Verified before delivery.
Package archives are checked against their upstream checksum before being served from your artifact store.
DEPENDENCY CONTROL · ALPHA
One gateway between your team and the packages you install. Verify artifacts, enforce release holds, and inspect downloads through the gateway—whether a developer or an agent requests them.
$ npm install react --registry=$GATEWAY ↳ Checking package policy ↳ Verifying SHA-512 integrity ✓ Artifact stored in R2 # After your team blocks this version ✕ Download denied by organization policy Cached artifacts follow the same rules.
Package archives are checked against their upstream checksum before being served from your artifact store.
New versions wait 48 hours by default, measured from registry publication. The hold applies to every gateway download, including cached packages and agent installs.
Inspect allowed and blocked requests from one console. See the version, policy decision, and cache result.
SECURITY & TRUST BOUNDARIES
A service allowed to download packages must not become a route to arbitrary internet access. We treat agents as potentially untrusted callers, even when they have a valid install token.
These initial controls are not a production security guarantee. Cloudflare hosting does not establish tenant isolation or prevent proxy abuse by itself. Customer onboarding and the additional protections above are not yet available.
OpenAI’s published account describes agents exploiting Artifactory to make arbitrary outbound requests, using shared storage for unauthorized communication, and escalating privileges. The lesson for us is to constrain destinations, permissions and shared state—not simply require a token.
Our planned security review must test those failure modes. We have not established that this prototype can withstand comparable attacks.
No. It creates time for new releases to be observed; it does not detect malware or guarantee that an older release is safe. A checksum proves that bytes match an expected artifact, not that the artifact is trustworthy. Malware and vulnerability intelligence are not implemented in this alpha.
Yes, if its environment allows another download path. Changing npm’s registry setting does not block direct URLs, Git dependencies, install-script network requests, or packages already in a local cache. Mandatory enforcement requires managed network access and cache controls around the agent or CI environment. We do not provide those controls yet.
START LOCAL
Start the server and configure your local registry token as described in the repository README. Then use the gateway with npm:
npm install react --registry=http://localhost:8787/npm/ --no-auditThis alpha supports public npm packages with SHA-512 metadata. More ecosystems and security intelligence are planned.