JFrog, the Liquid Software company, has expanded its AI governance capabilities with the introduction of Shadow AI Detection within the JFrog Software Supply Chain Platform. Announced at JFrog swampUP Europe, this new capability gives enterprises critical visibility and control over the use of AI models and API services, addressing the growing risks linked to unmonitored and unauthorized AI usage—commonly known as Shadow AI.

“Recognizing and mitigating the risks of shadow AI is becoming a critical priority for CIOs and CISOs who must balance innovation with security,” said Yuval Fernbach, VP and CTO of JFrog ML. “Shadow AI Detection strengthens JFrog’s leadership in securing the AI supply chain end-to-end, helping enterprises adopt AI responsibly and safely.”

Eliminating AI Blind Spots Through Full Transparency

As organizations integrate AI models and services into development workflows, many teams directly adopt tools from providers like OpenAI, Anthropic, or Google without proper oversight. This creates hidden activity that can lead to compliance violations, data leakage, and supply chain vulnerabilities.

JFrog’s Shadow AI Detection automatically uncovers and inventories all internal AI models and external API gateways used across the organization. Once surfaced, these assets can be centrally governed, enabling enterprises to:

  • Enforce consistent security and compliance policies across all AI assets.
  • Provide authorized pathways for accessing third-party AI services with full auditing.
  • Monitor usage of external AI models and APIs, including OpenAI and Google Gemini.

Supporting Emerging Global AI Regulations

The ability to maintain a complete audit trail of AI activity is now essential as new global regulations take effect. JFrog’s Shadow AI Detection helps enterprises align with key frameworks, including:

  • US Transparency in Frontier AI Act
  • EU Cyber Resilience Act
  • EU AI Act
  • Germany’s BSI Guidelines
  • EU NIS2 Directive
  • Guidelines for Securing AI Systems

These regulations focus on responsible AI development, risk management, software component visibility, and securing AI systems from design through deployment. JFrog’s detection capabilities support these requirements by delivering provenance, accountability, and resilience across the AI and software supply chain.

Availability

Shadow AI Detection is available through the JFrog AI Catalog, with general availability planned for 2025. Organizations can learn more about the broader JFrog Software Supply Chain Platform at JFrog.com.

For more insights on AI, IoT, cybersecurity, and emerging tech trends, visit Itech360hub.com.