Artifact Firewall - Pro (50 users)
Varnish Software AB · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Modern software delivery has fundamentally changed. Today's engineering organizations pull thousands of packages automatically, across dozens of CI/CD pipelines, running continuously across distributed Kubernetes clusters and GPU-driven AI environments. The velocity that makes this possible is also what makes it dangerous. Supply chain attacks have grown in both frequency and sophistication, not because attackers have become more sophisticated, but because they have learned to exploit the trust and automation that modern development depends on. A compromised package published to a public registry can propagate into hundreds of production environments within minutes, before any human has had a chance to review it. Varnish Artifact Firewall is built for this environment. It is a dedicated runtime security layer that sits in the artifact request path and evaluates every dependency before it enters your infrastructure whether that request originates from a developer workstation, a CI/CD pipeline, a Kubernetes cluster, or an AI training job. Unlike traditional repository-based scanners that evaluate artifacts after ingestion, Varnish Artifact Firewall enforces security policy at the moment of request, before known vulnerable or non-compliant artifacts are allowed to propagate. Newly published and unknown threats can be held in quarantine long enough for the community to flag malicious uploads. It can also be deployed alongside Varnish Virtual Registry, to combine policy enforcement with high-performance artifact caching and routing to dramatically reduce artifact latency and dependency resolution time.
Highlights
Highlighted by the publisher on AWS Marketplace.
Secure the platform: Enforce runtime security across your entire software supply chain: block known vulnerable or compromised packages, quarantine newly published versions until they can be reviewed, and prevent dependency confusion attacks, governing every artifact request before it reaches your environment.
Vendor-neutral by design: Varnish Artifact Firewall sits in front of the registries and repository managers you already run, with no lock-in to a backend platform and no changes to developer workflow. Secure your entire software supply chain, regardless of your existing architecture and vendors.
Policy as code, zero-risk rollout: Manage dependency policy as declarative YAML rulesets, versioned and distributed through Git. Prebuilt OSV.dev rules give you a maintained baseline to extend with your own policies, and rulesets reload at runtime without service interruption. Start in report mode to see exactly what would have been blocked before enforcing anything, then deploy as a Docker image, Helm chart, or Linux package.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Plans and pricing as listed
1 listed- Units
Refund terms
As stated by the publisher on AWS Marketplace.
All fees are non-cancellable and non-refundable except as required by law.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

