Overview
The Tidelift browser extension allows you to access Tidelift package and release quality data right inside your browser. It's designed to supplement open source repository pages on GitHub.com, as well as some popular package repositories like NPM, PyPI, and RubyGems.
Key Features
- Lifted status: reason that we think this is valuable.
- Tidelift recommendation: reason that we think this is valuable.
- Package quality checks: reason that we think this is valuable.
Supported Package URLs
https://central.sonatype.com/... |
https://crates.io/... |
https://github.com/... |
https://mvnrepository.com/... |
https://pkg.go.dev/... |
https://pypi.org/... |
https://rubygems.org/... |
https://search.maven.org/... |
https://www.npmjs.com/... |
GitHub Support
On GitHub repositories, Tidelift will identify packages based on their repository URL. This is often configured by the maintainer in manifest files, but can also come from our lifter partners or internal research. The extension will show packages from any of our supported ecosystems.
Sometimes, multiple packages will match a repository. This is common for monorepos like vuejs/core or lodash. In this case, you can browse through all the different packages that are published from this repository.
In this example, Tidelift provides package quality information for individual release version 2.0.1 of Urllib3, which was published and then removed from the PyPi public repository.
Package Repository Support
Tidelift can also provide context on public package repository sites like pypi.org. In the example below, a Tidelift lifter partner has reported that eggmoster is deprecated even though it's not flagged as such on pypi.org and its homepage link is incorrect.
Configuration
Upon install, you'll be prompted to log in with your Tidelift subscriber account. This is the only setup required. When you first log in, the extension will configure itself to your organization and choose your most recently used catalog for assessing packages.
This can be changed any time from the configuration page (gear icon in toolbar).
Security and Privacy
- After login, this extension sends certain usage metrics to Amplitude.
- This extension only reports usage data to Amplitude when active on supported urls and does not track any usage not related to interacting with the extension
- This extension may also send error metrics to our error reporting service.