Skip to content
JFrog App for GitHub logo

JFrog App for GitHub

App
The JFrog GitHub App automates repo setup, scanning & security to boost velocity with enterprise-grade compliance in GitHub
306 installs

Verified

GitHub has verified the publisher's identity, ownership of their domain, and compliance with other requirements.

Pricing

Free plan available.

Select a tab navigation

The JFrog GitHub App brings powerful automation to your GitHub setup and workflows by automatically connecting your GitHub repositories to the JFrog Platform. It enables a scalable setup, advanced vulnerability scanning for both source code and binaries, with a unified view, all within GitHub.
With centralized OIDC configuration, automated Frogbot deployment, and integration with GitHub Advanced Security (GHAS), teams can boost velocity while maintaining enterprise-grade security and compliance.

Capabilities

- Organization-Level OIDC Integration and Token Management
Provides centralized organization-level OpenID Connect (OIDC) configuration, enabling secure, consistent authentication across repositories while enforcing token configurations that comply with organizational security policies.
- Bulk Frogbot Installation for Source Code Scanning
Automate the large-scale deployment of Frogbot across multiple repositories to enable consistent source code scanning with minimal manual effort.
- JFrog Advanced Security Binary Scanning Integration
Automatically imports binary scan results from JFrog Advanced Security into GitHub Advanced Security (GHAS) for Software Composition Analysis (SCA), Secrets detection, and Infrastructure as Code (IaC) security vulnerabilities.

Benefits

- Simplified Setup
Configure security scanning and authentication once at the organizational level to avoid repetitive setup per repository.
- Time Savings
Reduce manual workload and speed up onboarding with bulk installation and automated scanning.
- Improved Security Coverage
Get comprehensive scanning of both source code and binaries, increasing detection and remediation of vulnerabilities across your projects.
- Streamlined Vulnerability Management
View all security findings directly in GitHub’s code security dashboard for easier prioritization and remediation without switching tools.
- Compliance Confidence
Ensure your security tokens and scanning configurations meet standards, reducing risk.

Getting Started

Don't have a JFrog account? Sign up: https://jfrog.com/start-free/github/

JFrog App for GitHub screenshot

Plans and pricing

Free
$0

Next: Confirm your installation location

JFrog App for GitHub is provided by a third-party and is governed by separate privacy policy and support documentation

About

The JFrog GitHub App automates repo setup, scanning & security to boost velocity with enterprise-grade compliance in GitHub
306 installs

Verified

GitHub has verified the publisher's identity, ownership of their domain, and compliance with other requirements.

Pricing

Free plan available.