SAN FRANCISCO and
April 3, 2013 /PRNewswire/ -- Black Duck Software, the trusted partner for open source software adoption, management and governance, and
JFrog, creator of the Artifactory Repository Management Solution, today announced a partnership under which JFrog Artifactory Pro is integrated with Black Duck Suite, providing unprecedented levels of control, efficiency and visibility throughout the development lifecycle when using open source components.
JFrog's Artifactory is an advanced repository manager that helps development teams gain significant efficiencies in both the build process and in acquiring reliable open source components. The Black Duck Suite automates open source approvals, governance and compliance across the development lifecycle.
The integration between the two products offers developers an automated, non-invasive approach to the open source component approval
s process, in addition to proactively monitoring for security vulnerabilities that may be associated with specific binary components. License, security vulnerability and approval status, amongst other data, is pulled from the Black Duck Knowledgebase and delivered through Artifactory Pro, helping developers make the best component choice during the open source selection process. The broader integrated solution supports all programming languages, provides governance for both open source and 3
rd-party source and binaries, and scales beyond language-specific repository management approaches to meet the needs of global, distributed enterprises.
"Our solutions were designed from the start to support all languages, binaries and source code," said
, President, Black Duck. "By partnering with JFrog and integrating JFrog Artifactory with the Black Duck Suite, we provide a complete open source management solution that covers OSS components and artifacts of all languages and sizes, from snippets to binaries. No other solution offers comparable scalability, simplicity of use and comprehensive code governance. Customers can have confidence that only approved components are being used, meeting the needs of today's global, distributed enterprises."
"JFrog's suite of services provides developers with a user experience second to none, and this partnership only enhances that. An Artifactory developer-centered partnership empowered by the Black Duck KnowledgeBase is a knockout combo," said
Shlomi Ben Haim
, JFrog CEO. "Developers now receive 3
party license, scanning and security vulnerability information through Artifactory during build time. This solution can be hosted locally and turns the development, release and Continuous-Integration flows into a much more efficient process. Developers can finally get managers off their backs and nothing makes us more excited! We look forward to continued collaboration with Black Duck, and will keep enriching our users with more features that promote their efficiency seamlessly."
According to Gartner Research Vice President
, "As the use of open source binaries continues to accelerate within the enterprise, repository management solutions are becoming a core element in the devops infrastructure helping with standardization, efficiency and reliability. Integrating open source governance within this important entry point for open source components provides visibility and helps manage risk, including both IP and potential security vulnerabilities."
JFrog is the first and only vendor that provides OSS, commercial and cloud-based repository management with dedicated integration with the world's leading build tools and continuous integration servers. With more than one million users worldwide, Artifactory reached 15,000+ installed servers in 2012 and over 10,000 downloads per month. Customers include Netflix, Twitter, Oracle, EMC, Apple, LinkedIn and many more.