AI agents can bypass the pipeline. JFrog wants to control the exit
India, Aug. 30 -- For years, enterprises have been tightening security around the software development pipeline: scanning dependencies, approving open-source components, securing CI/CD workflows and maintaining trusted repositories.
AI coding agents are complicating that model.
Tools capable of writing and executing code can also install libraries, pull dependencies and interact directly with public package registries. That creates an awkward security question: what happens when the development pipeline is governed, but the software entering a developer's machine never passes through it?
JFrog is attempting to close that gap by moving some of its software supply chain controls further out - to the network edge.
The company has introdu...
Click here to read full article from source
इस लेख के रीप्रिंट को खरीदने या इस प्रकाशन का पूरा फ़ीड प्राप्त करने के लिए, कृपया
हमे संपर्क करें.