-
What is JFrog Curation? 0 hr 3 min
-
Setting up JFrog Curation 0 hr 10 min
-
Curation policies 0 hr 10 min
-
Tips & Best Practices for Successful Implementation 0 hr 8 min
-
Up for a quick knowledge check? 0 hr 3 min
-
Share Your Feedback
Getting started with JFrog Curation
Course 1 of 2 in JFrog Curation for Administrators and Security Managers
Learn how to set up and roll out the JFrog Curation service in your platform to boost adoption and maximize efficiency.
Course Level: Beginner
Requirements: A foundational understanding of DevOps practices and software supply chain concepts.
Prerequisites: None. Familiarity with JFrog Artifactory or package management is helpful but not required.
Course Description: Most organisations don't know what open-source packages are entering their builds — until a malicious or vulnerable dependency causes an incident. This course provides a practical introduction to JFrog Curation: how it works, how to activate it, and how to configure policies that control what enters your software supply chain before it ever reaches your developers.
Topics Covered:
Requirements: A foundational understanding of DevOps practices and software supply chain concepts.
Prerequisites: None. Familiarity with JFrog Artifactory or package management is helpful but not required.
Course Description: Most organisations don't know what open-source packages are entering their builds — until a malicious or vulnerable dependency causes an incident. This course provides a practical introduction to JFrog Curation: how it works, how to activate it, and how to configure policies that control what enters your software supply chain before it ever reaches your developers.
Topics Covered:
- JFrog Curation Overview: What the service does, where it sits in your supply chain, and the value it delivers to security and DevOps teams.
- Activation and Initial Setup: Enabling the Curation service in your JFrog Platform environment for the first time.
- Creating Curation Policies: Defining rules to allow, block, or flag open-source packages based on security, licence, and operational criteria.
- Dry Runs: Testing policies in simulation mode before activation to validate behaviour and prevent unintended disruption to developer workflows.
- Best Practices: Configuration tips and operational strategies to ensure your Curation service scales reliably as your organisation grows.
Recommended next step: Take Administering JFrog Curation to go deeper on day-to-day management of the service.