@jfrog

Driven by a “Liquid Software” vision, the JFrog Software Supply Chain Platform powers organizations to build, manage, and distribute software quickly & securely

🌎
Joined May 2009
🦾 From agentic governance and AI-native security to the future of trusted software delivery, these #swampUP Europe sessions will give you the knowledge and confidence to master the #AI surge and take it straight back to your team. We are so excited to welcome Ariel Assaraf from @Coralogix, Oliver Grubin from @AnthropicAI, Tyrone Gamby from @MorganStanley, and Amit Eyal from Agentcy Labs to the swampUP Europe stage later this month. ✨ The speakers taking the stage at #swampUP Europe 2026 in Barcelona are the people rewriting the rules of trusted software delivery in the AI era, so make sure to register today: swampup.jfrog.com/europe/ #TrustedIntelligence #AI #SoftwareSupplyChain #DevGovOps #DevSecOps
1
1
131
🎙️ New podcast episode alert: JFrog CEO @ShlomiBenHaim joined Mandeep Singh, CFA, @BBGIntelligence's global head of technology research, on the Tech Disruptors podcast to talk about where the #softwaresupplychain is headed next. Recorded at #swampUP 2026, the conversation covers how #AgenticAI, MCP servers, and reusable skills are reshaping #DevOps, plus Shlomi gives a candid look at the security risks that come with more capable models. 🔗 Tune in now: apple.co/46Q1YuT #AgenticAI #AI #DevGovOps
1
2
188
At #swampUP Europe 2026 in Barcelona, JFrog VP of Security Research @SRMish will share the research your team needs to stay vigilant in the #AI era, before it affects your pipeline. The threat landscape is not waiting for you to catch up. Stay one leap ahead and register today: swampup.jfrog.com/europe/ #DevSecOps #DevGovOps #TrustedIntelligence #SoftwareSupplyChain
1
3
274
New JFrog Platform plugin for OpenAI Codex is live, expanding universal AI coding agent support. 🧠 Codex now integrates with the JFrog Platform to get the same governance, security, and provenance as Claude Code, Cursor, and VS Code Copilot. 5+ million developers use OpenAI Codex every week, and most of them are pulling packages and calling MCP servers with zero visibility from the security team. Now: ✅ Every dependency is checked against existing policies before it downloads 🛡️ AI-driven installs are routed through your existing repos, scans, and audit trail automatically 🔒 Agents are restricted to only pre-approved MCP servers and skills The JFrog Platform plugin for OpenAI Codex is available immediately from: bit.ly/4AF18Pb
2
2
12
571
Tomorrow September 30th, Ariel Antoni demos the self-healing supply chain: Zero-Touch Remediation automatically swapping vulnerable artifacts for the best available fix, drawn from upstream maintainers and curated sources. The gap in timing between disclosure and a working exploit is now measured in hours, while most remediation processes still run on sprints. There's no more time for broken builds or waiting on a human-being to enact fixes. Register today: bit.ly/3UY59hj
2
418
Patch diffing isn't new: attackers have always compared fixed and vulnerable versions to build exploits. What's new is Frontier AI that compresses the time from public fix to working exploit to hours. Manual patch cycles can't keep up. Defenders need faster, more targeted delivery of patches and sensitive disclosures, to the right people through the right channels. These are the new rules of patching: bit.ly/3Vjyva6 #Cybersecurity #DevSecOps #AppSec #AISecurity
2
408
With this series starting tomorrow, learn what shipped at #swampUP 2026, and how it changes in your software supply chain for the bettter: bit.ly/3UY59hj Three sessions. Three JFrog product leaders. One system of record behind it all. 🌟 9/29: Trust Your Agentic Workforce with Guy Eshet, JFrog Senior Manager, Product Management 👉🏽 Govern what your #AI agents consume and deliver, with Agent Guard, AI Asset Registries with security scanning, native agent package resolution, and a network-level traffic controller. 🌟 9/30: Secure at Frontier Speed with Ariel Antoni, JFrog Senior Manager, Product Management 👉🏽 Vulnerable artifacts swapped for the best available fix automatically, without breaking builds. See "Zero-Touch Remediation" in practice. 🌟 10/1: Regain Control Over Compliance with Sophie Starchenko, JFrog Senior Manager, Product Management Continuous, provable compliance for #CRA and the AI Act including out-of-the-box frameworks, an AI-powered Policy-as-Code playground, and Prompt-to-Release Traceability.
1
2
353
That's a wrap on Google Cloud AI Live + Labs Hong Kong 🇭🇰 It was a high-energy day of conversations with the #AI and #cloudcommunity across the region. One question kept coming up: how do you move from AI experimentation to real, production-ready solutions? Thank you to everyone who stopped by our booth to talk about #AI, #GoogleCloud, and building smarter solutions for the future. Great energy, great conversations, and even better connections. Until the next one 🐸 #Softwaresupplychainsecurity #DevSecOps #AIOps #EveryOps
1
1
488
The clouds are well represented at #swampUP Europe 2026! ☁️ We're excited to have these incredible cloud teams joining us in Barcelona (20–22 Oct.) as we bring together the engineers, #security teams, and #DevOps practitioners building trusted software delivery in the #AI era: @AWS, @googlecloud, @Azure 🌟 See you there! 🇪🇸 Register today: swampup.jfrog.com/europe/ #TrustedIntelligence #DevSecOps #DevGovOps #Cloud
1
272
Meet our Gold Partners at #swampUP Europe 2026 in Barcelona! 🐸 ✨ @knowmad_mood, @bufbuild, @CloudBees, @Follow_our_Echo — these are the teams showing up alongside us to bring the most important conversations in #DevSecOps, #DevGovOps, and #AI to engineers and security practitioners across Europe. We are so glad to have you with us in October. See you in Barcelona (20–22 October)! 🇪🇸 Register today: swampup.jfrog.com/europe/ #TrustedIntelligence
2
362
Context-switching between developer tools and manual artifact checks slows down delivery and exposes your pipeline to hidden risks. Command-line speed isn't just a convenience; you need automated artifact management and security scanning built directly into your terminal workflow. Understand terminal-first DevOps automation with our JFrog CLI course: bit.ly/4AvdAB1 Stop wrestling with clunky manual workflows and start driving pipeline automation directly from your terminal today!
305
The #swampUP expo floor is where the conversations happen. 🐸 Some of the brightest minds in #Security, #AI, #Cloud, and #DevOps all under one roof — connecting, demoing, debating, and building the kind of relationships you simply cannot get anywhere else. This is what peer networking looks like when everyone in the room is dealing with the same challenges. You saw what New York looked like. Barcelona is next! Register for swampUP Europe today: swampup.jfrog.com/europe/ #DevGovOps #TrustedIntelligence
249
We just wrapped our exclusive workshop in Seoul, #South Korea, and we're truly honored to have met so many brilliant minds. 🇰🇷🐸 It was truly a privilege to connect with key industry leaders from top-tier Korean enterprises. Together, we explored strategies for strengthening #softwaresupplychain security and accelerating #DevSecOps adoption. A big shoutout to our partner #Curvc for co-hosting such an engaging and impactful session! Here's to more collaboration, innovation, and building a stronger, more secure #software future - together. 🚀 #jfroginseoul #bettertogether #Jfrogworkshop
1
1
405
A special shout out to our Platinum Sponsors at #swampUP Europe 2026 in Barcelona! 👏🏼 These are the teams helping us bring the most important conversations in #DevSecOps, #DevGovOps, and #AI to engineers and security practitioners across Europe. Together, we are building the community that is mastering the AI surge, establishing systems of record for trusted software delivery, and proving that speed and security do not have to be a trade-off. ✨ @coderabbitai , @Coralogix , @SonarSource , @chainguard_dev - We are excited to do this with you! See you in Barcelona on 20–22 October 🇪🇸 Register today: bit.ly/4mEpVuk #TrustedIntelligence #SoftwareSupplyChain
1
2
472
That's a wrap on the #IndiaDevOpsShow Delhi 🇮🇳 It was a full day of conversations with industry leaders across the ecosystem. One question kept coming back: how do you ship software faster without losing control over what goes into it? Thank you to everyone who stopped by to talk about #binaries, build pipelines, and #softwaresupplychain security with the team. And a special thanks to Yashaswi Mudumbai for a packed session on "What you ship is no longer just code." Missed catching up with us in Delhi? No problem -let's connect here: bit.ly/3UWJWnQ Until the next one 🐸 #EveryOps #DevSecOps
2
486
A huge thank you to our Partners for #swampUP Europe 2026! 🐸 Together we are bringing the best minds in #DevSecOps, #DevGovOps, and AI to Barcelona. We are so glad to have these incredible teams in the swamp with us in October: @AWS @googlecloud @Azure @coderabbitai @Coralogix @SonarSource @chainguard_dev @knowmad_mood @bufbuild @CloudBees @Follow_our_Echo ✨ Are YOU ready to master the #AI surge? Register today: swampup.jfrog.com/europe/ #TrustedIntelligence
5
422
80–90% of modern applications rely on open-source code you didn't write - making dependencies your biggest attack surface. 🤯 Finding vulnerabilities isn't enough; you need automated enforcement that stops risk before production. Master #softwaresupplychain security with our JFrog Xray courses. 👉🏽 Start with "JFrog Xray Overview" for beginners: bit.ly/3TmX2uf Uncover hidden risks across every binary layer with deep recursive scanning, shift-left enforcement, and full SBOM visibility. Links to our other recommended JFrog Xray courses are in the comments below.👇🏼 #DevSecOps #DevGovOps #Cybersecurity
298
☁️🐸 $200 in AWS credits for the 1st 50 teams who go PRO: jfrog.com/cloud-pro JFrog is celebrating International Cloud Day by making it easier than ever to get your #softwaresupplychain in order across every cloud you run. Go Pro today and get one place for every artifact, every model, every build. Fully managed. Always on. This is the last week, so make sure to claim yours today! #CloudDay #AWS #AI
295
Every #developer now manages a team of agents. Which means every developer is now accountable for what those agents pull in and what they push out. Most teams have no governed source of truth for either one. On September 29th, Guy Eshet shows how to give that workforce one: Agent Guard, AI Asset Registries with security scanning, Native Agent Package Resolution, and a network-level Package Traffic Controller. Register here: bit.ly/3UY59hj
1
295
🚨 Anatomy of a Live npm Supply-Chain Campaign: "Equation of Compromise" Threat actors are targeting developers with trojanized math libraries. The payload doesn't run for everyone, it only decrypts when the victim's code solves one specific linear matrix. Read the full teardown of the trigger, payloads, and threat actor infrastructure on our blog: research.jfrog.com/post/equa…
1
20
1
15
2,505