Backstage Security Audit & Updates
TL;DR Backstage’s security posture continues to mature! Today, we’re releasing a report from an independent security audit and the first version of the Backstage Threat Model.

As an Incubating project within the Cloud Native Computing Foundation (CNCF), Backstage was fortunate enough to take advantage of a sponsored security audit. The Open Source Technology Improvement Fund (OSTIF) sponsored the audit as part of its ongoing efforts to secure the open source software ecosystem, and the audit itself was performed by X41 D-Sec. Our goal with the audit was to evaluate and improve Backstage’s security posture, focusing on the core Backstage framework and plugins.








