Skip to content
Back to skills

Backstage External Integrations

ASecurity

Configure, secure, and validate Backstage technical integrations with GitHub, Azure and Azure DevOps, and ServiceNow across catalog discovery, events, software templates, CI/CD views, incidents, and provider credentials. Use when setting up or troubleshooting integrations outside user sign-in.

  • 2 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 4, 2026
ai-agentsazuregitfrontendbackenddevopsci/cd

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned September 4, 2026

npx -y skills add paulasilvatech/awesome-harness-primitives --skill backstage-external-integrations --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Backstage External Integrations?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Backstage External Integrations
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/paulasilvatech-backstage-external-integrations/badge)](https://www.skillsdirectory.com/skills/paulasilvatech-backstage-external-integrations)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: backstage-external-integrations
description: "Configure, secure, and validate Backstage technical integrations with GitHub, Azure and Azure DevOps, and ServiceNow across catalog discovery, events, software templates, CI/CD views, incidents, and provider credentials. Use when setting up or troubleshooting integrations outside user sign-in."
---

# Backstage external integrations

Configure provider access independently from Backstage user sign-in and load only the modules
needed for the requested capability.

## When to invoke

- "Connect Backstage to GitHub with a GitHub App."
- "Discover catalog entities or publish templates in Azure DevOps."
- "Show Azure Pipelines and pull requests in catalog entities."
- "Add ServiceNow incidents or scaffolder actions."

## Provider references

- Read [GitHub integration](references/github.md) for app credentials, discovery, events, and
  scaffolder permissions.
- Read [Azure and Azure DevOps integration](references/azure-devops.md) for integrations,
  catalog discovery, events, templates, and the active community CI/CD plugin.
- Read [ServiceNow integration](references/servicenow.md) for the active community incident and
  scaffolder packages.

## Procedure

1. Confirm target Backstage version, provider host, organizations, projects, and requested
   capabilities.
2. Keep provider technical credentials separate from GitHub or Microsoft sign-in configuration.
3. Prefer app, service principal, or managed identity credentials over long-lived personal tokens
   when supported.
4. Install only the catalog, events, scaffolder, frontend, backend, or processor packages needed.
5. Register modules through the new backend system and frontend feature discovery or explicit
   modules.
6. Store credentials externally and document minimum scopes, expiration, rotation, and owner.
7. Configure bounded discovery filters, schedules, webhook validation, entity annotations, and
   permission policy.
8. Test provider connectivity, one representative entity, negative authorization, rate limits,
   webhook authenticity, and failure recovery.

## Output template

```markdown
## Backstage integration result

**Provider:** GitHub | Azure DevOps | ServiceNow

| Capability | Package or module | Credential | Scope | Validation |
| --- | --- | --- | --- | --- |

### External values
- `<ENV_NAME>`: <purpose only>
```

## Quality gate

- [ ] Technical integration and user sign-in credentials are separate.
- [ ] Only required provider modules are installed.
- [ ] Credentials are least-privilege, externalized, owned, and rotatable.
- [ ] Discovery and event inputs are bounded and authenticated.
- [ ] Entity annotations and provider references are valid.
- [ ] Positive, denied, throttled, and unavailable-provider paths are tested.

Files in this skill

  • SKILL.md2.7 KB
  • references/azure-devops.md1.7 KB
  • references/github.md1.2 KB
  • references/servicenow.md1.5 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…