Brownout notice: 24-hour brownout for username and password authentication
As part of our transition to more secure authentication methods, we are beginning the 24-hour brownout for username and password authentication for API requests. 🚧
What this means:
From 5 pm EDT September 16th to 5 pm EDT September 17th, API requests using username and password authentication will fail.
This brownout period is designed to help…
New Cargo package limit enforced for Git-based index fetches
To ensure we provide a performant and reliable experience for all Cloudsmith customers, we will implement a repository size limit for index fetches using the Git interface for Cargo. Git-based index fetches will only show the latest 10,000 Cargo packages uploaded to a given repository.
This limit will be effective Friday, August 16th, 2024. 📅
Th…
Cloudsmith is now available on the AWS Marketplace
Great news for Cloudsmith customers who run their own infrastructure on Amazon Web Services (AWS)!
Cloudsmith is now available on the AWS Marketplace, making it easier for you to procure Cloudsmith for your development teams.
This integration brings several benefits for AWS customers, including:
Simplified procurement: AWS Marketplace offers a s…
Launching Today: 🚀 Cloudsmith Navigator
We've got some thrilling news to share! Today, we're introducing the full release of 🎉 Cloudsmith Navigator 🎉- a game-changer in finding and assessing open-source software (OSS) packages and launching today on Product Hunt.
What's Cloudsmith Navigator? Cloudsmith Navigator is our latest free 🆓 tool, designed to transform your experience with OS…
Cloudsmith welcomes new CEO
At Cloudsmith, our mission is to be the world’s software supply chain management platform, acting as a global source of truth. Today marks a pivotal moment in our commitment to this vision.
🌟 Introducing Glenn Weinstein, Cloudsmith's New CEO! 🌟
We believe in always striving for better, and in that spirit, we've welcomed Glenn Weinstein to lead…
Pricing: Building a Better Cloudsmith
Pricing has changed across all paid plans (Free/OSS not affected); however, significant features have been moved down (or added). We did it to build a better Cloudsmith. You may find a better fit at a lower or higher tier, so view your subscription page (you need to be logged in, and an org admin) to see the differences.
We wanted to take the time…
Cloudsmith Not Impacted By CVE-2021-44228 (log4shell/log4j)
On 10th December 2021, a critical severity Remote Code Execution (RCE) exploit disclosure for log4j was published, as CVE-2021-44228, affecting versions below 2.15.0. The vulnerability has been coined as Log4Shell. The log4j framework allows Java developers to log data (incl. user-based) in their applications.
Is Cloudsmith impacted?
In short: No…
Cloudsmith is Officially ISO27001:2013 Certified!
After nearly a year of effort in which we designated 2021 as the “Year of Security,” we’re incredibly proud to announce that we are now ISO27001:2013 certified.
The certification is an incredible achievement by the team at Cloudsmith and excellent news for all of our customers.
What exactly is ISO27001:2013?
ISO27001:2013, also known as ISO27001…
Production In More Global Locations
We’ve added production instances in two new locations: US-WEST-2 (Oregon) and AP-SOUTHEAST-2 (Sydney). These are just the first of many, but together they deliver serious performance improvements for our customers around the globe.
Learn More
Introducing the Changelog
Hello friends! From today, Cloudsmith will be using a new system, entitled the Changelog and powered by Beamer, for delivering the latest and greatest updates straight to your browser!
We wanted something more discoverable than our (deprecated) Release Notes system. Now, you'll be able to stay up-to-date with changes as they happen, right in the c…