JFrog DevOps
Trusted71/100Manage JFrog Artifactory repositories, artifacts, Docker registry, ML models (JFrog ML / AI Catalog), build info, and Xray security scanning (with SPDX / CycloneDX / VEX SBOMs) for DevOps and MLOps workflows. Use when user asks about JFrog, Artifactory, Xray, Curation, Frogbot, AI Catalog, artifact management, Hugging Face / MLflow model registry, Docker registry, build promotion, vulnerability scanning, SBOM generation, OIDC with GitHub Actions, or DevOps artifact pipeline. Covers REST API operations, JFrog CLI 2.103+ usage, and security scanning patterns. Do NOT use for general Docker or CI/CD questions unrelated to JFrog.
Trust score 71/100 (Trusted) · 27+ installs · 4 GitHub contributors · MIT license
Managing software packages and securing the supply chain has become a central DevOps challenge. JFrog Artifactory and Xray are powerful tools, but their configuration is complex and requires deep expertise. Between setting up repositories, managing permissions, running security scans, and analyzing results, DevOps teams spend significant time on routine maintenance instead of improving processes.
How to use this skill
Not sure how? Read the guide- 1. Click "Download ZIP" to download the skill files.
- 2. Open Claude Desktop and go to Customize > Skills.
- 3. Click "+" and select "Upload a skill", then upload the ZIP file.
- 4. Start a new conversation. The skill will activate automatically when relevant.
Developers? Install via command line (CLI)
npx skills-il add skills-il/developer-tools@v1.2.0-jfrog-devops --skill jfrog-devops -a claude-codeWhen to Apply
- When managing Artifactory repositories (local, remote, virtual)
- When integrating JFrog CLI into CI/CD pipelines (Jenkins, GitHub Actions, GitLab)
- When running Xray security scans on builds or Docker images
- When configuring JFrog as a Docker registry proxy
- When promoting artifacts across environments (dev to staging to prod)
Try These Prompts
I want to set up JFrog Artifactory On-Prem for a Node.js project. What are the initial configuration steps and how do I set up a virtual repository?
I have added JFrog Xray to my CI pipeline. How do I configure a policy that blocks the build if there is a critical CVE in any dependency?
I have several teams that need different access levels in Artifactory. What is the correct way to manage Groups and Permission Templates?
Frequently Asked Questions
Changelog
Add JFrog ML (March 2025, from Qwak 230M USD acquisition June 2024) + AI Catalog (Sept 2025) for ML model management. Hugging Face migration June 2026: legacy HF repo type to new Machine Learning layout (Artifactory 7.111.1+, one-way). JFrog Pipelines EOL May 1 2026 (migrate to GitHub Actions + JFrog CLI). JFrog CLI 2.103.0 (April 29 2026) with Conan V2 + uv. Xray SBOM first-class: SPDX, CycloneDX, VEX, CBOM. OIDC recommended for GitHub Actions.
May 20, 2026
Stripped em dashes from the scripts and corrected the English display name.
May 14, 2026
JFrog Pipelines EOL warning (May 1, 2026), API key deprecation note, OIDC for CI, softened il-central-1 region claim.
Apr 25, 2026
Related Skills
Build and configure Make.com scenarios for Israeli business processes, including Morning (formerly Green Invoice) sync, iCount accounting, Monday.com board automation, Priority ERP data exports, WhatsApp Business messaging, and payment gateways (Cardcom, Tranzila, Grow, Bit). Covers Make.com AI Agents, the Make.com MCP server for exposing scenarios as agent tools, Israel 2026 Invoice Reform, community modules for Israeli apps, Hebrew data transformations, Data Store for VAT period tracking, and Shabbat-aware scheduling. Do NOT use for n8n workflows (use n8n-hebrew-workflows) or Zapier Zaps (use zapier-israeli-integrations).
Convert between Hebrew (Jewish) calendar and Gregorian dates, look up Israeli holidays, format dual dates for Israeli documents, and calculate Israeli business days. Use when user asks about Hebrew dates, "luach ivri", Jewish calendar, Israeli holidays, "chagim", Shabbat times, or needs dual-date formatting for Israeli forms. Do NOT use for Islamic Hijri calendar or non-Israeli holiday calendars.
Benchmark and compare LLMs on Hebrew reasoning, comprehension, sentiment, translation, and Israeli cultural knowledge. Wraps the HuggingFace Open Hebrew LLM Leaderboard tasks (HeQ, HebrewSentiment, Hebrew Winograd, translation) plus DictaLM 3.0 benchmark tasks (Summarization, Nikud, Israeli Trivia) into a reproducible evaluation harness. Runs evals against Claude, GPT, Gemini, AI21 Jamba, DictaLM, Llama, and local HuggingFace models. Produces comparison scorecards in JSON and markdown. Use when choosing an LLM for a Hebrew product, answering procurement questions about Hebrew performance, validating a fine-tuned Hebrew model, or tracking Hebrew regressions after a model upgrade. Do NOT use for Arabic NLP, ASR benchmarking, or general English benchmarks.
Use at your own risk. Terms of Use · Security
Want to build your own skill? Try the Skill Creator · Submit a Skill