Patrik Oldsberg
a07127d4ba
Merge pull request #33774 from backstage/blam/pathcy
...
Add some patches for release
2026-04-07 11:25:12 +02:00
deepthi-28
aa47a370eb
Add CheckboxGroup story and initial implementation ( #33051 )
...
* Add CheckboxGroup story and initial implementation
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
* Add CheckboxGroup implementation and docs coverage
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
* update api-reports
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
* fix: add more story variations, docs page, and fix JSDoc comments
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
* fix: address review feedback for CheckboxGroup component
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
---------
Signed-off-by: Deepthi Ajith <deepthi.ajith@infosys.com >
2026-04-07 10:58:29 +02:00
backstage-goalie[bot]
38950237e3
Merge pull request #33780 from backstage/renovate/rspack-monorepo
...
chore(deps): update dependency @rspack/core to v1.7.11
2026-04-06 23:29:28 +00:00
renovate[bot]
d2a724010c
chore(deps): update dependency @rspack/core to v1.7.11
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-04-06 22:42:07 +00:00
backstage-goalie[bot]
1efbb7938a
Merge pull request #33779 from backstage/renovate/npm-vite-vulnerability
...
chore(deps): update dependency vite to v7.3.2 [security]
2026-04-06 22:36:59 +00:00
renovate[bot]
9404b50a7e
chore(deps): update dependency vite to v7.3.2 [security]
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-04-06 21:53:30 +00:00
Aramis Sennyey
9bca597026
fix: prevent backend server from hanging during e2e test ( #32494 )
...
* fix: prevent backend server from hanging during e2e test
Signed-off-by: aramissennyeydd <aramis.sennyey@doordash.com >
* add changeset
Signed-off-by: aramissennyeydd <aramis.sennyey@doordash.com >
* delete changeset
Signed-off-by: aramissennyeydd <aramis.sennyey@doordash.com >
---------
Signed-off-by: aramissennyeydd <aramis.sennyey@doordash.com >
2026-04-06 14:09:52 -04:00
benjdlambert
f289cd4e74
chore: woops naming
...
Signed-off-by: benjdlambert <ben@blam.sh >
2026-04-06 19:20:24 +02:00
benjdlambert
7aaa947c7a
chore: fix
...
Signed-off-by: benjdlambert <ben@blam.sh >
Signed-off-by: benjdlambert <ben@blam.sh >
2026-04-06 19:20:18 +02:00
Ben Lambert
5af48e77af
feat(scaffolder): Migrate scaffolder to use permissions registry (#33740 )
...
* feat(scaffolder-node): add PermissionResourceRef definitions for scaffolder resource types
Signed-off-by: benjdlambert <ben@blam.sh >
* feat(scaffolder-backend): migrate to PermissionsRegistryService with fallback
Signed-off-by: benjdlambert <ben@blam.sh >
* feat(scaffolder-backend): wire permissionsRegistry in ScaffolderPlugin
Signed-off-by: benjdlambert <ben@blam.sh >
* test(scaffolder-backend): verify permissions metadata endpoint returns all scaffolder permissions
Signed-off-by: benjdlambert <ben@blam.sh >
* chore: add changesets for scaffolder permissions registry migration
Signed-off-by: benjdlambert <ben@blam.sh >
* chore: format scaffolder-node alpha exports
Signed-off-by: benjdlambert <ben@blam.sh >
* fix: correct scaffolder-node changeset to patch for sub-1.0 package
Signed-off-by: benjdlambert <ben@blam.sh >
* refactor(scaffolder-backend): simplify by removing fallback path and making permissionsRegistry required
Signed-off-by: benjdlambert <ben@blam.sh >
* chore: update scaffolder-node API report
Signed-off-by: benjdlambert <ben@blam.sh >
---------
Signed-off-by: benjdlambert <ben@blam.sh >
2026-04-06 19:10:43 +02:00
Gabriel Dugny
282c11475f
fix: OAuth 2.0 Protected Resource Metadata returning local endpoint ( fix #33062 ) ( #33092 )
...
* fix: OAuth 2.0 Protected Resource Metadata returning local endpoint (fix #33062 )
Signed-off-by: Gabriel Dugny <gabriel.dugny@believe.com >
* chore: add basic regression test
Signed-off-by: Gabriel Dugny <gabriel.dugny@believe.com >
---------
Signed-off-by: Gabriel Dugny <gabriel.dugny@believe.com >
2026-04-06 19:04:12 +02:00
Fredrik Adelöw
dd48192606
Merge pull request #33410 from lokeshkaki/feat/bitbucket-cloud-scm-events
...
feat(catalog-backend-module-bitbucket-cloud): add Bitbucket Cloud SCM event translation and bridge wiring
2026-04-06 11:15:13 +02:00
Patrik Oldsberg
d8976ea648
Merge pull request #33723 from Parsifal-M/docs/update-fe-migration-skill
...
Edit the SubPageBluepring instructions section
2026-04-05 22:11:52 +02:00
Patrik Oldsberg
5c9b621ffb
Merge pull request #33760 from backstage/rugvip/parter-cleanup
...
docs: update commercial partners and FAQ
2026-04-05 21:59:29 +02:00
Patrik Oldsberg
f0fb2aec37
microsite: prettier fix
...
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
2026-04-05 21:49:16 +02:00
Patrik Oldsberg
76fdf2cb31
docs: update FAQ about commercial Backstage offerings
...
Update the question about hosted/commercial versions of Backstage
to be vendor-neutral and link to the commercial partners page.
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
Made-with: Cursor
2026-04-05 19:38:20 +02:00
Patrik Oldsberg
ee18ff20c5
microsite: update commercial partners list
...
Remove solo.io, VMware, and Alauda as commercial partners due to
broken/irrelevant landing pages. Add Spotify for Backstage as a
partner. Sort partners alphabetically and normalize logo sizes
with per-partner height control.
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
Made-with: Cursor
2026-04-05 19:26:33 +02:00
Patrik Oldsberg
262bc296a4
Merge pull request #33754 from kurtaking/migrate-google-pubsub-alpha-metrics
...
Migrate to MetricsService
2026-04-05 12:04:14 +02:00
Kurt King
ea0d31a1bc
Merge branch 'master' of https://github.com/backstage/backstage into migrate-google-pubsub-alpha-metrics
2026-04-04 13:33:39 -06:00
Fredrik Adelöw
98d9a75dc2
Merge pull request #33632 from wpessers/feat/github-catalog-backend-extensiont/add-retry-to-github-client
...
feat(catalog): add retries to octokit client
2026-04-04 17:20:22 +02:00
Fredrik Adelöw
c59dccbaf5
Merge pull request #33745 from backstage/freben/permissions-cleanup-step-2
...
refactor(catalog-node,catalog-backend): permissions cleanup step 2
2026-04-03 22:15:57 +02:00
Charles de Dreuille
d10fbd3e29
Merge pull request #33744 from backstage/bui-badge
2026-04-03 20:40:08 +01:00
Fredrik Adelöw
056e18e4bf
refactor(catalog-node,catalog-backend): permissions cleanup step 2
...
Remove the deprecated alpha exports CatalogPermissionRuleInput,
CatalogPermissionExtensionPoint, and catalogPermissionExtensionPoint
from catalog-node, and remove the corresponding CatalogPermissionExtensionPointImpl,
addPermissions, and addPermissionRules from catalog-backend. Custom permission
rules and permissions are now registered via coreServices.permissionsRegistry.
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
2026-04-03 21:36:46 +02:00
Patrik Oldsberg
205c8c8dc1
Merge pull request #33714 from backstage/rugvip/dev-db
...
cli: experimental embedded-postgres support for local dev
2026-04-03 21:07:15 +02:00
Andre Wanlin
735af5b2d6
Merge pull request #33421 from awanlin/docs/clean-up-items
...
Clean up of the contrib folder
2026-04-03 12:53:38 -05:00
Andre Wanlin
8bf97618ee
Fixed links
...
Signed-off-by: Andre Wanlin <awanlin@spotify.com >
2026-04-03 12:39:28 -05:00
Andre Wanlin
e66fa1898c
Sidebar fix
...
Signed-off-by: Andre Wanlin <awanlin@spotify.com >
2026-04-03 12:30:40 -05:00
Andre Wanlin
6e6eff9b90
Fixes
...
Signed-off-by: Andre Wanlin <awanlin@spotify.com >
2026-04-03 12:28:56 -05:00
Andre Wanlin
13c3c0ab15
Potential fix for pull request finding
...
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com >
Signed-off-by: Andre Wanlin <67169551+awanlin@users.noreply.github.com >
2026-04-03 12:28:56 -05:00
Andre Wanlin
d42d56d62b
Fixed broken link
...
Signed-off-by: Andre Wanlin <awanlin@spotify.com >
2026-04-03 12:28:56 -05:00
Andre Wanlin
5cbd39e980
Clean up of the contrib folder
...
Signed-off-by: Andre Wanlin <awanlin@spotify.com >
2026-04-03 12:28:53 -05:00
Patrik Oldsberg
a4b9c45277
Merge pull request #33054 from StateFarmIns/theme-fix-mui-5-class-name-prefix
...
fix: MUI 5 v5- class name prefix reliability
2026-04-03 19:15:45 +02:00
Charles de Dreuille
4032ad7fc4
feat(ui): add Badge component
...
Adds a new `Badge` component to the Backstage UI library. Badge shares the same visual appearance as `Tag` (size tokens, colors, border radius, icon slot) but renders as a plain non-interactive `<span>` with no React Aria plumbing.
Key characteristics:
- Plain DOM element — accessible text content exposed to screen readers without any role override
- Background consumer — participates in the bg context system and steps up neutral background levels (`neutral-2` → `neutral-3` → `neutral-4`) when placed inside colored containers
- Supports `icon`, `size` (`small` | `medium`, defaults to `small`), `children`, and `className` props
- Fully themeable via `BadgeDefinition`
Also includes Storybook stories and full docs-ui documentation (props table, examples, theming section, changelog).
Signed-off-by: Charles de Dreuille <charles.dedreuille@gmail.com >
Made-with: Cursor
2026-04-03 17:19:02 +01:00
Fredrik Adelöw
3dfb6ddc3c
Merge pull request #33743 from backstage/freben/permissions-cleanup-step-1
...
refactor(catalog-backend): permissions cleanup step 1
2026-04-03 18:14:47 +02:00
Patrik Oldsberg
8f9c1d64b8
verify-links: catch broken anchors, directory links, and invisible characters ( #33713 )
...
* verify-links: catch broken anchors, directory links, and invisible characters
Enhances the link verification script to catch several categories of
broken links that were previously missed:
- Broken anchors (cross-file and same-file) by extracting heading slugs
from target documents and verifying anchors resolve
- Directory links missing index.md suffix within docs/
- Invisible/zero-width characters in URLs
- Case-sensitive anchor mismatches
Also strips fenced code blocks before scanning for links to avoid false
positives, and handles duplicate heading slug deduplication (GitHub and
Docusaurus append -1, -2, etc.).
Fixes a few newly-caught broken links in existing docs.
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
Made-with: Cursor
* Fix CodeQL incomplete multi-character sanitization alert
Apply HTML tag stripping in a loop so that nested fragments
like <scr<script>ipt> are fully removed.
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
Made-with: Cursor
---------
Signed-off-by: Patrik Oldsberg <poldsberg@gmail.com >
2026-04-03 17:48:40 +02:00
Rajib Quayum
452bb50432
chore: fix documentation
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 10:30:00 -04:00
Rajib Quayum
a0100d4197
chore: add changeset
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 10:06:11 -04:00
Fredrik Adelöw
7e63730288
chore: add changeset for permissions cleanup step 1
...
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
2026-04-03 16:05:49 +02:00
Fredrik Adelöw
c1802eb603
refactor(catalog-backend): permissions cleanup step 1
...
Make `permissionsRegistry` required and `permissions` always a
`PermissionsService` in `CatalogEnvironment`. Remove the deprecated
`PermissionAuthorizer` fallback path and the `createPermissionIntegrationRouter`
fallback — catalog now exclusively uses `permissionsRegistry.addResourceType`
to register its permission resource type.
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
2026-04-03 16:03:15 +02:00
Rajib Quayum
e22fc0af9c
chore: update docs for MUI v5 class name prefix issue
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 10:01:25 -04:00
Fredrik Adelöw
75db4afdec
Merge pull request #33742 from backstage/freben/host-discovery-baseurl-warnings
...
feat(backend-defaults): warn on localhost or invalid backend.baseUrl in HostDiscovery
2026-04-03 15:34:27 +02:00
Rajib Quayum
2c541a782b
fix: prevent occasional duplication of the MUI v5 prefix
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 09:29:06 -04:00
Rajib Quayum
51ee29bac7
chore: pulls in master
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 09:27:25 -04:00
Rajib Quayum
a4dc401ac3
chore: revert all previous changes
...
Signed-off-by: Rajib Quayum <rajibq@users.noreply.github.com >
2026-04-03 09:24:04 -04:00
Fredrik Adelöw
57543abb7c
Update packages/backend-defaults/src/entrypoints/discovery/HostDiscovery.ts
...
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com >
Signed-off-by: Fredrik Adelöw <freben@gmail.com >
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
2026-04-03 15:01:45 +02:00
Fredrik Adelöw
308c672680
feat(backend-defaults): warn on localhost or invalid backend.baseUrl in HostDiscovery
...
Adds startup warnings to HostDiscovery.fromConfig when backend.baseUrl
is set to a localhost address in a production environment, or when the
value is not a valid URL at all.
Signed-off-by: Fredrik Adelöw <freben@spotify.com >
Made-with: Cursor
2026-04-03 14:48:26 +02:00
Riley Martine
d5899c2362
Allow passing showArrowHeads to entity-card:catalog-graph/relations and /catalog-graph page ( #33706 )
...
* Allow passing showArrowHeads to entity-card:catalog-graph/relations and /catalog-graph page
Signed-off-by: Riley Martine <rmartine@integralads.com >
* Update .changeset/nine-signs-end.md
Signed-off-by: Aramis Sennyey <159921952+aramissennyeydd@users.noreply.github.com >
---------
Signed-off-by: Riley Martine <rmartine@integralads.com >
Signed-off-by: Aramis Sennyey <159921952+aramissennyeydd@users.noreply.github.com >
Co-authored-by: Aramis Sennyey <159921952+aramissennyeydd@users.noreply.github.com >
2026-04-03 12:34:45 +00:00
Fredrik Adelöw
3cdf048f77
Merge pull request #33534 from kurtaking/migrate-scaffolder-to-metrics-service
2026-04-03 09:19:45 +02:00
Kurt King
eacf362bd8
Migrate to MetricsService
...
Signed-off-by: Kurt King <kurtaking@gmail.com >
2026-04-02 23:47:59 -06:00
Kurt King
b37a79ef5b
Merge branch 'master' of https://github.com/backstage/backstage into migrate-scaffolder-to-metrics-service
2026-04-02 22:47:04 -06:00