Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
@loadsmart/backstage-plugin-opslevel-maturity
Advanced tools
This plugin helps you leverage OpsLevel's powerful maturity features with your existing Backstage catalog. An OpsLevel API Key is required to use this plugin.
This plugin helps you leverage OpsLevel's powerful maturity features with your existing Backstage catalog. An OpsLevel API Key is required to use this plugin.
OpsLevel gives platform engineers and DevOps leaders the tools to drive service maturity for their teams. We understand that maturity features alongside your software catalog are critical to a culture of service ownership. Which is why we’ve made our maturity features available to Backstage users within their existing service catalog.
OpsLevel uses Checks to measure Service Maturity. Checks let you explicitly define how you want your services to be built and operated. With OpsLevel Checks, you can verify that services:
And a whole lot more.
Paired with our Rubric, Checks allow you to get a holistic view of the health of your software ecosystem. This allows you to not just catalog and create new services but also take action to prevent outages and vulnerabilities.
With the plugin, you can view maturity progress in context with the rest of your service information in Backstage. If you want to dig deeper, you can toggle back to OpsLevel from Backstage to see more health metrics through our Rubric or Check Reports.
yarn add --cwd packages/app @loadsmart/backstage-plugin-opslevel-maturity
Update app-config.yaml
to add a proxy for OpsLevel. Replace <your_OpsLevel_API_token>
with a token from https://app.opslevel.com/api_tokens.
proxy:
"/opslevel":
target: "https://app.opslevel.com"
headers:
X-Custom-Source: backstage
Authorization: Bearer <your_OpsLevel_API_token>
If you're running Self-Hosted OpsLevel, replace target
with your URL.
Update app-config.yaml
to add a framework list and extend the export functionality.
opslevel:
frameworks: ["django", "fastapi", "spring"]
Backstage components that contain any tag value listed on opslevel.frameworks
are exported to the framework field into Opslevel.
Update packages/app/src/App.tsx
import { OpslevelMaturityPage } from "@loadsmart/backstage-plugin-opslevel-maturity";
<Route path="/opslevel-maturity" element={<OpslevelMaturityPage />} />
Update packages/app/src/components/Root/Root.tsx
import CheckCircleOutlineIcon from "@material-ui/icons/CheckCircleOutline";
<SidebarItem
icon={CheckCircleOutlineIcon}
to="opslevel-maturity"
text="Maturity"
/>
In packages/app/src/components/catalog/EntityPage.tsx
import the plugin and add it to serviceEntityPage
. Optionally, you can also add it to defaultEntityPage
and websiteEntityPage
import { EntityOpsLevelMaturityContent } from "@loadsmart/backstage-plugin-opslevel-maturity";
<EntityLayout.Route path="/maturity" title="Service Maturity">
<EntityOpsLevelMaturityContent />
</EntityLayout.Route>
Visit the Maturity tab in Backstage to get started.
FAQs
This plugin helps you leverage OpsLevel's powerful maturity features with your existing Backstage catalog. An OpsLevel API Key is required to use this plugin.
The npm package @loadsmart/backstage-plugin-opslevel-maturity receives a total of 25 weekly downloads. As such, @loadsmart/backstage-plugin-opslevel-maturity popularity was classified as not popular.
We found that @loadsmart/backstage-plugin-opslevel-maturity demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 15 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.