JFrog Curation identifies high-risk packages and compliance issues

JFrog has announced the introduction of JFrog Curation, an automated DevSecOps solution designed to thoroughly inspect and block contaminated open-source or third-party software packages and their respective dependencies before they enter a company’s software development environment.  JFrog Curation, which is integrated with JFrog Artifactory, uses binary metadata for the identification of high-risk packages with high-severity … continue reading

SD Times Open-Source Project of the Week: DataGradients

Deci, a deep learning company that uses artificial intelligence to develop AI, recently announced the launch of DataGradients. This open-source tool is designed to profile computer vision datasets and find essential insights. In computer vision, the effectiveness of an AI model is deeply connected to the quality of the training data. Therefore, identifying any issues … continue reading

GitHub merge queue now available

GitHub’s merge queue aims to end congestion on a team’s most active branches. According to the company, by enabling merge queue, the need to hurry and merge pull requests before others do is no longer a concern. This feature is now generally available and is accessible to any team that is part of a managed … continue reading

Flatfile announces new data exchange platform

The Flatfile Data Exchange Platform was released as a set of APIs, open-source plugins, and event streams that allow developers to use the building blocks of Flatfile to solve nearly any data exchange problem. The company, Flatfile, was founded in response to the common frustrations associated with handling file imports. The founders experienced the challenges … continue reading

AWS announces Clickstream Analytics for mobile and web applications

With Clickstream Analytics, users can deploy an end-to-end solution on their AWS accounts that can capture, ingest, store, analyze, and visualize their customers’ clickstreams from their web and mobile applications. A clickstream is the path through clicking on hyperlinks that any particular user goes through when visiting a website or app.  Because this data can … continue reading

SD Times Open-Source Project of the Week: GPT Migrate

GPT Migrate enables developers to Easily migrate their codebase from one framework or language to another. GPT-Migrate employs sophisticated natural language processing methods to examine your code and produce code in the desired framework or language that achieves the same functionality. Whether a user intends to transition from React to Vue, Python to Ruby, or … continue reading

AWS and DeepLearning.AI launch course on LLMs

DeepLearning.AI and AWS unveiled a new course called Generative AI with Large Language Models on Coursera.  This hands-on course aims to equip data scientists and engineers with the skills needed to become proficient in utilizing large language models (LLMs) for practical applications. Participants will gain expertise in various aspects, including selecting appropriate models, training them … continue reading

GitHub Enterprise Server 3.9 released with several enhancements to GitHub Projects

GitHub Enterprise Server (GHES) 3.9 is now available with more features that can help organizations collaborate better, gain better observability, and have faster workflows.  Among its highlights are a new time-based view in GitHub Projects, as well as the ability to standardize issues with tools such as issue forms.  GitHub Projects has been enhanced with … continue reading

Mend.io reveals the top three most reliable npm, Maven, and PyPi packages

A new report by Mend.io found the top three most reliable packages for npm, Maven, and PyPi. The top packages for each are: Npm: prettier-eslint np Jest-cli Maven: org.apache.maven.scm:maven-scm-provider-gitexe com.github.ekryd.sortpom:sortpom-maven-plugin Org.apache.maven.plugins:maven-release-plugin PyPi: Pulumi Botocore-stubs types-python-dateutil The report examined data from Renovate, the company’s automated dependency management tool that leverages crowd-sourced data on over 25 million … continue reading

OWASP releases new standard for BOM

The Open Worldwide Application Security Project (OWASP) announced the launch of OWASP CycloneDX version 1.5, a new standard in the Bill of Materials (BOM) domain that specifically targets issues of transparency and compliance within the software industry.  CycloneDX v1.5 goes beyond established standards, by introducing ML transparency (ML-BOM), Formulation (MBOM), and enhanced support for SBOM … continue reading

Fortanix Confidential Data Search released

The confidential cloud computing company Fortanix unveiled Fortanix Confidential Data Search. This high-performance solution allows for secure, scalable searches within encrypted databases holding sensitive data, without jeopardizing the data’s security or violating privacy regulations.  According to the company, presently, the market predominantly offers encrypted data search solutions that rely on intricate and costly cryptographic methods, … continue reading

Eclipse Foundation announces Open VSX Working Group

The Eclipse Foundation revealed the establishment of the Open VSX Working Group. This new group’s mandate is to supervise and expedite the adoption of the Open VSX Registry, a vendor-neutral, community-backed alternative to Microsoft’s Visual Studio Marketplace. Derived from the Eclipse Open VSX open-source initiative, the Open VSX Registry presently houses close to 3,000 extensions … continue reading

« Previous PageNext Page »
DMCA.com Protection Status