JFrog flagged rising regulatory demands that require proof of continuous software compliance for each supported release, citing the EU Cyber Resilience Act.
EU CRA penalties cited at up to EUR 15 million or 2.5% of global annual turnover, raising potential financial and operational risk.
EU NIS2 Directive cited as increasing executive accountability, including potential temporary bans from managerial roles.
Other compliance regimes highlighted include NIST SSDF, FedRAMP, the ECB AI Cyber Directive, adding pressure to automate audit evidence.