Vendor hubTier prices publishedTechBag Intel Hub

JFrog

The repository every build reads from and writes to— with scanning, applicability and curation on top of what it already stores. This hub is your complete intel file.

4 intel pages insideGartner Leader, SSCS 2026Mumbai & Pune SaaS regions

Buy through TechBag

Same software. Better outcome — at a lower cost.

Right-fit discoveryBest price & discountsImplementation & rolloutRenewals & licence mgmtTier-1 support desk
Book a discovery call →

Free · 15 minutes

Trusted by 500+ enterprises across India

The company, at a glance

Founded2008 · Israel
ListedNASDAQ: FROG · CEO Shlomi Ben Haim
Scale$531.8M revenue · FY2025
RecognitionGartner SSCS Leader 2026
IndiaBengaluru R&D; Mumbai + Pune regions

Quick answer

JFrog (founded in Israel in 2008; US headquarters in Sunnyvale; NASDAQ: FROG) sells the software supply chain platform built on Artifactory — the repository that stores every binary, package, container and AI model a company builds or pulls in. Xray scans what flows through it, Advanced Security adds applicability, secrets and SAST, and Curation blocks risky packages before they arrive. A Leader in Gartner’s first Magic Quadrant for Software Supply Chain Security (2026). Tier prices are published. Read more ↓ Show less ↑
The portfolio

Four intel pages. One repository underneath.

The JFrog platform, product by product — every linked card is a full intel page, from the repository to the controls that decide what gets into it.

JFrog sells across 4 of the products TechBag carries in DevOps. The DevOps guide shows how the category splits and which part is yours. →

The thesis

Why “the repository” is the whole story

Scanners that read source code miss what actually ships: the container, the binary, the model pulled in at build time. JFrog bet on the repository every build already passes through— so scanning, applicability and curation act on the artifacts themselves, and the first Gartner Magic Quadrant for Software Supply Chain Security named it a Leader.

01
One source of truth

Artifactory

Every artifact and its metadata in one place, local or proxied — the record that scanning, curation and release all read from.

02
One scan index

Xray

Scans run where the artifacts live, so a new CVE is matched against everything already stored, not just the next build.

03
One component database

Catalog

JFrog’s component intelligence behind Curation and security — not sold alone, but it is what both decisions draw on.

04
One contract

Tiers

Pro, Enterprise X and Enterprise+, SaaS or self-managed. Security, curation and MLOps attach as add-ons or bundles.

Start with Artifactory; Xray, Advanced Security and Curation all act on what it already stores.

The trophy wall

Peer & market recognition

Every claim on this hub traces to one of these public signals.

Gartner 2026

Leader — Software Supply Chain Security

the first edition of this Magic Quadrant

FY2025

$531.8M revenue

+24%; cloud revenue +45%

Q2 2026

$163.8M quarter

+29%; 97 customers above $1M a year

Fortune 100

~83% are customers

per JFrog’s 2025 annual report

Listed

NASDAQ: FROG

results filed with the SEC

India

Bengaluru R&D

R&D is primarily in Israel and India

By the numbers

The company in six figures

2026
Leader in Gartner’s first Magic Quadrant for Software Supply Chain Security
— Gartner
$531M revenue
fiscal 2025, up 24% year on year
— SEC filing
~6,600
customer organisations at the end of 2025
— 10-K
60+ types
package and artifact types in one repository
— Vendor
~83%
of the Fortune 100 are customers
— 10-K
2008
incorporated in Israel
— 10-K

See the platform, hear the pitch

JFrog (official)·Overview

The JFrog Software Supply Chain Platform

The platform in one sitting.

JFrog (official)·Platform

Control. Shift. Deliver. Take Command of your Software Supply Chain

How the pieces fit together.

JFrog (official)·Customer

SAS Enhances Security and Compliance with the JFrog Platform

An enterprise software maker at scale.

The market maps

Where JFrog sits — the grids

Two company-level views you won’t find on any vendor site — tap any dot for the rationale. The category-level grid lives on the product page.

Grid 01 · The portfolio

JFrog Across Its Solution Areas

Each dot is a JFrog solution area: competitive position vs category momentum.

Emerging betsCrown jewelsSteady nicheAnchor strengths
Artifact managementJFrog

The core: 60+ types, SaaS or self-managed.

Grid 02 · The industry

Repository Depth × Supply-Chain Controls

How deep the repository is (formats, deployment, scale) vs how much supply-chain control sits on top of it.

Security around the code hostRepository plus controlsCloud-native basicsRepository first
JFrogJFrog

Repository plus scanning, curation and release in one platform.

Positions are TechBag’s illustrative synthesis of public review-platform standings and vendor documentation — not a reproduction of any analyst graphic. Verify before relying on it.

Track 01 · Beginner guides

New to this? Learn it properly.

Zero-jargon starting points, in reading order. Each links into the deep education on the product page.

Interactive · 30 seconds

Where should you start with JFrog?

Answer three questions; we’ll point you at the right starting product. No email required — this isn’t that kind of quiz.

1. What is forcing the decision?

2. Who is asking for it?

3. What do you already run?

The acronym decoder

Every term on these pages, in one place
JFrog
Software supply chain company, incorporated in Israel (2008); Sunnyvale HQ; NASDAQ: FROG.
Artifact
Anything a build produces or consumes: a package, a container image, a binary, a model.
Artifactory
JFrog’s repository for 60+ package and artifact types, local or proxied.
Remote repository
A cached proxy of a public registry such as npm or Maven Central.
SCA
Software composition analysis: finding vulnerable or unlicensed open-source components.
SBOM
Software bill of materials — the list of every component inside a build.
Xray
JFrog’s SCA engine, scanning artifacts where they are stored.
Contextual analysis
Checking whether a CVE’s vulnerable code is actually reachable in your app.
Curation
JFrog’s add-on that blocks risky packages at the moment they are requested.
Contributing developer
The unit Advanced Security is licensed by: people committing to scanned code.
Release bundle
An immutable, signed set of artifacts pushed out through JFrog Distribution.
Magic Quadrant
Gartner’s vendor research; JFrog is a Leader in Software Supply Chain Security 2026.
Track 02 · Buying guides

Buy it like you’ve done this before

The procurement playbook TechBag runs with IT buyers — steps, licensing cheat-sheet, and the pitfalls that cost quarters.

01

Measure consumption before tiers

SaaS bills storage plus transfer above an allowance: 25 GB a month on Pro, 125 GB on Enterprise X. Measure a month of real pulls first.

02

Decide where scanning starts

Xray is not in SaaS Pro. If you need SCA, compare Enterprise X — or self-managed Pro X — rather than Pro plus a separate scanner.

03

Count contributing developers

Advanced Security is licensed per contributing developer, with 50 included on Enterprise X. Count committers, not everyone with access.

04

Choose SaaS or self-managed

Self-managed Pro X starts at $27,000 a year for one server. SaaS removes the operations work; self-managed keeps storage on your own hardware.

05

Get storage in writing

JFrog’s status page lists Mumbai and Pune regions. A region is not a storage commitment — under DPDP or RBI rules, put it in the contract.

06

Price add-ons together

Advanced Security, Curation and AI Catalog are quoted, alone or in bundles. TechBag models the mix and quotes in INR with GST.

The licensing cheat-sheet

ProductLicensing modelHow you enterBest for
ArtifactoryPlatform tier + consumption$150/mo list (Pro) · $950/mo (Ent X)Repeatable builds
XrayIncluded from a tierSaaS Enterprise X · self-managed Pro XKnow what you ship
Advanced SecurityAdd-on, per contributing devQuote · 50 devs base on Ent XCut the CVE backlog
CurationAdd-onQuote · Enterprise X and upBlock bad packages early

Tiers are priced by consumption above an allowance; the security add-ons are quoted per contributing developer — TechBag measures your usage and quotes in INR with GST.

Five pitfalls that cost buyers quarters

1

Pricing Pro against a scanner

SaaS Pro has no Xray. Comparing Pro plus a separate SCA tool with Enterprise X, which includes it, is the honest comparison.

2

Quoting the promotional price

SaaS Pro lists at $150 a month; a limited-time $50 offer shows no end date. Budget on the list price and treat the offer as a bonus.

3

Ignoring transfer in consumption

The SaaS allowance counts transfer as well as storage. CI that pulls the same images all day can spend it faster than new uploads.

4

Reading a region as residency

Mumbai and Pune are regions you select, not a written storage promise. If DPDP or RBI rules apply, put location in the contract.

5

Scanning without curation

Scanning finds a malicious package after it is stored and possibly run. Curation is the control that stops the first download.

Skip the homework entirely

Bring your requirements and current tool bills — a TechBag advisor models the whole decision for you.

Book a discovery call →
FAQ

Questions buyers ask about JFrog

A software supply chain company incorporated in Israel in 2008, with its US headquarters in Sunnyvale, listed on NASDAQ as FROG and led by co-founder and CEO Shlomi Ben Haim. Its platform is built on Artifactory, with Xray, Advanced Security and Curation on top. Fiscal 2025 revenue was $531.8M, up 24%; about 6,600 organisations are customers.

Ready to shortlist JFrog?

Open any of the four intel pages for the deep dive, or let a TechBag advisor build the case with you — consumption and tier modelling, quotes, trials, GST invoicing and lifecycle support included.

Stats, positions and figures are illustrative syntheses of public materials; verify before purchase.