Skip to content

v26.1-Alpha.7 — Audit identity + log filtering

Pre-release
Pre-release

Choose a tag to compare

@StarsailsClover StarsailsClover released this 05 Sep 09:26
· 4 commits to v26.1 since this release
v26.1-Alpha.7
5070464

BCDebugJavaAgent v26.1-Alpha.7

Pre-Release — Alpha builds are functional but unstable. Do not run in production environments.

Highlights

Audit & observability hardening:

  • Audit records now carry the caller address (remote), and failed
    authorizations are audited as op=auth-fail with the probed path — every
    unauthorized touch of the control plane leaves a trace.
  • /export is audited (op=export) on both frontends.
  • /logs gains filters on both frontends: level (severity floor),
    contains (message substring), limit — newest-first output.
  • /status now exposes mutedPrefixes count and tokenEnabled visibility.

Validation

Live on MC 1.21.1 dedicated server with httpToken=tokA7:

Check Result
No token 401
Bad token 401
Good token 200 + tokenEnabled:true, mutedPrefixes:0
Auth-fail audit 31 records with remote:"/127.0.0.1:xxxxx"
/logs?level=INFO&contains=mappings mapping chain rows returned
/logs?level=WARN&contains=mappings 0 rows (correct severity floor)
/logs?contains=tick DEBUG ServerLevel tick rows

54 unit tests green.

Build Information

Item Value
Artifact bcdebug-javaagent-v26.1-Alpha.7.jar (bytecode 52 — JDK 8+)
Commit 5070464 (SSH-signed, Verified)
Tag v26.1-Alpha.7 (SSH-signed, Verified)

安装说明(中文)

  1. 下载 bcdebug-javaagent-v26.1-Alpha.7.jar。
  2. 令牌请求示例:/status?token=<secret> 或头 X-BCDebug-Token: <secret>。
  3. 鉴权失败将进入审计(含来源地址);/logs 支持 level/contains/limit。
  4. Alpha 版本不稳定,请勿用于生产环境。

MIT License — Copyright (c) 2026 BlockConnect