Dependency Firewall
Protect your organization from malicious packages
The Cloudsmith Dependency Firewall is a configurable isolation layer that controls what happens to packages downloaded from upstream sources such as npm, Maven Central, etc.
It consists of a set of features that allow you to exercise and implement controls over what packages can be consumed by developers and build processes.
The Cloudsmith Dependency Firewall is composed of the following features:
- Upstream proxy and caching
- Vulnerability Scanning and Policies
- License Scanning and Policies
- Package Deny Rules
- Package Quarantine
See here for more information on how Policy Management works.
Updated about 2 months ago