Get a more granular view of incident impact with Cloudsmith’s reorganized Status Page
When Cloudsmith services experience an incident, we want you to know exactly how it impacts your builds, your deployments, and your teams. We’ve given the Cloudsmith Status Page an overhaul to provide a more granular and organized view of system health from our customers’ perspective…
Native OIDC authentication for Azure DevOps
We have updated the Cloudsmith Azure DevOps extension to support native Azure DevOps OIDC authentication. You can now authenticate pipelines using the Azure DevOps built-in issuer…
Improvements to package status indicator in the web app
We've improved how package statuses are displayed and managed across the Cloudsmith web app to help you quickly understand if a package or container is available, safe, and compliant…
Automate repository cleanup based on last download date
We’ve added a last_downloaded field to packages in Cloudsmith, extending search-based package retention rules to enable cleanup of unused packages. This feature allows you to create retention rules that automatically clean up packages in your repository based on usage, rather than just age or count, ensuring you retain only actively used packages…
Explore vulnerability details to better assess impact
You can now better assess a vulnerability's impact by exploring its key details directly within the vulnerabilities table for a package or container. We've introduced an expanded row layout that shows all available information for a specific finding, helping you make more informed decisions about your response.
Additionally, we’ve added CVSS score…
Recent improvements to the Cloudsmith web app
We’ve recently released a set of improvements across the Cloudsmith web app focused on logs, error messaging, and usability…
Improved Docker experience in the Cloudsmith web app
We’ve improved how Docker images are displayed and navigated in the web app, making it easier to work with tags, architectures and metadata to quickly find what you need…
Verify and inspect Docker images
Cloudsmith now displays Docker image signatures and SBOMs (Software Bill of Materials) directly in the web app, giving you greater trust and visibility into the images you use…
Filter CVEs by severity in the package vulnerability view
You can now filter vulnerabilities by Common Vulnerabilities and Exposures (CVE) severity in the package vulnerability view, using the quick filter selectors…
Faster access to Client Logs
We've reduced the delay between a download event and its appearance in Client Logs, giving you faster visibility into your package delivery pipeline. This makes it easier to analyze trends, troubleshoot issues, and keep your workflows moving…