GitHub and JFrog have announced a strategic partnership aimed at providing a more seamless integration between their platforms.
This collaboration promises to simplify the management of source code and binaries, enhancing efficiency for developers and their support teams -through "EveryOps."
Comprehensive Integration Features
The integration includes several key features such as traceability of code from source to binary packages across both platforms, single sign-on support, and unified project structures with role mapping.
According to TechCrunch, a future update will introduce a unified dashboard, offering a consolidated view of security scans from both GitHub and JFrog's tools.
Read also: GitHub's New Code-Scanning Autofix: A Game-Changer for Software Development and Cybersecurity
Synergy in the DevOps Space
While both companies operate in the DevOps arena, their focus areas are distinct: GitHub specializes in source code management, while JFrog excels in binary management. This partnership leverages these complementary strengths, benefiting a shared customer base, with about half of JFrog's customers also using GitHub.
Enhancing Developer Experiences
Thomas Dohmke, CEO of GitHub, highlighted the natural synergy between the platforms. He said that they use Artifactory within the two companies when it comes to source code management.
Meanwhile, Shlomi Ben Haim, CEO of JFrog, tackled the company's focus on binaries and related security products. "
"JFrog is the only comprehensive software supply chain platform in the world. Artifactory serves as the single source of record for binaries," he explained.
Addressing Enterprise Needs
Modern enterprises seek to optimize their spending on top-tier solutions that support secure scaling. Ben Haim noted that developers thrive on JFrog and GitHub. This will further provide a smoother workflow for them.
GitHub's Copilot Integration
The partnership also extends to GitHub's AI tool, Copilot. The integration allows developers to use Copilot Chat to ask questions about software packages, secure them, and set up JFrog projects.
Dohmke mentioned that GitHub plans to bring more agent-like functions to Copilot, enhancing its utility across security tools like Sentry, GitHub, and JFrog's Artifactory.
Enhanced Security and Traceability
Customers like AT&T seek seamless navigation between GitHub and JFrog using unified credentials. They also require traceability from source code to binary and back, facilitating quicker issue resolution by identifying the responsible developer.
Simplified Software Supply Chain Security
Mark Carter, CIO and CISO for Vimeo praised the integration. He said that by displaying security findings under the Security tab of GitHub, the integration makes easy work of the software supply chain security.
GitHub and JFrog plan to deepen this integration further. The current solution addresses immediate customer pain points, with more updates expected later this year at JFrog's swampUP conference in September.
This partnership is a win in the DevOps space, promising to deliver enhanced efficiency, security, and traceability for developers and enterprises alike.