portfolio includes Nexus Repository for centralized artifact and package management, Nexus Lifecycle for automated dependency management and policy enforcement, Nexus Firewall to prevent risky components from entering the enterprise, and Sonatype SBOM Manager to generate, import, store, and monitor audit-ready SBOMs to support compliance and vulnerability response. Underpinning the platform is Nexus Intelligence, which provides component insights and remediation guidance to help teams act with confidence.

Details

Year Founded
2008