JFrog Platform integration for Cursor — artifact management, security scanning, and supply-chain best practices powered by the JFrog MCP Server.
| Component | Path | Description |
|---|---|---|
| MCP | plugins/jfrog/mcp.json |
Remote JFrog MCP server (OAuth, no API keys) |
| Skill | plugins/jfrog/skills/jfrog-platform/ |
AI guidance for JFrog Platform operations |
| Rule | plugins/jfrog/rules/jfrog-security.mdc |
Supply-chain security practices for dependency files |
| Agent | plugins/jfrog/agents/supply-chain-security.md |
Dependency audit for CVEs, licenses, and curation |
- A JFrog Cloud (SaaS) subscription.
- An admin enables the JFrog MCP Server on the platform:
- Administration > General > Settings > MCP Server → toggle ON.
- Each developer configures Cursor with their JFrog Platform URL (see Setup).
- Install the plugin in Cursor.
- Set the
JFROG_PLATFORM_URLenvironment variable to your JFrog instance (e.g.mycompany.jfrog.io). - Restart Cursor. An OAuth window opens in your browser — authorize access.
No tokens or API keys are required. Authentication is handled via OAuth.
node scripts/validate-template.mjs