Dependency Firewall offer: 50% off your base fee for 3 months + €100 usage credit.Start trialSee what’s new

Dependency Firewall for

Blocks malicious, vulnerable and policy-violating packages at install.

Dependency Firewall sits in front of your existing repository, protecting developers, CI/CD pipelines and AI agents.

EU-based company · Software supply chain security since 2018.

Logs

Firewall ci-baseline
StatusPackageRule
AllowedminimistException
Blockedorg.apache.logging.log4j:log4j-coreBlock CVSS ≥ 7
AllowedrequestsLog all downloads
BlockednxDelay 7 days
Blockedevent-streamKnown malware
AllowedreactLog all downloads

Intercepts every package request before it reaches you.

Every package install is a potential entry point. Traditional SCA tools find problems after packages are already in your environment. Dependency Firewall intercepts every request before it reaches your developers, CI/CD pipelines or AI agents.

You define the rules: block packages with known CVEs, block known malicious packages or delay newly published versions for a configurable period to give the ecosystem community time to surface zero-day threats.

Works in front of enterprise repository platforms and any package registry. No agent installs. No workflow changes.

Vulnerable packages
Bytesafe

Dependency Firewall

Policy engine
Vetted and compliant

Developers and CI/CD

Internal network

What Dependency Firewall does

Each firewall runs the checks you turn on, on every package request. Rules block or log, and every decision is recorded.

Malware blocking
Blocks packages that match malware data, including malicious payloads and suspicious install hooks. Every block is logged with the package and the rule.
Vulnerability blocking
Blocks versions with CVEs above a CVSS or EPSS score you set, per firewall. New advisories apply on the next request.
Package delay
Holds newly published versions for a window you set, so malware feeds can catch a bad release before your builds install it.
Time-limited exceptions
Unblock one package or version with a reason and an expiry date. The rule keeps applying to everything else, and the exception lapses on its own.
Dependency confusion
Upstream priority rules make internal package names always resolve from your private registry. A public package with the same name cannot take its place.
Package observations
Every package that passes records first-seen and last-seen time and request counts. When a new advisory lands, you see which firewalls served the package and since when.
Audit log
Every allow, block and exception is logged with the package, version, rule, requester and time. Export it to your SIEM.

Inside Dependency Firewall

The screens your developers and security team work with.

1 of 7 · Logs

Live firewall logs

Every request is logged: package name, version, status, ecosystem, which firewall evaluated it, which rule triggered and who requested it. Filter by firewall or user, and tail live during incidents or CI/CD runs.

Developers get a fast answer when an install fails, and AppSec gets an audit trail for every decision.

Live request log with blocked packages and rule details
Live request log with blocked packages and rule details

Dependency Firewall offer

Half the base fee for your first 3 months

€49.50 instead of €99 per month, plus €100 usage credit. Start with a 14-day trial, no card required. See what's new

The same firewall for Docker and OCI images

A container image is a dependency like any other, and it brings an operating system and several hundred packages with it. Bytesafe reads the apk, dpkg and rpm databases out of the image layers and blocks images with vulnerable OS packages, malware or leaked secrets, before the image reaches a build agent or a production node.

The same policy engine, the same advisory data and the same audit log as your package registries.

Docker
OCI
Container Dependency Firewall →

Logs

Firewall oci-ci
StatusPackageRule
Allowedlibrary/postgresLog all downloads
Blockedlibrary/centosBlock CVSS > 8.5
Allowedghcr.io/acme/apiException
BlockednodeDelay 7 days
Blockedlibrary/debianBlock CVSS > 8.5
Allowedlibrary/alpineLog all downloads

See how Dependency Firewall works

Covers the architecture, what gets checked on every request, how decisions are made and logged, and how it fits in front of your existing registry setup.

How it works →

How package installs go through the firewall

Your package manager asks the firewall instead of the public registry. The firewall fetches the package from upstream, checks it against your rules and serves it only if it passes.

  1. 1

    Change the registry setting

    Point npm, pip, Maven and your other clients at the firewall, on laptops and CI runners. Lockfiles, manifests and install commands stay the same.

    Shown for npm. pip, Maven, NuGet, Go, Cargo, Composer, RubyGems, Conda and containers work the same way.
  2. 2

    Set the rules

    Block by CVSS or EPSS score, known malware, license or package age. Shared rules go on a baseline firewall that team and CI firewalls inherit, and they run first.

    Rules on a firewall: block downloads with CVSS above 7, log all downloads, and a 7-day delay inherited from npm-baseline
    Rules on the npm-ci firewall. The 7-day delay is inherited from npm-baseline.
  3. 3

    Read the log

    A version held back by a rule is left out of the version list, so the package manager resolves an older one. A blocked download fails the install. Every decision is logged with the rule and who asked.

    Firewall log: lerna, nx and js-yaml versions blocked by the 7-day delay, other packages allowed
    New versions held by the delay rule, next to allowed downloads.

Works with the repositories you already use

JFrog Artifactory
Sonatype Nexus
GitLab
GitHub Packages
Azure Artifacts
AWS CodeArtifact

Compared with other enterprise dependency firewalls

Other enterprise dependency firewalls are often bundled into repository platforms. Dependency Firewall is an independent firewall that works with any registry and is built in the EU.

CriterionDependency FirewallOther enterprise firewalls
Works with your existing repositoryYes, as a proxy in front of itBundled into their platform
Deploys in minutesYesUsually weeks of platform work
Predictable pricingOne meter sets the price, no overageSeveral axes with overage most often
EU data residencyYesNo, US-based most of the time

Frequently asked questions

Can different projects have different policies?
Yes. You can create separate firewalls per project. They are lightweight and easy to clone. You can also differentiate by the user or token used for the session. Firewall configurations are small JSON files that can be managed in Git.
Can packages be delayed before they reach developers?
Yes. Dependency Firewall can hold newly published package versions for a window you configure before they reach developers or pipelines. Attacks on packages like shai-hulud, axios and tanstack exploited the gap between publish and detection. Centralizing delay rules means the protection applies automatically across all teams and pipelines without each project configuring it separately.
How does malware detection work?
Dependency Firewall blocks packages that match known malware signatures.
What happens if a package passes through but malware is found later?
The firewall tracks all packages via observations: first-seen date, last-seen date, and which firewalls they passed through. When new malware data surfaces, you can see exactly which projects downloaded the affected package and when. This gives your AppSec team a clear investigation trail.
Are there alerts when a package is blocked?
The package manager reports the version could not be found, which breaks the build. Developers and CI/CD check the firewall logs (via UI or CLI) to see exactly which rule triggered and why. Audit entries include package name, version, user, IP, and the blocking rule.
Can firewall rules be automated?
Yes. All configuration is available via API. Configurations can be version-controlled in Git and deployed through your existing automation. All changes are tracked with full rollback support.
Does Dependency Firewall work with enterprise repository platforms?
Yes. Dependency Firewall speaks the same protocols as your package managers, so it is fully transparent to enterprise repository platforms and package registries, including JFrog Artifactory, Sonatype Nexus, GitLab, GitHub Packages and Azure Artifacts. It evaluates each package against your defined policies before it is served.
How is licensing structured?
Two plans: Cloud for SaaS and Enterprise for custom deployment, Managed Cloud or On-Premise. Cloud is priced on whichever you use most: active users, packages scanned or downloads served. See pricing for plan details and add-ons.

Bytesafe Platform

Software Supply Chain Security and Transparency

Three products that block risky packages at install, collect supplier transparency documents, and analyze them.

Point one registry at the firewall

Change the registry URL for npm, pip or Maven and your rules apply from the next install. Start a trial, or book a demo to go through your registry setup with an engineer.

Firewall logs: new versions of lerna and nx blocked by a 7-day delay, other npm packages allowed