Software nowadays is rarely written from scratch. According to https://www.forrester.com/report/the-forrester-wave-tm-software-composition-analysis-q2-2023/RES178483, the average software is composed of at least 75% open source code.
You proactively embed secure supply chain practices into new code through Backstage’s Scaffolder.
According to the CNCF, a crucial step of securing the supply chain is ensuring “that internal, first-party source code repositories …
When you have ownership sorted through the Catalog and are promoting best practices proactively through the Scaffolder, the next step is to understand your overall software supply chain security tooling.