# Structured Streaming using the Python DataFrames API

Apache Spark includes a high-level stream processing API, [Structured Streaming](http://spark.apache.org/docs/latest/structured-streaming-programming-guide.html). In this notebook we take a quick look at how to use the DataFrame API to build Structured Streaming applications. We want to compute real-time metrics like running counts and windowed counts on a stream of timestamped actions (e.g. Open, Close, etc).

To run this notebook, import it and attach it to a Spark cluster.

## Sample Data
We have some sample action data as files in `/databricks-datasets/structured-streaming/events/` which we are going to use to build this appication. Let's take a look at the contents of this directory.

In [0]:
# Look at the content of the following folder: /databricks-datasets/structured-streaming/events/
# What do you see?
display(dbutils.fs.ls("/databricks-datasets/structured-streaming/events/"))

path,name,size,modificationTime
dbfs:/databricks-datasets/structured-streaming/events/file-0.json,file-0.json,72530,1469673865000
dbfs:/databricks-datasets/structured-streaming/events/file-1.json,file-1.json,72961,1469673866000
dbfs:/databricks-datasets/structured-streaming/events/file-10.json,file-10.json,73025,1469673878000
dbfs:/databricks-datasets/structured-streaming/events/file-11.json,file-11.json,72999,1469673879000
dbfs:/databricks-datasets/structured-streaming/events/file-12.json,file-12.json,72987,1469673880000
dbfs:/databricks-datasets/structured-streaming/events/file-13.json,file-13.json,73006,1469673881000
dbfs:/databricks-datasets/structured-streaming/events/file-14.json,file-14.json,73003,1469673882000
dbfs:/databricks-datasets/structured-streaming/events/file-15.json,file-15.json,73007,1469673883000
dbfs:/databricks-datasets/structured-streaming/events/file-16.json,file-16.json,72978,1469673885000
dbfs:/databricks-datasets/structured-streaming/events/file-17.json,file-17.json,73008,1469673886000


There are about 50 JSON files in the directory. Let's see what each JSON file contains.

In [0]:
# Look at the functions head in dbutils
# Open one file
dbutils.help()

Each line in the file contains JSON record with two fields - `time` and `action`. Let's try to analyze these files interactively.

In [0]:
dbutils.fs.help()

## Batch/Interactive Processing
The usual first step in attempting to process the data is to interactively query the data. Let's define a static DataFrame on the files, and give it a table name.

In [0]:
from pyspark.sql.types import *

inputPath = "/databricks-datasets/structured-streaming/events/"

# Since we know the data format already, let's define the schema to speed up processing (no need for Spark to infer schema)
jsonSchema = StructType(
  [ StructField("time", TimestampType(), True),
   StructField("action", StringType(), True) ]
)



In [0]:
# Read all json files, taking into account the defined schema, and display the content 
staticInputDF = spark.read.schema(jsonSchema).json(inputPath)
display(staticInputDF)

time,action
2016-07-28T04:19:28.000+0000,Close
2016-07-28T04:19:28.000+0000,Close
2016-07-28T04:19:29.000+0000,Open
2016-07-28T04:19:31.000+0000,Close
2016-07-28T04:19:31.000+0000,Open
2016-07-28T04:19:31.000+0000,Open
2016-07-28T04:19:32.000+0000,Close
2016-07-28T04:19:33.000+0000,Close
2016-07-28T04:19:35.000+0000,Close
2016-07-28T04:19:36.000+0000,Open


- Compare the dates from the output without schema and with it. 
- Did you notice that inputPath is a folder?

**Comparison of dates:**
> - Without schema: Dates are read as strings (StringType), not timestamps.
> - With schema: Dates are properly parsed as TimestampType, enabling time-based operations like windowing.

In [0]:
# Calculate the total number of 'Open' and 'Close' actions 
from pyspark.sql.functions import col

staticInputDF.filter(col("action").isin("Open", "Close")) \
    .groupBy("action") \
    .count() \
    .show()


+------+-----+
|action|count|
+------+-----+
|  Open|50000|
| Close|50000|
+------+-----+



In [0]:
# Determine min and max time
from pyspark.sql.functions import min, max

staticInputDF.select(min("time").alias("min_time"), max("time").alias("max_time")).show()

+-------------------+-------------------+
|           min_time|           max_time|
+-------------------+-------------------+
|2016-07-26 02:45:07|2016-07-28 06:48:19|
+-------------------+-------------------+



In [0]:
# Calculate the number of "open" and "close" actions with one hour windows: staticCountsDF
# Look at groupBy(..., window) function
from pyspark.sql.functions import window, col

staticCountsDF = staticInputDF \
    .filter(col("action").isin("Open", "Close")) \
    .groupBy(
        window(col("time"), "1 hour"),
        col("action")
    ) \
    .count() \
    .orderBy("window")

display(staticCountsDF)

window,action,count
"List(2016-07-26T02:00:00.000+0000, 2016-07-26T03:00:00.000+0000)",Open,179
"List(2016-07-26T02:00:00.000+0000, 2016-07-26T03:00:00.000+0000)",Close,11
"List(2016-07-26T03:00:00.000+0000, 2016-07-26T04:00:00.000+0000)",Close,344
"List(2016-07-26T03:00:00.000+0000, 2016-07-26T04:00:00.000+0000)",Open,1001
"List(2016-07-26T04:00:00.000+0000, 2016-07-26T05:00:00.000+0000)",Close,815
"List(2016-07-26T04:00:00.000+0000, 2016-07-26T05:00:00.000+0000)",Open,999
"List(2016-07-26T05:00:00.000+0000, 2016-07-26T06:00:00.000+0000)",Close,1003
"List(2016-07-26T05:00:00.000+0000, 2016-07-26T06:00:00.000+0000)",Open,1000
"List(2016-07-26T06:00:00.000+0000, 2016-07-26T07:00:00.000+0000)",Open,993
"List(2016-07-26T06:00:00.000+0000, 2016-07-26T07:00:00.000+0000)",Close,1011


In [0]:
# Make this window a sliding window (30 minutes overlap): staticCountsSW
staticCountsSW = staticInputDF \
    .filter(col("action").isin("Open", "Close")) \
    .groupBy(
        window(col("time"), "1 hour", "30 minutes"),
        col("action")
    ) \
    .count() \
    .orderBy("window")

display(staticCountsSW)

window,action,count
"List(2016-07-26T02:00:00.000+0000, 2016-07-26T03:00:00.000+0000)",Open,179
"List(2016-07-26T02:00:00.000+0000, 2016-07-26T03:00:00.000+0000)",Close,11
"List(2016-07-26T02:30:00.000+0000, 2016-07-26T03:30:00.000+0000)",Close,116
"List(2016-07-26T02:30:00.000+0000, 2016-07-26T03:30:00.000+0000)",Open,680
"List(2016-07-26T03:00:00.000+0000, 2016-07-26T04:00:00.000+0000)",Close,344
"List(2016-07-26T03:00:00.000+0000, 2016-07-26T04:00:00.000+0000)",Open,1001
"List(2016-07-26T03:30:00.000+0000, 2016-07-26T04:30:00.000+0000)",Close,581
"List(2016-07-26T03:30:00.000+0000, 2016-07-26T04:30:00.000+0000)",Open,993
"List(2016-07-26T04:00:00.000+0000, 2016-07-26T05:00:00.000+0000)",Close,815
"List(2016-07-26T04:00:00.000+0000, 2016-07-26T05:00:00.000+0000)",Open,999


In [0]:
# Register staticCountsDF (createOrReplaceTempView) as table 'static_counts'
staticCountsDF.createOrReplaceTempView("static_counts")

Now we can directly use SQL to query the table.

In [0]:
%sql
-- Count all Open and Close actions in the table static_counts  
SELECT action, SUM(count) AS total_count
FROM static_counts
GROUP BY action

action,total_count
Open,50000
Close,50000


In [0]:
%sql
-- How many actions (Close and Open separately) is within each time window (in the table static_counts)
-- Make a plot
SELECT window.start AS window_start, action, count
FROM static_counts
ORDER BY window_start, action

window_start,action,count
2016-07-26T02:00:00.000+0000,Close,11
2016-07-26T02:00:00.000+0000,Open,179
2016-07-26T03:00:00.000+0000,Close,344
2016-07-26T03:00:00.000+0000,Open,1001
2016-07-26T04:00:00.000+0000,Close,815
2016-07-26T04:00:00.000+0000,Open,999
2016-07-26T05:00:00.000+0000,Close,1003
2016-07-26T05:00:00.000+0000,Open,1000
2016-07-26T06:00:00.000+0000,Close,1011
2016-07-26T06:00:00.000+0000,Open,993


Note the two ends of the graph. The close actions are generated such that they are after the corresponding open actions, so there are more "opens" in the beginning and more "closes" in the end.

## Demo: Stream Processing 
Now that we have analyzed the data interactively, let's convert this to a streaming query that continuously updates as data comes. Since we just have a static set of files, we are going to emulate a stream from them by reading one file at a time, in the chronological order they were created. The query we have to write is pretty much the same as the interactive query above.

In [0]:
from pyspark.sql.functions import *

# Read data from a file
# Similar to definition of staticInputDF above, just using `readStream` instead of `read`
streamingInputDF = (
  spark
    .readStream                       
    .schema(jsonSchema)               # Set the schema of the JSON data
    .option("maxFilesPerTrigger", 1)  # Treat a sequence of files as a stream by picking one file at a time
    .json(inputPath)
)

# Do some transformations
# Same query as staticInputDF
streamingCountsDF = (                 
  streamingInputDF
    .groupBy(
      streamingInputDF.action, 
      window(streamingInputDF.time, "1 hour"))
    .count()
)

# Is this DF actually a streaming DF?
streamingCountsDF.isStreaming

Out[15]: True

In [0]:
# Display input data
streamingInputDF.display()

time,action
2016-07-26T02:45:07.000+0000,Open
2016-07-26T02:45:47.000+0000,Open
2016-07-26T02:46:42.000+0000,Open
2016-07-26T02:46:59.000+0000,Open
2016-07-26T02:47:05.000+0000,Open
2016-07-26T02:47:14.000+0000,Open
2016-07-26T02:47:25.000+0000,Open
2016-07-26T02:47:26.000+0000,Open
2016-07-26T02:47:28.000+0000,Open
2016-07-26T02:47:36.000+0000,Open


In [0]:
# Display transformed data
streamingCountsDF.display()

action,window,count
Close,"List(2016-07-26T13:00:00.000+0000, 2016-07-26T14:00:00.000+0000)",1028
Open,"List(2016-07-26T18:00:00.000+0000, 2016-07-26T19:00:00.000+0000)",1004
Close,"List(2016-07-27T02:00:00.000+0000, 2016-07-27T03:00:00.000+0000)",971
Open,"List(2016-07-27T04:00:00.000+0000, 2016-07-27T05:00:00.000+0000)",995
Open,"List(2016-07-27T05:00:00.000+0000, 2016-07-27T06:00:00.000+0000)",986
Open,"List(2016-07-26T05:00:00.000+0000, 2016-07-26T06:00:00.000+0000)",1000
Open,"List(2016-07-26T11:00:00.000+0000, 2016-07-26T12:00:00.000+0000)",991
Close,"List(2016-07-26T06:00:00.000+0000, 2016-07-26T07:00:00.000+0000)",1011
Close,"List(2016-07-27T05:00:00.000+0000, 2016-07-27T06:00:00.000+0000)",987
Open,"List(2016-07-26T10:00:00.000+0000, 2016-07-26T11:00:00.000+0000)",1007


In [0]:
# Add aditional filter to transformed dataframe
streamingCountsDF.filter(streamingCountsDF.action == 'Open').display()

action,window,count
Open,"List(2016-07-26T18:00:00.000+0000, 2016-07-26T19:00:00.000+0000)",1004
Open,"List(2016-07-27T04:00:00.000+0000, 2016-07-27T05:00:00.000+0000)",995
Open,"List(2016-07-27T05:00:00.000+0000, 2016-07-27T06:00:00.000+0000)",986
Open,"List(2016-07-26T05:00:00.000+0000, 2016-07-26T06:00:00.000+0000)",1000
Open,"List(2016-07-26T11:00:00.000+0000, 2016-07-26T12:00:00.000+0000)",991
Open,"List(2016-07-26T10:00:00.000+0000, 2016-07-26T11:00:00.000+0000)",1007
Open,"List(2016-07-27T07:00:00.000+0000, 2016-07-27T08:00:00.000+0000)",998
Open,"List(2016-07-27T18:00:00.000+0000, 2016-07-27T19:00:00.000+0000)",995
Open,"List(2016-07-27T19:00:00.000+0000, 2016-07-27T20:00:00.000+0000)",1007
Open,"List(2016-07-28T03:00:00.000+0000, 2016-07-28T04:00:00.000+0000)",996


As you can see, `streamingCountsDF` is a streaming Dataframe (`streamingCountsDF.isStreaming` was `true`). You can start streaming computation, by defining the sink and starting it. 
In our case, we want to interactively query the counts (same queries as above), so we will set the complete set of 1 hour counts to be in a in-memory table.

In [0]:
spark.conf.set("spark.sql.shuffle.partitions", "2")  # keep the size of shuffles small

query = (
  streamingCountsDF
    .writeStream
    .format("memory")        # memory = store in-memory table 
    .queryName("counts")     # counts = name of the in-memory table
    .outputMode("complete")  # complete = all the counts should be in the table
    #.trigger(processingTime='15 seconds')
    .start()
)

`query` is a handle to the streaming query that is running in the background. This query is continuously picking up files and updating the windowed counts. 

Note the status of query in the above cell. The progress bar shows that the query is active. 
Furthermore, if you expand the `> counts` above, you will find the number of files they have already processed. 

Let's wait a bit for a few files to be processed and then interactively query the in-memory `counts` table.

In [0]:
%sql
SELECT *
FROM counts

action,window,count
Close,"List(2016-07-27T00:00:00.000+0000, 2016-07-27T01:00:00.000+0000)",1008
Open,"List(2016-07-26T22:00:00.000+0000, 2016-07-26T23:00:00.000+0000)",997
Open,"List(2016-07-27T14:00:00.000+0000, 2016-07-27T15:00:00.000+0000)",984
Close,"List(2016-07-26T14:00:00.000+0000, 2016-07-26T15:00:00.000+0000)",994
Open,"List(2016-07-28T04:00:00.000+0000, 2016-07-28T05:00:00.000+0000)",825
Close,"List(2016-07-27T14:00:00.000+0000, 2016-07-27T15:00:00.000+0000)",948
Close,"List(2016-07-26T23:00:00.000+0000, 2016-07-27T00:00:00.000+0000)",950
Open,"List(2016-07-27T06:00:00.000+0000, 2016-07-27T07:00:00.000+0000)",1016
Open,"List(2016-07-28T03:00:00.000+0000, 2016-07-28T04:00:00.000+0000)",996
Close,"List(2016-07-26T04:00:00.000+0000, 2016-07-26T05:00:00.000+0000)",815


In [0]:
from time import sleep
sleep(5)  # wait a bit for computation to start

In [0]:
%sql
select action, date_format(window.end, "MMM-dd HH:mm") as time, count
from counts
order by time, action

action,time,count
Close,Jul-26 03:00,11
Open,Jul-26 03:00,179
Close,Jul-26 04:00,344
Open,Jul-26 04:00,1001
Close,Jul-26 05:00,815
Open,Jul-26 05:00,999
Close,Jul-26 06:00,1003
Open,Jul-26 06:00,1000
Close,Jul-26 07:00,1011
Open,Jul-26 07:00,993


We see the timeline of windowed counts (similar to the static one earlier) building up. If we keep running this interactive query repeatedly, we will see the latest updated counts which the streaming query is updating in the background.

In [0]:
sleep(5)  # wait a bit more for more data to be computed

In [0]:
%sql select action, date_format(window.end, "MMM-dd HH:mm") as time, count from counts order by time, action

action,time,count
Close,Jul-26 03:00,11
Open,Jul-26 03:00,179
Close,Jul-26 04:00,344
Open,Jul-26 04:00,1001
Close,Jul-26 05:00,815
Open,Jul-26 05:00,999
Close,Jul-26 06:00,1003
Open,Jul-26 06:00,1000
Close,Jul-26 07:00,1011
Open,Jul-26 07:00,993


In [0]:
sleep(5)  # wait a bit more for more data to be computed

In [0]:
%sql select action, date_format(window.end, "MMM-dd HH:mm") as time, count from counts order by time, action

action,time,count
Close,Jul-26 03:00,11
Open,Jul-26 03:00,179
Close,Jul-26 04:00,344
Open,Jul-26 04:00,1001
Close,Jul-26 05:00,815
Open,Jul-26 05:00,999
Close,Jul-26 06:00,1003
Open,Jul-26 06:00,1000
Close,Jul-26 07:00,1011
Open,Jul-26 07:00,993


Also, let's see the total number of "opens" and "closes".

In [0]:
%sql 
select action, sum(count) as total_count 
from counts 
group by action 
order by action

action,total_count
Close,50000
Open,50000


If you keep running the above query repeatedly, you will always find that the number of "opens" is more than the number of "closes", as expected in a data stream where a "close" always appear after corresponding "open". This shows that Structured Streaming ensures **prefix integrity**. Read the blog posts linked below if you want to know more.

Note that there are only a few files, so consuming all of them there will be no updates to the counts. Rerun the query if you want to interact with the streaming query again.

Finally, you can stop the query running in the background, either by clicking on the 'Cancel' link in the cell of the query, or by executing `query.stop()`. Either way, when the query is stopped, the status of the corresponding cell above will automatically update to `TERMINATED`.

In [0]:
query.stop()

### IoT data

Develop a streaming example on `IoT device`dataset:

- inspect the dataset
- ask yourself couple of questions about the data and try to answer them (eg. how many steps users do, how many calories do they burn...)
- you read the data in streaming fashion (file by file) and keep the data for only one company? Here are some hints:
  - you can find the schema in the readme file 
  - as above, use this option: .option("maxFilesPerTrigger", 1)
  - use user_id or device_id for grouping
  - use timestamp for window definition
  - you can try streaming joins with the user data (/databricks-datasets/iot-stream/data-user/userData.csv). Here is the doc: https://spark.apache.org/docs/latest/structured-streaming-programming-guide.html#join-operations

In [0]:
# Iot stream dataset
display(dbutils.fs.ls('/databricks-datasets/iot-stream/'))

path,name,size,modificationTime
dbfs:/databricks-datasets/iot-stream/README.md,README.md,1596,1532465738000
dbfs:/databricks-datasets/iot-stream/data-device/,data-device/,0,0
dbfs:/databricks-datasets/iot-stream/data-user/,data-user/,0,0


In [0]:
# Read the README file
readme_path = '/databricks-datasets/iot-stream/README.md'
readme_df = spark.read.text(readme_path)
display(readme_df)


value
==========================================
IOT Device Data
==========================================
This dataset was created by Databricks.
It contains fake generated data in json and csv formats.
e.g.
"`{""user_id"": 12, ""calories_burnt"": 489.79998779296875, ""num_steps"": 9796, ""miles_walked"": 4.8979997634887695, ""time_stamp"": ""2018-07-24 03:54:00.893775"", ""device_id"": 10}`"
=========================================
Data Set Information
=========================================


In [0]:
# Define the schema (copy from the README) data-device
from pyspark.sql.types import StructType, StructField, LongType, FloatType, StringType

device_schema = StructType([
    StructField("id", LongType(), False),
    StructField("user_id", LongType(), True),
    StructField("device_id", LongType(), True),
    StructField("num_steps", LongType(), True),
    StructField("miles_walked", FloatType(), True),
    StructField("calories_burnt", FloatType(), True),
    StructField("timestamp", StringType(), True),
    StructField("value", StringType(), True)
])


In [0]:
# Open one file to see how the data looks like (as a static dataframe)
files = dbutils.fs.ls('/databricks-datasets/iot-stream/data-device/')
first_file_path = files[0].path

# Read the first file only
single_file_df = spark.read.schema(device_schema).json(first_file_path)
display(single_file_df)


id,user_id,device_id,num_steps,miles_walked,calories_burnt,timestamp,value
0,36,9,3278,1.639,163.90001,2018-07-20 07:34:28.546561,"{""user_id"": 36, ""calories_burnt"": 163.90000915527344, ""num_steps"": 3278, ""miles_walked"": 1.6390000581741333, ""time_stamp"": ""2018-07-20 07:34:28.546561"", ""device_id"": 9}"
1,26,20,10293,5.1465,514.65,2018-07-24 08:13:49.546627,"{""user_id"": 26, ""calories_burnt"": 514.6500244140625, ""num_steps"": 10293, ""miles_walked"": 5.146500110626221, ""time_stamp"": ""2018-07-24 08:13:49.546627"", ""device_id"": 20}"
2,11,9,5574,2.787,278.69998,2018-07-24 18:41:57.546657,"{""user_id"": 11, ""calories_burnt"": 278.6999816894531, ""num_steps"": 5574, ""miles_walked"": 2.7869999408721924, ""time_stamp"": ""2018-07-24 18:41:57.546657"", ""device_id"": 9}"
3,13,4,5590,2.795,279.5,2018-07-21 08:40:41.546750,"{""user_id"": 13, ""calories_burnt"": 279.5, ""num_steps"": 5590, ""miles_walked"": 2.7950000762939453, ""time_stamp"": ""2018-07-21 08:40:41.546750"", ""device_id"": 4}"
4,32,1,8373,4.1865,418.65,2018-07-24 08:08:55.546779,"{""user_id"": 32, ""calories_burnt"": 418.6499938964844, ""num_steps"": 8373, ""miles_walked"": 4.186500072479248, ""time_stamp"": ""2018-07-24 08:08:55.546779"", ""device_id"": 1}"
5,8,1,11052,5.526,552.6,2018-07-19 22:58:37.546806,"{""user_id"": 8, ""calories_burnt"": 552.5999755859375, ""num_steps"": 11052, ""miles_walked"": 5.526000022888184, ""time_stamp"": ""2018-07-19 22:58:37.546806"", ""device_id"": 1}"
6,33,9,3154,1.577,157.7,2018-07-20 18:54:52.546839,"{""user_id"": 33, ""calories_burnt"": 157.6999969482422, ""num_steps"": 3154, ""miles_walked"": 1.5770000219345093, ""time_stamp"": ""2018-07-20 18:54:52.546839"", ""device_id"": 9}"
7,18,16,1659,0.8295,82.950005,2018-07-22 07:16:44.546870,"{""user_id"": 18, ""calories_burnt"": 82.95000457763672, ""num_steps"": 1659, ""miles_walked"": 0.8295000195503235, ""time_stamp"": ""2018-07-22 07:16:44.546870"", ""device_id"": 16}"
8,15,10,10620,5.31,531.0,2018-07-23 17:06:48.546899,"{""user_id"": 15, ""calories_burnt"": 531.0, ""num_steps"": 10620, ""miles_walked"": 5.309999942779541, ""time_stamp"": ""2018-07-23 17:06:48.546899"", ""device_id"": 10}"
9,9,3,8374,4.187,418.69998,2018-07-21 08:45:33.546930,"{""user_id"": 9, ""calories_burnt"": 418.6999816894531, ""num_steps"": 8374, ""miles_walked"": 4.186999797821045, ""time_stamp"": ""2018-07-21 08:45:33.546930"", ""device_id"": 3}"


In [0]:
# Define your streaming dataframe
streaming_device_df = (
    spark.readStream
    .schema(device_schema)
    .option("maxFilesPerTrigger", 1)
    .json("/databricks-datasets/iot-stream/data-device/")
)

# Preview schema
streaming_device_df.printSchema()

root
 |-- id: long (nullable = true)
 |-- user_id: long (nullable = true)
 |-- device_id: long (nullable = true)
 |-- num_steps: long (nullable = true)
 |-- miles_walked: float (nullable = true)
 |-- calories_burnt: float (nullable = true)
 |-- timestamp: string (nullable = true)
 |-- value: string (nullable = true)



In [0]:
# Define your transformations
from pyspark.sql.functions import to_timestamp

stream_transformed_df = streaming_device_df.withColumn(
    "event_time", to_timestamp("timestamp")
)
stream_transformed_df = stream_transformed_df.select(
    "id", "user_id", "device_id", "num_steps", "miles_walked",
    "calories_burnt", "event_time"
)
from pyspark.sql.functions import window

steps_per_user = (
    stream_transformed_df
    .withWatermark("event_time", "1 minute")
    .groupBy(
        window("event_time", "1 minute"),
        "user_id"
    )
    .sum("num_steps")
    .withColumnRenamed("sum(num_steps)", "total_steps")
)


In [0]:
# Define the sink and start streaming
query = (
    steps_per_user.writeStream
        .outputMode("complete")
        .format("memory")
        .queryName("iot_analytics")
        .start()
)


In [0]:
%sql
-- visualize your streaming analytics
SELECT *
FROM iot_analytics
ORDER BY window.start



window,user_id,total_steps
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",1,7635
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",38,61606
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",32,23106
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",26,5357
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",14,9684
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",12,2408
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",17,22819
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",24,8084
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",2,29440
"List(2018-07-19T18:31:00.000+0000, 2018-07-19T18:32:00.000+0000)",36,1083
