Appendix 2: Self-Assessment Templates 

Package Management at Scale
The Hidden Bottlenecks in the Software Supply Chain

Appendix: Self-Assessment Templates 

If you have made it this far into the guide, this appendix contains printable templates intended to provide you with the structure to conduct a CMPR self-assessment of your organization’s package management practices, the goal being to generate a basic internal report, which can be used as a metric for growing maturity. 

These self-assessment templates cover levels 1 to 5, providing a brief review of level characteristics, which can be used as guidance for identifying similar patterns in your org, and assigning a score to the following categories: 

  • Developer Enablement 
  • Security 
  • Governance 
  • Auditability 
  • Scalability Readiness 

Self-assessment provides a taste of the professional analysis we have performed for numerous organizations, a 15-minute call where we analyze your package management practices and produce an accurate CMPR assessment report. If calculating an accurate score, spotting level-based behaviors, or simply requiring more details is an issue, sign up for our in-depth analysis here, or contact us at mgoulis@inedo.com

Please find the self-assessment templates for each level below: 

The following template is an assessment we completed earlier, based on a fictional company currently at level 1 of package management maturity. 

Use this completed template as a reference for the takeaways that your self-analysis should highlight when using the above templates to create an internal report: