Agentic Ai at SMBtech

JFrog Launches Agent Skills Registry To Govern AI Agents Running On Nvidia Infrastructure

Surprisingly Useful AI Article Enhancements

JFrog has unveiled a new Agent Skills Registry designed to provide governance and security controls for autonomous AI agents, with Nvidia as its first integration partner.

The announcement, made during Nvidia GTC, positions JFrog’s platform as a trust layer for managing the skills, models, MCP servers and software packages that AI agents rely on to operate.

For enterprises deploying agentic AI at scale, the registry is intended to address growing concerns around lifecycle control, traceability and compliance.

Nvidia integration at the centre

Nvidia CEO, Jensen Huang, announced during GTC that JFrog will power Nvidia NemoClaw, an open-source runtime for long-running AI agents.

The JFrog Agent Skills Registry will support the Nvidia Agent Toolkit, including Nvidia OpenShell, an open-source runtime for building and deploying autonomous, long-running AI agents. JFrog Artifactory will also serve as a registry for AI models and agent skills with Nvidia AI-Q Blueprint, as part of the Nvidia Agent Toolkit.

The two companies worked together to validate a workflow for the ingestion and management of Artifactory as a skills registry, using Nvidia cuOpt as the first example of a packaged skill.

Pat Lee, Vice President of Enterprise Partnerships at Nvidia, outlined the rationale for the partnership.

“Security and governance are key to deploying AI agents in the enterprise,” Lee stated. “JFrog’s Agent Skills Registry for Nvidia OpenShell supports security and control for deploying long-running agents to help scale enterprise productivity with new AI tools.”

Why agent governance matters

As AI agents become a standard part of the software supply chain, they introduce new categories of risk. Agents rely on skills to function, and without an infrastructure layer to enforce policies, security and privacy controls, organisations face significant exposure.

JFrog pointed to recent OpenClaw manipulations and breaches as an example of what can go wrong when agent workflows lack standardised governance.

Gal Marder, JFrog’s Chief Strategy Officer, drew a parallel with traditional software security.

“AI agents are fundamentally reshaping how software is created and operated, but without a dedicated trust layer to enforce governance and secure workflows, they introduce significant enterprise risk,” Marder explained.

“Just as a malicious software package can compromise an application, an unvetted skill can guide an agent to perform harmful actions. To safely deploy autonomous agents at scale, organisations must move beyond blind trust.”

What the registry does

The JFrog Agent Skills Registry acts as a centralised system of record for AI agents and their components. It is designed to scan, verify and sign all AI skills upon upload, checking for vulnerabilities, malicious payloads and compliance risks before any agent adopts them.

The platform supports policy-driven governance, allowing organisations to set approval workflows that restrict developers and AI agents to only permitted, verified skills for specific projects and business units.

On the Nvidia side, the OpenShell runtime sandboxes each agent in an isolated virtual environment, allowing code execution without the risk of broader network compromise.

The integration gives Nvidia a single governed endpoint for distributing verified AI skills across all agent platforms, with a promotion model that enforces increasing security gates from team-level to enterprise-wide use.

Certified for Nvidia AI-Q Blueprint

JFrog’s offering includes certification for the Nvidia AI-Q Blueprint, native integration between JFrog Artifactory and the Nvidia OpenShell runtime, and a centralised control plane through the JFrog AI Catalog and Agent Skills Registry.

The control plane provides a single source of truth for tracking, auditing and managing the provenance of agents, Nvidia NIM and MCP servers.

Implications for Australian enterprises

For Australian organisations scaling agentic AI, the partnership raises practical questions about how agent skills and tools are governed across distributed environments.

JFrog’s APAC team, led by Sunny Rao, APAC, is positioned to support enterprise customers looking at governance frameworks for agentic infrastructure.

Last Updated on March 17, 2026 by Nick Ross

Surprisingly Useful AI Article Enhancements

Sign-up to the SMBtech Daily Newsletter

We will not spam you. You can easily unsubscribe any time. Read our privacy policy.