Create a private repository, for any software asset
Cloudsmith provides a single control point for your entire software supply chain. While we support more than 30 native formats, modern pipelines often rely on assets that fall outside standard ecosystems, like vendor installers, release binaries, or custom scripts. We provide two purpose-built ways to bring these assets under the same security and visibility as the rest of your software.
Govern external dependencies
Proxy and cache external artifacts with Generic repositories. Generic repositories are built for secure upstream ingestion. They allow Cloudsmith to fetch and manage artifacts from external HTTP or HTTPS sources, bringing them into your controlled environment.
Mirror GitHub releases
Bring external ecosystem assets into your private supply chain.
Stable internal endpoints
Keep your pipelines running even when upstream content evolves or becomes unavailable.
Unified visibility
Apply the same access controls and audit logs to external binaries as you do for native packages.
Distribute custom assets
Direct upload and controlled distribution with Raw repositories. Raw repositories give you a secure way to publish and manage artifacts that you control directly, without the overhead of maintaining custom registries.
Streamline distribution
Upload and deliver custom binaries, installers, or datasets to teams and partners.
Enforce compliance
Gate downloads behind EULA acceptance to ensure legal and security alignment.
Cloud-native resilience
Leverage Cloudsmith’s built-in multi-region architecture to serve assets from the nearest edge location automatically.
Docs and support
We're here to help you get started with Raw and Generic Artifacts on Cloudsmith
Raw files
Treat any raw file extension with the same care that code artifacts enjoy in Cloudsmith—including document artifacts, images, data files, and more.- workflow automation
- access controls
- versioning control
- monitoring

Multi-format repositories
Organize repos by team, project, or environment, and have a centralized source for visibility, access, and reporting.
Your artifacts, your structure
Organize repos by team, project, or environment, and have a centralized source for visibility, access, and reporting.