DevSecOps in the AI Era: JFrog Powers Agentic Remediation with Self-Healing Software Supply Chain
New
This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250909861213/en/

New JFrog Platform MCP connections with GitHub Copilot deliver autonomous security resolution capabilities directly into developer workflows
“We want to help developers shift from reactive security to proactive, continuous vulnerability management and autonomous remediation, wherein security is no longer an afterthought, it's an integral, agentic-coding problem solver,” said
Developer Intelligence with Agentic Security Remediation
By combining the power of JFrog’s Software Supply Chain Security with the GitHub integration, organizations enjoy streamlined, fast and trusted remediation that ensures they can:
- Safeguard against unsafe packages: JFrog Curation and Catalog, powered by AI agents via JFrog’s MCP server, enables developers to select secure, policy-compliant open-source packages, avoiding failed builds, boosting developer productivity, and reducing risk.
- Flag and fix vulnerable code automatically: JFrog flags insecure code directly in the IDE, and with agentic remediation powered by MCP server connections to GitHub Copilot, developers receive conversational, contextual suggested fixes inline.
-
Immunize code for future development using context-aware insights: Developers can quickly tap into
JFrog Security Research expertise when vulnerabilities are flagged in dependencies to determine the threat level based on their environment. Because fixes are generated in the context of the organization’s security and governance policies, Copilot not only patches the issue, but also immunizes their software from future use of the same infected code.
Uniting JFrog’s Curation and Catalog capabilities with its deep security research, MCP-based platform connectivity, and GitHub integration with Copilot AI assistant, transforms how developers address vulnerabilities: not just finding them, but fixing them instantly and continuously as part of a self-healing software supply chain.
JFrog’s new agentic remediation capabilities are available immediately as part of JFrog Ultimate or Unified security bundles. For more information on agentic remediation and its benefits read this blog.
Like this Story? Share this on X: @jfrog introduces Agentic Remediation: AI that understands your code, detects security issues, and suggests fixes. Built on our secure #SoftwareSupplyChain platform with GitHub integration, this tool makes secure development faster and easier for all. Learn more: http://bit.ly/3K9QRVa #DevOps #DevSecOps #cybersecurity #AppSec
About JFrog
Cautionary Note About Forward-Looking Statements
This press release contains “forward-looking” statements, as that term is defined under the
These forward-looking statements are based on our current assumptions, expectations and beliefs and are subject to substantial risks, uncertainties, assumptions and changes in circumstances that may cause JFrog’s actual results, performance or achievements to differ materially from those expressed or implied in any forward-looking statement. There are a significant number of factors that could cause actual results, performance or achievements to differ materially from statements made in this press release, including but not limited to risks detailed in our filings with the
View source version on businesswire.com: https://www.businesswire.com/news/home/20250909861213/en/
Media Contact:
Investor Contact:
Source: