Hardened images tab for configuring upstreams
The new Hardened images tab lets you proxy and cache hardened, minimal container images without manual format/URL entry…
You can now apply cooldown policies to Maven packages, protecting your supply chain from newly published versions that may carry malware or have not yet undergone sufficient community scrutiny.
You can create cooldown policies via the Cloudsmith API, Terraform provider, and web app.
This feature is available in Early Access for Ultra and Enterprise customers.
Cooldown policies are now supported for npm, Python, Go, Maven, and NuGet. For more information about using cooldown policies, see our documentation.
The new Hardened images tab lets you proxy and cache hardened, minimal container images without manual format/URL entry…
You can now apply cooldown policies to NuGet packages, protecting your supply chain from newly published versions that may carry malware or have not yet undergone sufficient community scrutiny…
Cloudsmith has joined the GitHub secret scanning partner program. This integration helps prevent unauthorized use of your API keys by automatically detecting exposed keys before they can be exploited…
We’ve added support for PEP-658, allowing Python package clients to fetch only metadata from the Simple API during dependency resolution…
You can now apply cooldown policies to Go packages, protecting your supply chain from newly published versions that may carry malware or have not yet undergone sufficient community scrutiny…
Cloudsmith now handles authentication for Docker Hub and Docker Hardened Images (DHI) upstreams using a managed token, removing the need to supply your own credentials during setup. Authenticated requests receive a higher rate limit than anonymous access…