We adopted Cloudsmith as a modern, cloud‑native replacement for Artifactory to improve our software supply‑chain posture through mandatory authentication, fine‑grained access control, policy enforcement, and strong CI/CD integration. Our teams really value its broad support for package types (npm, NuGet, Docker, PyPI, raw binaries) and its ability to consolidate ingress mirroring, internal artifacts, and external distribution into a single platform, reducing fragmentation and bespoke solutions. The team at Cloudsmith has also been an incredible partner, working very closely with us on our migration as well as new features needed to meet our use cases.
I like that Cloudsmith offers excellent customer support, they are very hands-on, easy to get hold of and respond quickly. Good performance for everyone wherever they are located, which is great. Cloudsmith allows us to effectively manage our security posture, including defining policies for handling malicious packages, open source licensing and more.
I highly appreciate Cloudsmith for its simplicity and comprehensive support for all artifact types, including Docker, PyPI, npm, and even raw files, which eliminates the need to juggle multiple registries and thereby reduces complexity and increases efficiency. The platform's cloud-native, fully managed nature functions as a centralized hub for securing, controlling, and distributing software assets globally. Moreover, Cloudsmith's built-in security features, such as automatic vulnerability scanning, license checks, and policy enforcement, impressively eliminate the need for additional tools, ensuring robust protection against supply-chain security risks. I am also highly satisfied with the universal format support provided by Cloudsmith, accommodating over 30 different formats, simplifying artifact management, and improving visibility by consolidating scattered artifacts into a single, easy-to-access repository. The CDN-backed delivery network augments this by ensuring speedy and reliable access to artifacts on a global scale. Overall, Cloudsmith addresses fragmented artifact management issues by offering an integrated solution that greatly enhances the modern software delivery and DevOps processes.
Cloudsmith is the modern artifact management and software supply chain security platform. Companies use Cloudsmith to control and secure binary packages that move through the software supply chain, enforcing policies, monitoring risks, and blocking unwanted packages. As AI accelerates development and amplifies supply chain risk; Cloudsmith is the control layer software teams need to move fast with full visibility and control.
With over 3 million reviews, we can provide the specific details that help you make an informed software buying decision for your business. Finding the right product is important, let us help.
Your software and services insights are valuable.
Your peers come to G2 to get an inside look at and other business solutions. Adding perspective on will help others pick the right solution based on real user experience.