Cloudsmith Blog

Featured
Supply chain security
5 min read

Securing LLM dependencies against serialisation attacks

At the time of writing, there are over 2.5 million models hosted on Hugging Face. While this democratisation of AI is changing how all work and develop with AI, it also introduces a massive supply cha…
Supply chain security
5 min read

Securing AI-generated code with Cloudsmith

Cloudsmith establishes a rigorous verification framework to protect software pipelines from risks like slopsquatting and hallucinations found in AI-assisted development. This approach utilizes policy-as-code and automated gates to ensure only authorized dependencies enter your production environment…
Supply chain security
6 min read

From ingredient list to control point: SBOM-based component-level security 

Move beyond basic transparency by transforming Software Bills of Materials into active security policies that block vulnerable components. Discover how use Cloudsmith to enforce granular policies across your software supply chain to stop risks before they reach production…
Keep up to date with our monthly newsletter

By submitting this form, you agree to our privacy policy