The trust layer for the AI software supply chain
JFrog is the system of record for every binary an organization produces or consumes โ packages, container images, ML models, MCP servers, and agent skills โ each carrying cryptographic proof of lineage, compliance, and provenance, from the developer's commit to production runtime. Stated ambition: the model registry of the world by 2030, with AI agents as a primary persona.
Understand the Platform
Map every JFrog product, its core capabilities, and where AI changes the game. The system of record for binaries โ code, images, models, and agents.
Watch the Market
An agentic pipeline that scouts the internet for competitors and emerging trends (ืืืืืช) in the AI software supply chain โ and reports what's real vs. hype.
Four pillars, one supply chain
Universal, language-agnostic binary repository (Artifactory).
Scan, gate, and govern everything entering and leaving (Xray, Curation, Advanced Security).
Evidence-backed releases pushed to edges and runtimes (AppTrust, Distribution, Runtime).
Govern models, MCP servers, and agent skills as first-class artifacts (JFrog ML, AI Catalog, MCP/Agent registries).
Why this exists
The CTO AI Lab role has two modes โ Build (work across the platform) and Scout (be the antenna for new AI frameworks, supply-chain attacks, and trends). This site is a working prototype of both: a curated product-intelligence view, and a live agentic scouting pipeline. It's deliberately a starting point โ the point is the approach, the data plumbing, and the agents behind it.