Sonatype Repository Firewall is a security solution for repository environments, inspecting open-source components to detect vulnerabilities, policy violations, and supply chain threats at the point of ingress.

| Product | Market Share (%) |
|---|---|
| Sonatype Repository Firewall | 0.9% |
| SonarQube | 16.9% |
| Checkmarx One | 9.9% |
| Other | 72.30000000000001% |
Sonatype Repository Firewall focuses on preventing security breaches by analyzing artifacts in real time and enforcing security and compliance policies across repositories. It supports automated workflows for quarantining and blocking suspicious components and integrates with repository managers like Sonatype Nexus Repository. The platform provides audit trails, detailed reporting, and automated remediation workflows, helping security and DevOps teams efficiently manage risks associated with vulnerable or malicious dependencies while maintaining developer productivity and delivery speed.
What are the key features of Sonatype Repository Firewall?Sonatype Repository Firewall is implemented across industries with a strong focus on secure software development. Financial services, healthcare, and government sectors leverage its capabilities to prevent data breaches and ensure compliance with regulatory standards. Its integration with existing CI/CD pipelines allows seamless adaptation without disrupting development processes.
Sonatype Repository Firewall was previously known as Sonatype Nexus Firewall, Nexus Firewall.
EDF, Tomitribe, Crosskey, Blackboard, Travel audience
| Author info | Rating | Review Summary |
|---|---|---|
| CEO at VIVANS | 4.0 | We use Sonatype Repository Firewall to prevent malicious packages in Nexus Repository, as it supports accurate detection via its database. While lacking in container and AI support, improvements are expected in 2025. Alternatives are limited to Gather. |
| Global Treasurer at Genpact | 4.5 | No summary available |
| Senior Cyber Security Architect and Engineer at a computer software company with 10,001+ employees | 4.0 | No summary available |
| Student at a university with 51-200 employees | 4.0 | I find Sonatype Repository Firewall valuable for vulnerability and security assessments, with strong network and intrusion protection features as well as compliance rules. However, improvements are needed in file systems, and a zero test feature should be included. |