Add security response id to AppSec blocking response#5049
Conversation
Typing analysisNote: Ignored files are excluded from the next sections. Untyped methodsThis PR introduces 1 partially typed method, and clears 1 partially typed method. Partially typed methods (+1-1)❌ Introduced:If you believe a method or an attribute is rightfully untyped or partially typed, you can add |
bb2b04f to
24ac60d
Compare
BenchmarksBenchmark execution time: 2025-11-17 15:53:38 Comparing candidate commit 7ecc8d0 in PR branch Found 0 performance improvements and 0 performance regressions! Performance is the same for 44 metrics, 2 unstable metrics. |
|
✅ Tests 🎉 All green!❄️ No new flaky tests detected 🎯 Code Coverage 🔗 Commit SHA: 682849d | Docs | Datadog PR Page | Was this helpful? Give us feedback! |
Strech
left a comment
There was a problem hiding this comment.
I left few non-blocking comments with minor improvements
This unique identifier, introduced in `libddwaf` v1.28.0, can be used to correlate blocked requests with logs, traces, and security events.
7ecc8d0 to
682849d
Compare
What does this PR do?
This PR adds rendering of unique security response identifier in the response when AppSec blocks the request.
Motivation:
This unique identifier, introduced in
libddwafv1.28.0, can be used to correlate blocked requests with logs, traces, and security events.Change log entry
Yes. AppSec: Add unique security response identifier in the response body for blocked requests.
Additional Notes:
APPSEC-59951.
How to test the change?
CI and manual testing.