Skip to content

Confidentiality of Data

As per the Information Security Standard JFrog has a CIA (Confidentiality-Integrity-Availability) classification of 2-3-3. Users of the JFrog Platform are expected to be aware of this and only store contents that are appropriate as per the classification. For example,

  • Anything classified as Secret must not be stored.
  • No passwords, tokens, or keys should be stored.
  • Any PII (Personally Identifiable Information) data must not be stored. The definition of PII data varies across countries. Teams residing in EU countries should familiarize themselves with the GDPR.

These examples are not exclusive, view policy portal to learn what is permitted in a particular classification.

Brought to you by DevTools and Enablement Team.