Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Publish standalone CLI option #771

Open
mcandre opened this issue Oct 19, 2024 · 2 comments
Open

Publish standalone CLI option #771

mcandre opened this issue Oct 19, 2024 · 2 comments
Labels
feature request New feature or request

Comments

@mcandre
Copy link

mcandre commented Oct 19, 2024

Is your feature request related to a problem? Please describe.

I want to run X-Ray scans without depending on either Artifactory or GitHub Actions.

Describe the solution you'd like to see

Provide a free Artifactory URL endpoint and default jf CLI to target that.

Describe alternatives you've considered

Snyk

@mcandre mcandre added the feature request New feature or request label Oct 19, 2024
@barbelity
Copy link

Hi @mcandre, thanks for approaching us.

Our security offerings - including Xray, CLI scans, etc - are depending on having an active JFrog subscription.
As of today, all of our available subscriptions that include security capabilities also come with Artifactory.
Therefore, Xray scans cannot happen without having Artifactory in your organization.
Keep in mind that in order to perform security scans you are required to provide the platform URL - mostly for license verification.

Offering Xray without the JFrog Platform is not in our plans.

Please let me know if there's something else I can help with.

@mcandre
Copy link
Author

mcandre commented Oct 21, 2024

A significant amount of software components, including components used as dependencies in proprietary projects, are FOSS. Free tiers of more security analysis tools for FOSS projects would dramatically improve the security posture of the software industry as a whole.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature request New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants