Skip to content

Create metric: appsec.rasp.rule.skipped - #8618

Merged
jandro996 merged 2 commits into
masterfrom
alejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped
Mar 26, 2025
Merged

Create metric: appsec.rasp.rule.skipped#8618
jandro996 merged 2 commits into
masterfrom
alejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped

Conversation

@jandro996

@jandro996jandro996 commented Mar 25, 2025

Copy link
Copy Markdown
Member

What Does This Do

Crate the appsec.rasp.rule.skipped metric that counts the number of times that waf call is skipped due to the WAF context is closed

Motivation

Additional Notes

Although the metric reason tag supports after-request and before-request only the first one is implemented, as there are no use cases in java tracer for the before-request

Contributor Checklist

Jira ticket: APPSEC-56629

@jandro996jandro996 added type: feature Enhancements and improvements comp: telemetry Telemetry labels Mar 25, 2025
@jandro996jandro996 added this to the 1.48.0 milestone Mar 25, 2025
@jandro996
jandro996 requested a review from a team as a code ownerMarch 25, 2025 11:35
@pr-commenter

pr-commenterBot commented Mar 25, 2025

Copy link
Copy Markdown

Benchmarks

Startup

Parameters

BaselineCandidate
baseline_or_candidatebaselinecandidate
git_branchmasteralejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped
git_commit_date17429049061742905226
git_commit_shafe8895f638b0b5
release_version1.48.0-SNAPSHOT~fe8895f92a1.48.0-SNAPSHOT~638b0b5f8c
See matching parameters
BaselineCandidate
applicationinsecure-bankinsecure-bank
ci_job_date17429080391742908039
ci_job_id863213122863213122
ci_pipeline_id5988077559880775
cpu_modelIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHzIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHz
kernel_versionLinux runner-jzzy7jrd-project-304-concurrent-0-vw3ljkvm 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/LinuxLinux runner-jzzy7jrd-project-304-concurrent-0-vw3ljkvm 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/Linux
moduleAgentAgent
parentNoneNone
variantiastiast

Summary

Found 3 performance improvements and 0 performance regressions! Performance is the same for 56 metrics, 4 unstable metrics.

scenarioΔ mean execution_timecandidate mean execution_timebaseline mean execution_time
scenario:startup:insecure-bank:tracing:Remote Configbetter
[-62.770µs; -21.430µs] or [-8.641%; -2.950%]
684.314µs726.414µs
scenario:startup:petclinic:profiling:ProfilingAgentbetter
[-7.266ms; -3.988ms] or [-7.110%; -3.902%]
96.566ms102.193ms
scenario:startup:petclinic:profiling:Profilingbetter
[-7.414ms; -4.124ms] or [-7.243%; -4.029%]
96.591ms102.360ms
Startup time reports for petclinic
gantt
title petclinic - global startup overhead: candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.047 s) : 0, 1047406
Total [baseline] (10.494 s) : 0, 10493929
Agent [candidate] (1.043 s) : 0, 1042729
Total [candidate] (10.427 s) : 0, 10426761
section appsec
Agent [baseline] (1.189 s) : 0, 1189222
Total [baseline] (10.765 s) : 0, 10764915
Agent [candidate] (1.184 s) : 0, 1184214
Total [candidate] (10.783 s) : 0, 10782586
section iast
Agent [baseline] (1.189 s) : 0, 1188876
Total [baseline] (11.025 s) : 0, 11024813
Agent [candidate] (1.175 s) : 0, 1174931
Total [candidate] (11.086 s) : 0, 11086482
section profiling
Agent [baseline] (1.275 s) : 0, 1275021
Total [baseline] (10.843 s) : 0, 10843370
Agent [candidate] (1.269 s) : 0, 1269390
Total [candidate] (10.916 s) : 0, 10916109
Loading
  • baseline results
ModuleVariantDurationΔ tracing
Agenttracing1.047 s-
Agentappsec1.189 s141.816 ms (13.5%)
Agentiast1.189 s141.47 ms (13.5%)
Agentprofiling1.275 s227.615 ms (21.7%)
Totaltracing10.494 s-
Totalappsec10.765 s270.987 ms (2.6%)
Totaliast11.025 s530.884 ms (5.1%)
Totalprofiling10.843 s349.442 ms (3.3%)
  • candidate results
ModuleVariantDurationΔ tracing
Agenttracing1.043 s-
Agentappsec1.184 s141.485 ms (13.6%)
Agentiast1.175 s132.202 ms (12.7%)
Agentprofiling1.269 s226.661 ms (21.7%)
Totaltracing10.427 s-
Totalappsec10.783 s355.825 ms (3.4%)
Totaliast11.086 s659.721 ms (6.3%)
Totalprofiling10.916 s489.348 ms (4.7%)
gantt
title petclinic - break down per module: candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (719.707 ms) : 0, 719707
BytebuddyAgent [candidate] (718.633 ms) : 0, 718633
GlobalTracer [baseline] (240.591 ms) : 0, 240591
GlobalTracer [candidate] (239.773 ms) : 0, 239773
AppSec [baseline] (55.063 ms) : 0, 55063
AppSec [candidate] (55.068 ms) : 0, 55068
Remote Config [baseline] (719.041 µs) : 0, 719
Remote Config [candidate] (707.245 µs) : 0, 707
Telemetry [baseline] (10.118 ms) : 0, 10118
Telemetry [candidate] (12.429 ms) : 0, 12429
Debugger [baseline] (5.138 ms) : 0, 5138
section appsec
BytebuddyAgent [baseline] (736.323 ms) : 0, 736323
BytebuddyAgent [candidate] (735.845 ms) : 0, 735845
GlobalTracer [baseline] (236.463 ms) : 0, 236463
GlobalTracer [candidate] (236.299 ms) : 0, 236299
AppSec [baseline] (176.581 ms) : 0, 176581
AppSec [candidate] (176.042 ms) : 0, 176042
Remote Config [baseline] (647.537 µs) : 0, 648
Remote Config [candidate] (657.706 µs) : 0, 658
Telemetry [baseline] (8.171 ms) : 0, 8171
Telemetry [candidate] (8.638 ms) : 0, 8638
Debugger [baseline] (4.282 ms) : 0, 4282
IAST [baseline] (21.439 ms) : 0, 21439
IAST [candidate] (21.574 ms) : 0, 21574
section iast
BytebuddyAgent [baseline] (847.429 ms) : 0, 847429
BytebuddyAgent [candidate] (840.531 ms) : 0, 840531
GlobalTracer [baseline] (231.988 ms) : 0, 231988
GlobalTracer [candidate] (230.3 ms) : 0, 230300
AppSec [baseline] (56.538 ms) : 0, 56538
AppSec [candidate] (56.122 ms) : 0, 56122
Remote Config [baseline] (602.775 µs) : 0, 603
Remote Config [candidate] (625.884 µs) : 0, 626
Telemetry [baseline] (8.908 ms) : 0, 8908
Telemetry [candidate] (8.699 ms) : 0, 8699
Debugger [baseline] (4.231 ms) : 0, 4231
IAST [baseline] (23.064 ms) : 0, 23064
IAST [candidate] (22.68 ms) : 0, 22680
section profiling
BytebuddyAgent [baseline] (710.677 ms) : 0, 710677
BytebuddyAgent [candidate] (714.83 ms) : 0, 714830
GlobalTracer [baseline] (351.8 ms) : 0, 351800
GlobalTracer [candidate] (352.134 ms) : 0, 352134
AppSec [baseline] (54.581 ms) : 0, 54581
AppSec [candidate] (54.451 ms) : 0, 54451
Remote Config [baseline] (700.433 µs) : 0, 700
Remote Config [candidate] (722.043 µs) : 0, 722
Telemetry [baseline] (8.922 ms) : 0, 8922
Telemetry [candidate] (8.933 ms) : 0, 8933
Debugger [baseline] (4.308 ms) : 0, 4308
ProfilingAgent [baseline] (102.193 ms) : 0, 102193
ProfilingAgent [candidate] (96.566 ms) : 0, 96566
Profiling [baseline] (102.36 ms) : 0, 102360
Profiling [candidate] (96.591 ms) : 0, 96591
Loading
Startup time reports for insecure-bank
gantt
title insecure-bank - global startup overhead: candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.05 s) : 0, 1049938
Total [baseline] (8.69 s) : 0, 8690284
Agent [candidate] (1.045 s) : 0, 1044527
Total [candidate] (8.67 s) : 0, 8669972
section iast
Agent [baseline] (1.177 s) : 0, 1176746
Total [baseline] (9.268 s) : 0, 9268223
Agent [candidate] (1.197 s) : 0, 1196900
Total [candidate] (9.288 s) : 0, 9288435
section iast_HARDCODED_SECRET_DISABLED
Agent [baseline] (1.179 s) : 0, 1179068
Total [baseline] (9.229 s) : 0, 9228930
Agent [candidate] (1.181 s) : 0, 1181451
Total [candidate] (9.337 s) : 0, 9336813
section iast_TELEMETRY_OFF
Agent [baseline] (1.174 s) : 0, 1174442
Total [baseline] (9.276 s) : 0, 9276329
Agent [candidate] (1.17 s) : 0, 1170407
Total [candidate] (9.263 s) : 0, 9263055
Loading
  • baseline results
ModuleVariantDurationΔ tracing
Agenttracing1.05 s-
Agentiast1.177 s126.808 ms (12.1%)
Agentiast_HARDCODED_SECRET_DISABLED1.179 s129.131 ms (12.3%)
Agentiast_TELEMETRY_OFF1.174 s124.504 ms (11.9%)
Totaltracing8.69 s-
Totaliast9.268 s577.938 ms (6.7%)
Totaliast_HARDCODED_SECRET_DISABLED9.229 s538.645 ms (6.2%)
Totaliast_TELEMETRY_OFF9.276 s586.045 ms (6.7%)
  • candidate results
ModuleVariantDurationΔ tracing
Agenttracing1.045 s-
Agentiast1.197 s152.373 ms (14.6%)
Agentiast_HARDCODED_SECRET_DISABLED1.181 s136.924 ms (13.1%)
Agentiast_TELEMETRY_OFF1.17 s125.881 ms (12.1%)
Totaltracing8.67 s-
Totaliast9.288 s618.463 ms (7.1%)
Totaliast_HARDCODED_SECRET_DISABLED9.337 s666.842 ms (7.7%)
Totaliast_TELEMETRY_OFF9.263 s593.083 ms (6.8%)
gantt
title insecure-bank - break down per module: candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (718.761 ms) : 0, 718761
BytebuddyAgent [candidate] (718.65 ms) : 0, 718650
GlobalTracer [baseline] (239.792 ms) : 0, 239792
GlobalTracer [candidate] (239.398 ms) : 0, 239398
AppSec [baseline] (54.98 ms) : 0, 54980
AppSec [candidate] (54.522 ms) : 0, 54522
Remote Config [baseline] (726.414 µs) : 0, 726
Remote Config [candidate] (684.314 µs) : 0, 684
Telemetry [baseline] (15.269 ms) : 0, 15269
Telemetry [candidate] (15.219 ms) : 0, 15219
Debugger [baseline] (4.409 ms) : 0, 4409
section iast
BytebuddyAgent [baseline] (838.345 ms) : 0, 838345
BytebuddyAgent [candidate] (857.387 ms) : 0, 857387
GlobalTracer [baseline] (230.411 ms) : 0, 230411
GlobalTracer [candidate] (233.323 ms) : 0, 233323
AppSec [baseline] (55.695 ms) : 0, 55695
AppSec [candidate] (56.161 ms) : 0, 56161
Remote Config [baseline] (604.44 µs) : 0, 604
Remote Config [candidate] (629.252 µs) : 0, 629
Telemetry [baseline] (8.775 ms) : 0, 8775
Telemetry [candidate] (8.876 ms) : 0, 8876
Debugger [baseline] (4.185 ms) : 0, 4185
IAST [baseline] (22.823 ms) : 0, 22823
IAST [candidate] (24.213 ms) : 0, 24213
section iast_HARDCODED_SECRET_DISABLED
BytebuddyAgent [baseline] (840.025 ms) : 0, 840025
BytebuddyAgent [candidate] (844.22 ms) : 0, 844220
GlobalTracer [baseline] (230.885 ms) : 0, 230885
GlobalTracer [candidate] (232.112 ms) : 0, 232112
AppSec [baseline] (55.801 ms) : 0, 55801
AppSec [candidate] (56.419 ms) : 0, 56419
Remote Config [baseline] (596.546 µs) : 0, 597
Remote Config [candidate] (624.764 µs) : 0, 625
Telemetry [baseline] (8.778 ms) : 0, 8778
Telemetry [candidate] (8.859 ms) : 0, 8859
Debugger [baseline] (4.133 ms) : 0, 4133
IAST [baseline] (22.8 ms) : 0, 22800
IAST [candidate] (23.088 ms) : 0, 23088
section iast_TELEMETRY_OFF
BytebuddyAgent [baseline] (835.979 ms) : 0, 835979
BytebuddyAgent [candidate] (836.359 ms) : 0, 836359
GlobalTracer [baseline] (230.495 ms) : 0, 230495
GlobalTracer [candidate] (230.481 ms) : 0, 230481
AppSec [baseline] (56.199 ms) : 0, 56199
AppSec [candidate] (56.038 ms) : 0, 56038
Remote Config [baseline] (597.563 µs) : 0, 598
Remote Config [candidate] (611.477 µs) : 0, 611
Telemetry [baseline] (8.594 ms) : 0, 8594
Telemetry [candidate] (8.597 ms) : 0, 8597
Debugger [baseline] (4.148 ms) : 0, 4148
IAST [baseline] (22.398 ms) : 0, 22398
IAST [candidate] (22.342 ms) : 0, 22342
Loading

Load

Parameters

BaselineCandidate
baseline_or_candidatebaselinecandidate
end_time2025-03-25T12:37:302025-03-25T12:45:17
git_branchmasteralejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped
git_commit_date17429049061742905226
git_commit_shafe8895f638b0b5
release_version1.48.0-SNAPSHOT~fe8895f92a1.48.0-SNAPSHOT~638b0b5f8c
start_time2025-03-25T12:37:162025-03-25T12:45:03
See matching parameters
BaselineCandidate
applicationinsecure-bankinsecure-bank
ci_job_date17429071161742907116
ci_job_id863213123863213123
ci_pipeline_id5988077559880775
cpu_modelIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHzIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHz
kernel_versionLinux runner-5gca-jya-project-304-concurrent-0-fj6g0flv 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/LinuxLinux runner-5gca-jya-project-304-concurrent-0-fj6g0flv 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/Linux
variantiastiast

Summary

Found 0 performance improvements and 0 performance regressions! Performance is the same for 14 metrics, 16 unstable metrics.

Request duration reports for insecure-bank
gantt
title insecure-bank - request duration [CI 0.99] : candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section baseline
no_agent (380.993 µs) : 361, 401
. : milestone, 381,
iast (518.066 µs) : 496, 540
. : milestone, 518,
iast_FULL (742.854 µs) : 721, 765
. : milestone, 743,
iast_GLOBAL (569.605 µs) : 547, 592
. : milestone, 570,
iast_HARDCODED_SECRET_DISABLED (515.276 µs) : 494, 537
. : milestone, 515,
iast_INACTIVE (465.249 µs) : 444, 486
. : milestone, 465,
iast_TELEMETRY_OFF (510.112 µs) : 488, 532
. : milestone, 510,
tracing (459.037 µs) : 438, 480
. : milestone, 459,
section candidate
no_agent (384.098 µs) : 365, 404
. : milestone, 384,
iast (519.974 µs) : 498, 542
. : milestone, 520,
iast_FULL (732.138 µs) : 709, 755
. : milestone, 732,
iast_GLOBAL (561.674 µs) : 540, 583
. : milestone, 562,
iast_HARDCODED_SECRET_DISABLED (519.205 µs) : 498, 541
. : milestone, 519,
iast_INACTIVE (473.231 µs) : 452, 494
. : milestone, 473,
iast_TELEMETRY_OFF (506.603 µs) : 485, 528
. : milestone, 507,
tracing (463.489 µs) : 443, 484
. : milestone, 463,
Loading
  • baseline results
VariantRequest duration [CI 0.99]Δ no_agent
no_agent380.993 µs [360.701 µs, 401.284 µs]-
iast518.066 µs [496.091 µs, 540.04 µs]137.073 µs (36.0%)
iast_FULL742.854 µs [720.974 µs, 764.735 µs]361.862 µs (95.0%)
iast_GLOBAL569.605 µs [546.869 µs, 592.341 µs]188.612 µs (49.5%)
iast_HARDCODED_SECRET_DISABLED515.276 µs [493.614 µs, 536.938 µs]134.283 µs (35.2%)
iast_INACTIVE465.249 µs [444.071 µs, 486.427 µs]84.257 µs (22.1%)
iast_TELEMETRY_OFF510.112 µs [488.221 µs, 532.003 µs]129.119 µs (33.9%)
tracing459.037 µs [438.464 µs, 479.611 µs]78.045 µs (20.5%)
  • candidate results
VariantRequest duration [CI 0.99]Δ no_agent
no_agent384.098 µs [364.599 µs, 403.596 µs]-
iast519.974 µs [498.055 µs, 541.894 µs]135.877 µs (35.4%)
iast_FULL732.138 µs [709.445 µs, 754.832 µs]348.04 µs (90.6%)
iast_GLOBAL561.674 µs [540.113 µs, 583.235 µs]177.577 µs (46.2%)
iast_HARDCODED_SECRET_DISABLED519.205 µs [497.553 µs, 540.856 µs]135.107 µs (35.2%)
iast_INACTIVE473.231 µs [452.204 µs, 494.257 µs]89.133 µs (23.2%)
iast_TELEMETRY_OFF506.603 µs [485.131 µs, 528.075 µs]122.506 µs (31.9%)
tracing463.489 µs [442.819 µs, 484.158 µs]79.391 µs (20.7%)
Request duration reports for petclinic
gantt
title petclinic - request duration [CI 0.99] : candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section baseline
no_agent (1.38 ms) : 1361, 1400
. : milestone, 1380,
appsec (1.744 ms) : 1721, 1767
. : milestone, 1744,
appsec_no_iast (1.739 ms) : 1716, 1761
. : milestone, 1739,
code_origins (1.652 ms) : 1625, 1679
. : milestone, 1652,
iast (1.514 ms) : 1490, 1538
. : milestone, 1514,
profiling (1.574 ms) : 1549, 1599
. : milestone, 1574,
tracing (1.535 ms) : 1510, 1559
. : milestone, 1535,
section candidate
no_agent (1.377 ms) : 1357, 1397
. : milestone, 1377,
appsec (1.739 ms) : 1715, 1763
. : milestone, 1739,
appsec_no_iast (1.743 ms) : 1717, 1769
. : milestone, 1743,
code_origins (1.679 ms) : 1652, 1707
. : milestone, 1679,
iast (1.519 ms) : 1493, 1544
. : milestone, 1519,
profiling (1.533 ms) : 1509, 1558
. : milestone, 1533,
tracing (1.494 ms) : 1469, 1519
. : milestone, 1494,
Loading
  • baseline results
VariantRequest duration [CI 0.99]Δ no_agent
no_agent1.38 ms [1.361 ms, 1.4 ms]-
appsec1.744 ms [1.721 ms, 1.767 ms]363.364 µs (26.3%)
appsec_no_iast1.739 ms [1.716 ms, 1.761 ms]358.085 µs (25.9%)
code_origins1.652 ms [1.625 ms, 1.679 ms]271.642 µs (19.7%)
iast1.514 ms [1.49 ms, 1.538 ms]133.552 µs (9.7%)
profiling1.574 ms [1.549 ms, 1.599 ms]193.21 µs (14.0%)
tracing1.535 ms [1.51 ms, 1.559 ms]154.284 µs (11.2%)
  • candidate results
VariantRequest duration [CI 0.99]Δ no_agent
no_agent1.377 ms [1.357 ms, 1.397 ms]-
appsec1.739 ms [1.715 ms, 1.763 ms]361.875 µs (26.3%)
appsec_no_iast1.743 ms [1.717 ms, 1.769 ms]365.556 µs (26.5%)
code_origins1.679 ms [1.652 ms, 1.707 ms]302.257 µs (21.9%)
iast1.519 ms [1.493 ms, 1.544 ms]141.503 µs (10.3%)
profiling1.533 ms [1.509 ms, 1.558 ms]156.211 µs (11.3%)
tracing1.494 ms [1.469 ms, 1.519 ms]116.816 µs (8.5%)

Dacapo

Parameters

BaselineCandidate
baseline_or_candidatebaselinecandidate
git_branchmasteralejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped
git_commit_date17429049061742905226
git_commit_shafe8895f638b0b5
release_version1.48.0-SNAPSHOT~fe8895f92a1.48.0-SNAPSHOT~638b0b5f8c
See matching parameters
BaselineCandidate
applicationbiojavabiojava
ci_job_date17429075741742907574
ci_job_id863213124863213124
ci_pipeline_id5988077559880775
cpu_modelIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHzIntel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHz
kernel_versionLinux runner-jzzy7jrd-project-304-concurrent-1-nn3bf1qh 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/LinuxLinux runner-jzzy7jrd-project-304-concurrent-1-nn3bf1qh 6.8.0-1024-aws #26~22.04.1-Ubuntu SMP Wed Feb 19 06:54:57 UTC 2025 x86_64 x86_64 x86_64 GNU/Linux
variantappsecappsec

Summary

Found 0 performance improvements and 0 performance regressions! Performance is the same for 12 metrics, 0 unstable metrics.

Execution time for biojava
gantt
title biojava - execution time [CI 0.99] : candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section baseline
no_agent (15.543 s) : 15543000, 15543000
. : milestone, 15543000,
appsec (15.048 s) : 15048000, 15048000
. : milestone, 15048000,
iast (18.89 s) : 18890000, 18890000
. : milestone, 18890000,
iast_GLOBAL (17.825 s) : 17825000, 17825000
. : milestone, 17825000,
profiling (14.86 s) : 14860000, 14860000
. : milestone, 14860000,
tracing (15.013 s) : 15013000, 15013000
. : milestone, 15013000,
section candidate
no_agent (15.238 s) : 15238000, 15238000
. : milestone, 15238000,
appsec (15.145 s) : 15145000, 15145000
. : milestone, 15145000,
iast (19.04 s) : 19040000, 19040000
. : milestone, 19040000,
iast_GLOBAL (17.897 s) : 17897000, 17897000
. : milestone, 17897000,
profiling (14.975 s) : 14975000, 14975000
. : milestone, 14975000,
tracing (14.985 s) : 14985000, 14985000
. : milestone, 14985000,
Loading
  • baseline results
VariantExecution Time [CI 0.99]Δ no_agent
no_agent15.543 s [15.543 s, 15.543 s]-
appsec15.048 s [15.048 s, 15.048 s]-495.0 ms (-3.2%)
iast18.89 s [18.89 s, 18.89 s]3.347 s (21.5%)
iast_GLOBAL17.825 s [17.825 s, 17.825 s]2.282 s (14.7%)
profiling14.86 s [14.86 s, 14.86 s]-683.0 ms (-4.4%)
tracing15.013 s [15.013 s, 15.013 s]-530.0 ms (-3.4%)
  • candidate results
VariantExecution Time [CI 0.99]Δ no_agent
no_agent15.238 s [15.238 s, 15.238 s]-
appsec15.145 s [15.145 s, 15.145 s]-93.0 ms (-0.6%)
iast19.04 s [19.04 s, 19.04 s]3.802 s (25.0%)
iast_GLOBAL17.897 s [17.897 s, 17.897 s]2.659 s (17.4%)
profiling14.975 s [14.975 s, 14.975 s]-263.0 ms (-1.7%)
tracing14.985 s [14.985 s, 14.985 s]-253.0 ms (-1.7%)
Execution time for tomcat
gantt
title tomcat - execution time [CI 0.99] : candidate=1.48.0-SNAPSHOT~638b0b5f8c, baseline=1.48.0-SNAPSHOT~fe8895f92a
dateFormat X
axisFormat %s
section baseline
no_agent (1.474 ms) : 1463, 1486
. : milestone, 1474,
appsec (2.352 ms) : 2308, 2396
. : milestone, 2352,
iast (2.123 ms) : 2068, 2179
. : milestone, 2123,
iast_GLOBAL (2.167 ms) : 2111, 2222
. : milestone, 2167,
profiling (1.972 ms) : 1928, 2017
. : milestone, 1972,
tracing (1.958 ms) : 1915, 2000
. : milestone, 1958,
section candidate
no_agent (1.472 ms) : 1460, 1483
. : milestone, 1472,
appsec (2.348 ms) : 2304, 2392
. : milestone, 2348,
iast (2.127 ms) : 2071, 2183
. : milestone, 2127,
iast_GLOBAL (2.175 ms) : 2119, 2232
. : milestone, 2175,
profiling (1.966 ms) : 1922, 2010
. : milestone, 1966,
tracing (1.946 ms) : 1903, 1989
. : milestone, 1946,
Loading
  • baseline results
VariantExecution Time [CI 0.99]Δ no_agent
no_agent1.474 ms [1.463 ms, 1.486 ms]-
appsec2.352 ms [2.308 ms, 2.396 ms]877.819 µs (59.5%)
iast2.123 ms [2.068 ms, 2.179 ms]648.75 µs (44.0%)
iast_GLOBAL2.167 ms [2.111 ms, 2.222 ms]692.115 µs (46.9%)
profiling1.972 ms [1.928 ms, 2.017 ms]497.961 µs (33.8%)
tracing1.958 ms [1.915 ms, 2.0 ms]483.309 µs (32.8%)
  • candidate results
VariantExecution Time [CI 0.99]Δ no_agent
no_agent1.472 ms [1.46 ms, 1.483 ms]-
appsec2.348 ms [2.304 ms, 2.392 ms]876.326 µs (59.5%)
iast2.127 ms [2.071 ms, 2.183 ms]655.044 µs (44.5%)
iast_GLOBAL2.175 ms [2.119 ms, 2.232 ms]703.76 µs (47.8%)
profiling1.966 ms [1.922 ms, 2.01 ms]494.343 µs (33.6%)
tracing1.946 ms [1.903 ms, 1.989 ms]474.165 µs (32.2%)

@jandro996
jandro996 merged commit a7d732d into masterMar 26, 2025
@jandro996
jandro996 deleted the alejandro.gonzalez/Create-metric-appsec.rasp.rule.skipped branch March 26, 2025 07:16
svc-squareup-copybara pushed a commit to cashapp/misk that referenced this pull request Apr 11, 2025
| Package | Type | Package file | Manager | Update | Change |
|---|---|---|---|---|---|
| org.flywaydb.flyway | plugin | misk/gradle/libs.versions.toml | gradle
| minor | `11.6.0` -> `11.7.0` |
|
[com.squareup.okio:okio-fakefilesystem](https://github.com/square/okio)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`3.10.2` -> `3.11.0` |
| [com.squareup.okio:okio](https://github.com/square/okio) |
dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`3.10.2` -> `3.11.0` |
|
[com.autonomousapps.dependency-analysis](https://github.com/autonomousapps/dependency-analysis-android-gradle-plugin)
| plugin | misk/gradle/libs.versions.toml | gradle | minor | `2.15.0` ->
`2.16.0` |
| [com.datadoghq:dd-trace-api](https://github.com/datadog/dd-trace-java)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`1.47.3` -> `1.48.1` |
| [com.datadoghq:dd-trace-ot](https://github.com/datadog/dd-trace-java)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`1.47.3` -> `1.48.1` |
| [software.amazon.awssdk:sdk-core](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:sqs](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
|
[software.amazon.awssdk:dynamodb-enhanced](https://aws.amazon.com/sdkforjava)
| dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:dynamodb](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:aws-core](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:bom](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:auth](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
---
### Release Notes
<details>
<summary>square/okio (com.squareup.okio:okio-fakefilesystem)</summary>
###
[`v3.11.0`](https://github.com/square/okio/blob/HEAD/CHANGELOG.md#Version-3110)
*2025-04-09*
- Fix: Clear the deflater's byte array reference
- New: Faster implementation of `String.decodeHex()` on Kotlin/JS.
- New: Declare `EXACTLY_ONCE` execution for blocks like `Closeable.use
{}` and `FileSystem.read {}`.
- Upgrade: \[Kotlin 2.1.20]\[kotlin\_2\_1\_20].
</details>
<details>
<summary>autonomousapps/dependency-analysis-android-gradle-plugin
(com.autonomousapps.dependency-analysis)</summary>
###
[`v2.16.0`](https://github.com/autonomousapps/dependency-analysis-android-gradle-plugin/blob/HEAD/CHANGELOG.md#Version-2160)
- \[Feat]: support `com.android.test` projects.
- \[Feat]: support typesafe project accessors with opt-in.
```kotlin
dependencyAnalysis {
useTypesafeProjectAccessors(true) // false by default
}
```
</details>
<details>
<summary>datadog/dd-trace-java (com.datadoghq:dd-trace-api)</summary>
###
[`v1.48.1`](https://github.com/DataDog/dd-trace-java/releases/tag/v1.48.1):
1.48.1
### Components
#### Tracer internal logging
- 🐛 Remove print line causing unnecessary logs
([#&#8203;8687](DataDog/dd-trace-java#8687) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
###
[`v1.48.0`](https://github.com/DataDog/dd-trace-java/releases/tag/v1.48.0):
1.48.0
### Known Bugs
> \[!NOTE]
> If you are experiencing issues with spamming timeout logs, please
update to the [latest
version](https://github.com/DataDog/dd-trace-java/releases/latest) or
set
[JDK_SOCKET_ENABLED](https://github.com/DataDog/dd-trace-java/blob/33fc3c9a9b7cda3beda88b8b3e5224ae2b10764a/dd-trace-api/src/main/java/datadog/trace/api/config/GeneralConfig.java#L98)
to false.
### Components
#### Application Security Management (IAST)
- ✨ Fix vulnerability location org.jose4j.lang.HashUtil
([#&#8203;8610](DataDog/dd-trace-java#8610) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Fix weak randomness in oracle.ucp.util.OpaqueString
([#&#8203;8609](DataDog/dd-trace-java#8609) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Fix weak hash false positive in
oracle.security.o5logon.O5Logon
([#&#8203;8608](DataDog/dd-trace-java#8608) -
[@&#8203;jandro996](https://github.com/jandro996))
- 🐛 Prevent before callsites targeting constructors in super calls
([#&#8203;8549](DataDog/dd-trace-java#8549) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
#### Application Security Management (WAF)
- ✨ Update login events public SDK to V2
([#&#8203;8620](DataDog/dd-trace-java#8620) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- 🐛 Send RASP LFI capability only when AppSec is statically enabled
([#&#8203;8573](DataDog/dd-trace-java#8573) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Improve detection of missing request end events
([#&#8203;8510](DataDog/dd-trace-java#8510) -
[@&#8203;smola](https://github.com/smola))
- 🧹 Remove remote configuration for API Security sampling rate
([#&#8203;8486](DataDog/dd-trace-java#8486) -
[@&#8203;smola](https://github.com/smola))
- ✨ Add setUser to user monitoring SDK
([#&#8203;8482](DataDog/dd-trace-java#8482) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Add missing address for signup event
([#&#8203;8469](DataDog/dd-trace-java#8469) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Allow login events SDK to be used with appsec disabled
([#&#8203;8464](DataDog/dd-trace-java#8464) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Add support for endpoint discovery in spring mvc
([#&#8203;8352](DataDog/dd-trace-java#8352) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ New API Security sampling algorithm
([#&#8203;8178](DataDog/dd-trace-java#8178) -
[@&#8203;ValentinZakharov](https://github.com/ValentinZakharov))
#### Build & Tooling
- ✨ Add buffer size customizability to JDK UDS support
([#&#8203;8629](DataDog/dd-trace-java#8629) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
- ✨ Add JDK built-in support for UDS on Java 16+
([#&#8203;8314](DataDog/dd-trace-java#8314) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
#### Configuration at Runtime
- 🐛 Send RASP LFI capability only when AppSec is statically enabled
([#&#8203;8573](DataDog/dd-trace-java#8573) -
[@&#8203;jandro996](https://github.com/jandro996))
#### Continuous Integration Visibility
- 🐛 Prevent double reporting of Scalatest events when using SBT with
test forking
([#&#8203;8682](DataDog/dd-trace-java#8682) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Shutdown CI Visibility test event handlers before tracer
([#&#8203;8677](DataDog/dd-trace-java#8677) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Do not apply JUnit 4 instrumentation to MUnit runners
([#&#8203;8675](DataDog/dd-trace-java#8675),
[#&#8203;8683](DataDog/dd-trace-java#8683) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Remove error log when source path resolution fails on
isModified check
([#&#8203;8663](DataDog/dd-trace-java#8663) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- ✨ Implement tests reordering for JUnit 4
([#&#8203;8650](DataDog/dd-trace-java#8650) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- 🐛 Set default Attempt to Fix retries if none provided from the
backend
([#&#8203;8615](DataDog/dd-trace-java#8615) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- ✨ Allow to manually set PR info
([#&#8203;8566](DataDog/dd-trace-java#8566) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Fix Test Optimization init when repo root cannot be determined
([#&#8203;8533](DataDog/dd-trace-java#8533) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Add capabilities tagging
([#&#8203;8499](DataDog/dd-trace-java#8499),
[#&#8203;8540](DataDog/dd-trace-java#8540) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
#### Crash tracking
- 🐛 Remove dependency on bash from crash/oome uploder scripts
([#&#8203;8652](DataDog/dd-trace-java#8652) -
[@&#8203;jbachorik](https://github.com/jbachorik))
#### Data Streams Monitoring
- ✨ e2e pipeline configuration when data jobs is enabled
([#&#8203;8553](DataDog/dd-trace-java#8553) -
[@&#8203;kr-igor](https://github.com/kr-igor))
#### Dynamic Instrumentation
- 🐛 Fix In-Product when config is empty
([#&#8203;8679](DataDog/dd-trace-java#8679) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨ Add support for filtering shaded third-party libs
([#&#8203;8612](DataDog/dd-trace-java#8612) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨ Add In-Product Enablement
([#&#8203;8587](DataDog/dd-trace-java#8587) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨⚡ Reduce footprint of SourceFile tracking
([#&#8203;8524](DataDog/dd-trace-java#8524) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨⚡ Optimize the SourceFile tracking
([#&#8203;8520](DataDog/dd-trace-java#8520) -
[@&#8203;jpbempel](https://github.com/jpbempel))
#### OpenTracing
- 🧹 Remove activeScope() use in OpenTracing shim
([#&#8203;8478](DataDog/dd-trace-java#8478) -
[@&#8203;mcculls](https://github.com/mcculls))
#### Profiling
- ✨ Add profiler env check command to AgentCLI
([#&#8203;8671](DataDog/dd-trace-java#8671) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- ✨ Bump ddprof to 1.23.0
([#&#8203;8668](DataDog/dd-trace-java#8668) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- Fix a crash related to ElfParser::loadSymbolTable
([#&#8203;191](DataDog/dd-trace-java#191)) by
[@&#8203;yanglong1010](https://github.com/yanglong1010) in
DataDog/java-profiler#192
- Unwind String.indexOf intrinsic on AArch64 by
[@&#8203;MattAlp](https://github.com/MattAlp) in
DataDog/java-profiler#193
- Fix Java 24 support by
[@&#8203;jbachorik](https://github.com/jbachorik) in
DataDog/java-profiler#194
- A set of fixes related to clang, aarch64 and musl pecularities of
vmstructs stack unwinder by
[@&#8203;jbachorik](https://github.com/jbachorik) in
DataDog/java-profiler#199
- 🐛 Remove process information from JFR recording
([#&#8203;8661](DataDog/dd-trace-java#8661) -
[@&#8203;r1viollet](https://github.com/r1viollet))
- 🐛 Make TempLocationManager USER aware
([#&#8203;8605](DataDog/dd-trace-java#8605) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- ✨ Extract git tags from embedded git.properties and
datadog_git.properties
([#&#8203;8561](DataDog/dd-trace-java#8561) -
[@&#8203;wmouchere](https://github.com/wmouchere))
#### Telemetry
- 🐛 Fix appsec.rasp.error and appsec.waf.error telemetry metrics
([#&#8203;8624](DataDog/dd-trace-java#8624) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Create metric: appsec.rasp.rule.skipped
([#&#8203;8618](DataDog/dd-trace-java#8618) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Extract git tags from embedded git.properties and
datadog_git.properties
([#&#8203;8561](DataDog/dd-trace-java#8561) -
[@&#8203;wmouchere](https://github.com/wmouchere))
#### Testing
- 🧹 Simplify ssi tests one-pipeline
([#&#8203;8558](DataDog/dd-trace-java#8558) -
[@&#8203;robertomonteromiguel](https://github.com/robertomonteromiguel))
- ✨ Add smoke tests for java's concurrent API
([#&#8203;8438](DataDog/dd-trace-java#8438) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
#### Trace context propagation
- ✨ Adding Support for `TRACE_PROPAGATION_BEHAVIOR_EXTRACT`
([#&#8203;8535](DataDog/dd-trace-java#8535) -
[@&#8203;mhlidd](https://github.com/mhlidd))
#### Tracer core
- 🐛 Ensure shaded helpers have unique names
([#&#8203;8559](DataDog/dd-trace-java#8559) -
[@&#8203;amarziali](https://github.com/amarziali))
- ✨ Support common config sources for user-provided git info
([#&#8203;8547](DataDog/dd-trace-java#8547) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Make the default config sources more robust when a security
manager is installed
([#&#8203;8544](DataDog/dd-trace-java#8544) -
[@&#8203;mcculls](https://github.com/mcculls))
- ✨ Support targeting services with configurations in stable
configuration file
([#&#8203;8526](DataDog/dd-trace-java#8526) -
[@&#8203;mtoffl01](https://github.com/mtoffl01))
- ✨ Add new parser for `DD_TAGS` and prioritizing `DD_SERVICE`
([#&#8203;8296](DataDog/dd-trace-java#8296) -
[@&#8203;mhlidd](https://github.com/mhlidd))
#### Tracer internal logging
- 🐛 Add missing debug log for the cloudPayloadTaggingServices config
([#&#8203;8600](DataDog/dd-trace-java#8600) -
[@&#8203;ygree](https://github.com/ygree))
- ✨ Add the possibility to output the logs of the Java tracer
in JSON
([#&#8203;8083](DataDog/dd-trace-java#8083) -
[@&#8203;cecile75](https://github.com/cecile75))
#### Tracer public API
- ✨ Introducing `DD_TRACE_EXPERIMENTAL_FEATURES_ENABLED` Config
([#&#8203;8536](DataDog/dd-trace-java#8536) -
[@&#8203;mhlidd](https://github.com/mhlidd))
- ✨ Config Consistency Round 2
([#&#8203;8489](DataDog/dd-trace-java#8489) -
[@&#8203;mhlidd](https://github.com/mhlidd))
### Instrumentations
####
- 🐛 Fix NPE in getMdcCopy of LoggingEventInstrumentation
([#&#8203;8599](DataDog/dd-trace-java#8599) -
[@&#8203;ygree](https://github.com/ygree))
#### Apache Spark instrumentation
- ✨ Instrument Runtime.exit() to finish spark application spans
([#&#8203;8572](DataDog/dd-trace-java#8572) -
[@&#8203;paul-laffon-dd](https://github.com/paul-laffon-dd))
- ✨ Configure OpenLineage if present in Spark instrumentation
([#&#8203;8541](DataDog/dd-trace-java#8541) -
[@&#8203;mobuchowski](https://github.com/mobuchowski))
#### Armeria Instrumentation
- ✨ Support armeria grpc 1.32.3
([#&#8203;8606](DataDog/dd-trace-java#8606) -
[@&#8203;github-actions](https://github.com/github-actions)\[bot])
#### AWS DynamoDB Instrumentation
- ✨ Create DynamoDB instrumentation + add span pointers for
`updateItem` and `deleteItem`
([#&#8203;8490](DataDog/dd-trace-java#8490) -
[@&#8203;nhulston](https://github.com/nhulston))
#### AWS SDK instrumentation
- ✨ Add DynamoDB in
DEFAULT_TRACE_CLOUD_PAYLOAD_TAGGING_SERVICES
([#&#8203;8595](DataDog/dd-trace-java#8595) -
[@&#8203;joeyzhao2018](https://github.com/joeyzhao2018))
#### Azure Functions instrumentation
- ✨ Enable tracer computed trace metrics by default for Azure
Functions
([#&#8203;8518](DataDog/dd-trace-java#8518) -
[@&#8203;duncanpharvey](https://github.com/duncanpharvey))
- 💡 Add azure-functions instrumentation
([#&#8203;8432](DataDog/dd-trace-java#8432) -
[@&#8203;duncanpharvey](https://github.com/duncanpharvey))
#### Core Java language instrumentation
- 🐛 Fix ForkJoinPool.execute() instrumentation on Java 21+
([#&#8203;8560](DataDog/dd-trace-java#8560) -
[@&#8203;PerfectSlayer](https://github.com/PerfectSlayer))
#### Eclipse Vert.x instrumentation
- ✨ Add vertx postgresql client instrumentation
([#&#8203;8471](DataDog/dd-trace-java#8471) -
[@&#8203;vandonr](https://github.com/vandonr) - thanks for the
contribution!)
#### Kafka instrumentation
- ✨ Support and test kafka-clients 4
([#&#8203;8581](DataDog/dd-trace-java#8581) -
[@&#8203;amarziali](https://github.com/amarziali))
#### Kotlin instrumentation
- ✨ Avoid disconnected traces when using Kotlin flowOn
([#&#8203;8651](DataDog/dd-trace-java#8651) -
[@&#8203;mcculls](https://github.com/mcculls))
#### OpenTelemetry instrumentation
- 🧹 Migrate OtelContext wrapper to new internal Context API
([#&#8203;8645](DataDog/dd-trace-java#8645) -
[@&#8203;mcculls](https://github.com/mcculls))
#### Spring instrumentation
- 🐛 Support CompletableFuture on spring webmvc controllers
([#&#8203;8659](DataDog/dd-trace-java#8659) -
[@&#8203;amarziali](https://github.com/amarziali))
- ✨ Add support for endpoint discovery in spring mvc
([#&#8203;8352](DataDog/dd-trace-java#8352) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
#### WebSocket Instrumentation
- ✨ Instrument Jetty websocket pojo
([#&#8203;8562](DataDog/dd-trace-java#8562) -
[@&#8203;amarziali](https://github.com/amarziali))
- 💡 Instrument Java Websocket API (JSR356)
([#&#8203;8440](DataDog/dd-trace-java#8440) -
[@&#8203;amarziali](https://github.com/amarziali))
#### All other instrumentations
- ✨ Introduce cache for peer.hostname lookup
([#&#8203;8601](DataDog/dd-trace-java#8601) -
[@&#8203;mcculls](https://github.com/mcculls))
- ✨ Support pekko http 1.1
([#&#8203;8532](DataDog/dd-trace-java#8532) -
[@&#8203;amarziali](https://github.com/amarziali))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - "after 6pm every weekday,before 2am
every weekday" in timezone Australia/Melbourne, Automerge - At any time
(no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you
are satisfied.
♻ **Rebasing**: Never, or you tick the rebase/retry checkbox.
👻 **Immortal**: This PR will be recreated if closed unmerged. Get
[config help](https://github.com/renovatebot/renovate/discussions) if
that's undesired.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box
---
This PR has been generated by [Renovate
Bot](https://github.com/renovatebot/renovate).
GitOrigin-RevId: 331314f71acaced3adc75ea5d7e855c248d593fc
eizus pushed a commit to cdrxyz/misk that referenced this pull request Jul 18, 2026
| Package | Type | Package file | Manager | Update | Change |
|---|---|---|---|---|---|
| org.flywaydb.flyway | plugin | misk/gradle/libs.versions.toml | gradle
| minor | `11.6.0` -> `11.7.0` |
|
[com.squareup.okio:okio-fakefilesystem](https://github.com/square/okio)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`3.10.2` -> `3.11.0` |
| [com.squareup.okio:okio](https://github.com/square/okio) |
dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`3.10.2` -> `3.11.0` |
|
[com.autonomousapps.dependency-analysis](https://github.com/autonomousapps/dependency-analysis-android-gradle-plugin)
| plugin | misk/gradle/libs.versions.toml | gradle | minor | `2.15.0` ->
`2.16.0` |
| [com.datadoghq:dd-trace-api](https://github.com/datadog/dd-trace-java)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`1.47.3` -> `1.48.1` |
| [com.datadoghq:dd-trace-ot](https://github.com/datadog/dd-trace-java)
| dependencies | misk/gradle/libs.versions.toml | gradle | minor |
`1.47.3` -> `1.48.1` |
| [software.amazon.awssdk:sdk-core](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:sqs](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
|
[software.amazon.awssdk:dynamodb-enhanced](https://aws.amazon.com/sdkforjava)
| dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:dynamodb](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:aws-core](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:bom](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
| [software.amazon.awssdk:auth](https://aws.amazon.com/sdkforjava) |
dependencies | misk/gradle/libs.versions.toml | gradle | patch |
`2.31.18` -> `2.31.20` |
---
### Release Notes
<details>
<summary>square/okio (com.squareup.okio:okio-fakefilesystem)</summary>
###
[`v3.11.0`](https://github.com/square/okio/blob/HEAD/CHANGELOG.md#Version-3110)
*2025-04-09*
- Fix: Clear the deflater's byte array reference
- New: Faster implementation of `String.decodeHex()` on Kotlin/JS.
- New: Declare `EXACTLY_ONCE` execution for blocks like `Closeable.use
{}` and `FileSystem.read {}`.
- Upgrade: \[Kotlin 2.1.20]\[kotlin\_2\_1\_20].
</details>
<details>
<summary>autonomousapps/dependency-analysis-android-gradle-plugin
(com.autonomousapps.dependency-analysis)</summary>
###
[`v2.16.0`](https://github.com/autonomousapps/dependency-analysis-android-gradle-plugin/blob/HEAD/CHANGELOG.md#Version-2160)
- \[Feat]: support `com.android.test` projects.
- \[Feat]: support typesafe project accessors with opt-in.
```kotlin
dependencyAnalysis {
useTypesafeProjectAccessors(true) // false by default
}
```
</details>
<details>
<summary>datadog/dd-trace-java (com.datadoghq:dd-trace-api)</summary>
###
[`v1.48.1`](https://github.com/DataDog/dd-trace-java/releases/tag/v1.48.1):
1.48.1
### Components
#### Tracer internal logging
- 🐛 Remove print line causing unnecessary logs
([#&#8203;8687](DataDog/dd-trace-java#8687) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
###
[`v1.48.0`](https://github.com/DataDog/dd-trace-java/releases/tag/v1.48.0):
1.48.0
### Known Bugs
> \[!NOTE]
> If you are experiencing issues with spamming timeout logs, please
update to the [latest
version](https://github.com/DataDog/dd-trace-java/releases/latest) or
set
[JDK_SOCKET_ENABLED](https://github.com/DataDog/dd-trace-java/blob/33fc3c9a9b7cda3beda88b8b3e5224ae2b10764a/dd-trace-api/src/main/java/datadog/trace/api/config/GeneralConfig.java#L98)
to false.
### Components
#### Application Security Management (IAST)
- ✨ Fix vulnerability location org.jose4j.lang.HashUtil
([#&#8203;8610](DataDog/dd-trace-java#8610) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Fix weak randomness in oracle.ucp.util.OpaqueString
([#&#8203;8609](DataDog/dd-trace-java#8609) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Fix weak hash false positive in
oracle.security.o5logon.O5Logon
([#&#8203;8608](DataDog/dd-trace-java#8608) -
[@&#8203;jandro996](https://github.com/jandro996))
- 🐛 Prevent before callsites targeting constructors in super calls
([#&#8203;8549](DataDog/dd-trace-java#8549) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
#### Application Security Management (WAF)
- ✨ Update login events public SDK to V2
([#&#8203;8620](DataDog/dd-trace-java#8620) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- 🐛 Send RASP LFI capability only when AppSec is statically enabled
([#&#8203;8573](DataDog/dd-trace-java#8573) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Improve detection of missing request end events
([#&#8203;8510](DataDog/dd-trace-java#8510) -
[@&#8203;smola](https://github.com/smola))
- 🧹 Remove remote configuration for API Security sampling rate
([#&#8203;8486](DataDog/dd-trace-java#8486) -
[@&#8203;smola](https://github.com/smola))
- ✨ Add setUser to user monitoring SDK
([#&#8203;8482](DataDog/dd-trace-java#8482) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Add missing address for signup event
([#&#8203;8469](DataDog/dd-trace-java#8469) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Allow login events SDK to be used with appsec disabled
([#&#8203;8464](DataDog/dd-trace-java#8464) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ Add support for endpoint discovery in spring mvc
([#&#8203;8352](DataDog/dd-trace-java#8352) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
- ✨ New API Security sampling algorithm
([#&#8203;8178](DataDog/dd-trace-java#8178) -
[@&#8203;ValentinZakharov](https://github.com/ValentinZakharov))
#### Build & Tooling
- ✨ Add buffer size customizability to JDK UDS support
([#&#8203;8629](DataDog/dd-trace-java#8629) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
- ✨ Add JDK built-in support for UDS on Java 16+
([#&#8203;8314](DataDog/dd-trace-java#8314) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
#### Configuration at Runtime
- 🐛 Send RASP LFI capability only when AppSec is statically enabled
([#&#8203;8573](DataDog/dd-trace-java#8573) -
[@&#8203;jandro996](https://github.com/jandro996))
#### Continuous Integration Visibility
- 🐛 Prevent double reporting of Scalatest events when using SBT with
test forking
([#&#8203;8682](DataDog/dd-trace-java#8682) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Shutdown CI Visibility test event handlers before tracer
([#&#8203;8677](DataDog/dd-trace-java#8677) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Do not apply JUnit 4 instrumentation to MUnit runners
([#&#8203;8675](DataDog/dd-trace-java#8675),
[#&#8203;8683](DataDog/dd-trace-java#8683) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Remove error log when source path resolution fails on
isModified check
([#&#8203;8663](DataDog/dd-trace-java#8663) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- ✨ Implement tests reordering for JUnit 4
([#&#8203;8650](DataDog/dd-trace-java#8650) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- 🐛 Set default Attempt to Fix retries if none provided from the
backend
([#&#8203;8615](DataDog/dd-trace-java#8615) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
- ✨ Allow to manually set PR info
([#&#8203;8566](DataDog/dd-trace-java#8566) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- 🐛 Fix Test Optimization init when repo root cannot be determined
([#&#8203;8533](DataDog/dd-trace-java#8533) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Add capabilities tagging
([#&#8203;8499](DataDog/dd-trace-java#8499),
[#&#8203;8540](DataDog/dd-trace-java#8540) -
[@&#8203;daniel-mohedano](https://github.com/daniel-mohedano))
#### Crash tracking
- 🐛 Remove dependency on bash from crash/oome uploder scripts
([#&#8203;8652](DataDog/dd-trace-java#8652) -
[@&#8203;jbachorik](https://github.com/jbachorik))
#### Data Streams Monitoring
- ✨ e2e pipeline configuration when data jobs is enabled
([#&#8203;8553](DataDog/dd-trace-java#8553) -
[@&#8203;kr-igor](https://github.com/kr-igor))
#### Dynamic Instrumentation
- 🐛 Fix In-Product when config is empty
([#&#8203;8679](DataDog/dd-trace-java#8679) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨ Add support for filtering shaded third-party libs
([#&#8203;8612](DataDog/dd-trace-java#8612) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨ Add In-Product Enablement
([#&#8203;8587](DataDog/dd-trace-java#8587) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨⚡ Reduce footprint of SourceFile tracking
([#&#8203;8524](DataDog/dd-trace-java#8524) -
[@&#8203;jpbempel](https://github.com/jpbempel))
- ✨⚡ Optimize the SourceFile tracking
([#&#8203;8520](DataDog/dd-trace-java#8520) -
[@&#8203;jpbempel](https://github.com/jpbempel))
#### OpenTracing
- 🧹 Remove activeScope() use in OpenTracing shim
([#&#8203;8478](DataDog/dd-trace-java#8478) -
[@&#8203;mcculls](https://github.com/mcculls))
#### Profiling
- ✨ Add profiler env check command to AgentCLI
([#&#8203;8671](DataDog/dd-trace-java#8671) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- ✨ Bump ddprof to 1.23.0
([#&#8203;8668](DataDog/dd-trace-java#8668) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- Fix a crash related to ElfParser::loadSymbolTable
([#&#8203;191](DataDog/dd-trace-java#191)) by
[@&#8203;yanglong1010](https://github.com/yanglong1010) in
DataDog/java-profiler#192
- Unwind String.indexOf intrinsic on AArch64 by
[@&#8203;MattAlp](https://github.com/MattAlp) in
DataDog/java-profiler#193
- Fix Java 24 support by
[@&#8203;jbachorik](https://github.com/jbachorik) in
DataDog/java-profiler#194
- A set of fixes related to clang, aarch64 and musl pecularities of
vmstructs stack unwinder by
[@&#8203;jbachorik](https://github.com/jbachorik) in
DataDog/java-profiler#199
- 🐛 Remove process information from JFR recording
([#&#8203;8661](DataDog/dd-trace-java#8661) -
[@&#8203;r1viollet](https://github.com/r1viollet))
- 🐛 Make TempLocationManager USER aware
([#&#8203;8605](DataDog/dd-trace-java#8605) -
[@&#8203;jbachorik](https://github.com/jbachorik))
- ✨ Extract git tags from embedded git.properties and
datadog_git.properties
([#&#8203;8561](DataDog/dd-trace-java#8561) -
[@&#8203;wmouchere](https://github.com/wmouchere))
#### Telemetry
- 🐛 Fix appsec.rasp.error and appsec.waf.error telemetry metrics
([#&#8203;8624](DataDog/dd-trace-java#8624) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Create metric: appsec.rasp.rule.skipped
([#&#8203;8618](DataDog/dd-trace-java#8618) -
[@&#8203;jandro996](https://github.com/jandro996))
- ✨ Extract git tags from embedded git.properties and
datadog_git.properties
([#&#8203;8561](DataDog/dd-trace-java#8561) -
[@&#8203;wmouchere](https://github.com/wmouchere))
#### Testing
- 🧹 Simplify ssi tests one-pipeline
([#&#8203;8558](DataDog/dd-trace-java#8558) -
[@&#8203;robertomonteromiguel](https://github.com/robertomonteromiguel))
- ✨ Add smoke tests for java's concurrent API
([#&#8203;8438](DataDog/dd-trace-java#8438) -
[@&#8203;sarahchen6](https://github.com/sarahchen6))
#### Trace context propagation
- ✨ Adding Support for `TRACE_PROPAGATION_BEHAVIOR_EXTRACT`
([#&#8203;8535](DataDog/dd-trace-java#8535) -
[@&#8203;mhlidd](https://github.com/mhlidd))
#### Tracer core
- 🐛 Ensure shaded helpers have unique names
([#&#8203;8559](DataDog/dd-trace-java#8559) -
[@&#8203;amarziali](https://github.com/amarziali))
- ✨ Support common config sources for user-provided git info
([#&#8203;8547](DataDog/dd-trace-java#8547) -
[@&#8203;nikita-tkachenko-datadog](https://github.com/nikita-tkachenko-datadog))
- ✨ Make the default config sources more robust when a security
manager is installed
([#&#8203;8544](DataDog/dd-trace-java#8544) -
[@&#8203;mcculls](https://github.com/mcculls))
- ✨ Support targeting services with configurations in stable
configuration file
([#&#8203;8526](DataDog/dd-trace-java#8526) -
[@&#8203;mtoffl01](https://github.com/mtoffl01))
- ✨ Add new parser for `DD_TAGS` and prioritizing `DD_SERVICE`
([#&#8203;8296](DataDog/dd-trace-java#8296) -
[@&#8203;mhlidd](https://github.com/mhlidd))
#### Tracer internal logging
- 🐛 Add missing debug log for the cloudPayloadTaggingServices config
([#&#8203;8600](DataDog/dd-trace-java#8600) -
[@&#8203;ygree](https://github.com/ygree))
- ✨ Add the possibility to output the logs of the Java tracer
in JSON
([#&#8203;8083](DataDog/dd-trace-java#8083) -
[@&#8203;cecile75](https://github.com/cecile75))
#### Tracer public API
- ✨ Introducing `DD_TRACE_EXPERIMENTAL_FEATURES_ENABLED` Config
([#&#8203;8536](DataDog/dd-trace-java#8536) -
[@&#8203;mhlidd](https://github.com/mhlidd))
- ✨ Config Consistency Round 2
([#&#8203;8489](DataDog/dd-trace-java#8489) -
[@&#8203;mhlidd](https://github.com/mhlidd))
### Instrumentations
####
- 🐛 Fix NPE in getMdcCopy of LoggingEventInstrumentation
([#&#8203;8599](DataDog/dd-trace-java#8599) -
[@&#8203;ygree](https://github.com/ygree))
#### Apache Spark instrumentation
- ✨ Instrument Runtime.exit() to finish spark application spans
([#&#8203;8572](DataDog/dd-trace-java#8572) -
[@&#8203;paul-laffon-dd](https://github.com/paul-laffon-dd))
- ✨ Configure OpenLineage if present in Spark instrumentation
([#&#8203;8541](DataDog/dd-trace-java#8541) -
[@&#8203;mobuchowski](https://github.com/mobuchowski))
#### Armeria Instrumentation
- ✨ Support armeria grpc 1.32.3
([#&#8203;8606](DataDog/dd-trace-java#8606) -
[@&#8203;github-actions](https://github.com/github-actions)\[bot])
#### AWS DynamoDB Instrumentation
- ✨ Create DynamoDB instrumentation + add span pointers for
`updateItem` and `deleteItem`
([#&#8203;8490](DataDog/dd-trace-java#8490) -
[@&#8203;nhulston](https://github.com/nhulston))
#### AWS SDK instrumentation
- ✨ Add DynamoDB in
DEFAULT_TRACE_CLOUD_PAYLOAD_TAGGING_SERVICES
([#&#8203;8595](DataDog/dd-trace-java#8595) -
[@&#8203;joeyzhao2018](https://github.com/joeyzhao2018))
#### Azure Functions instrumentation
- ✨ Enable tracer computed trace metrics by default for Azure
Functions
([#&#8203;8518](DataDog/dd-trace-java#8518) -
[@&#8203;duncanpharvey](https://github.com/duncanpharvey))
- 💡 Add azure-functions instrumentation
([#&#8203;8432](DataDog/dd-trace-java#8432) -
[@&#8203;duncanpharvey](https://github.com/duncanpharvey))
#### Core Java language instrumentation
- 🐛 Fix ForkJoinPool.execute() instrumentation on Java 21+
([#&#8203;8560](DataDog/dd-trace-java#8560) -
[@&#8203;PerfectSlayer](https://github.com/PerfectSlayer))
#### Eclipse Vert.x instrumentation
- ✨ Add vertx postgresql client instrumentation
([#&#8203;8471](DataDog/dd-trace-java#8471) -
[@&#8203;vandonr](https://github.com/vandonr) - thanks for the
contribution!)
#### Kafka instrumentation
- ✨ Support and test kafka-clients 4
([#&#8203;8581](DataDog/dd-trace-java#8581) -
[@&#8203;amarziali](https://github.com/amarziali))
#### Kotlin instrumentation
- ✨ Avoid disconnected traces when using Kotlin flowOn
([#&#8203;8651](DataDog/dd-trace-java#8651) -
[@&#8203;mcculls](https://github.com/mcculls))
#### OpenTelemetry instrumentation
- 🧹 Migrate OtelContext wrapper to new internal Context API
([#&#8203;8645](DataDog/dd-trace-java#8645) -
[@&#8203;mcculls](https://github.com/mcculls))
#### Spring instrumentation
- 🐛 Support CompletableFuture on spring webmvc controllers
([#&#8203;8659](DataDog/dd-trace-java#8659) -
[@&#8203;amarziali](https://github.com/amarziali))
- ✨ Add support for endpoint discovery in spring mvc
([#&#8203;8352](DataDog/dd-trace-java#8352) -
[@&#8203;manuel-alvarez-alvarez](https://github.com/manuel-alvarez-alvarez))
#### WebSocket Instrumentation
- ✨ Instrument Jetty websocket pojo
([#&#8203;8562](DataDog/dd-trace-java#8562) -
[@&#8203;amarziali](https://github.com/amarziali))
- 💡 Instrument Java Websocket API (JSR356)
([#&#8203;8440](DataDog/dd-trace-java#8440) -
[@&#8203;amarziali](https://github.com/amarziali))
#### All other instrumentations
- ✨ Introduce cache for peer.hostname lookup
([#&#8203;8601](DataDog/dd-trace-java#8601) -
[@&#8203;mcculls](https://github.com/mcculls))
- ✨ Support pekko http 1.1
([#&#8203;8532](DataDog/dd-trace-java#8532) -
[@&#8203;amarziali](https://github.com/amarziali))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - "after 6pm every weekday,before 2am
every weekday" in timezone Australia/Melbourne, Automerge - At any time
(no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you
are satisfied.
♻ **Rebasing**: Never, or you tick the rebase/retry checkbox.
👻 **Immortal**: This PR will be recreated if closed unmerged. Get
[config help](https://github.com/renovatebot/renovate/discussions) if
that's undesired.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box
---
This PR has been generated by [Renovate
Bot](https://github.com/renovatebot/renovate).
GitOrigin-RevId: 331314f71acaced3adc75ea5d7e855c248d593fc
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

comp: telemetryTelemetrytype: featureEnhancements and improvements

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@jandro996@smola@manuel-alvarez-alvarez