[observability] Observability Coverage Report - 2026-07-23 #47432
Closed
Replies: 1 comment
|
This discussion has been marked as outdated by Daily Observability Report for AWF Firewall and MCP Gateway. A newer discussion is available at Discussion #47674. |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Caution
agentic threat detected
Threat detection flagged this output in warn mode. Manual review is REQUIRED before any follow-up automation.
Details
The threat detection engine failed to produce results.
Review the workflow run logs for details.
Executive Summary
I reviewed a capped sample of 4 workflow runs from the last 7 days. Firewall observability is incomplete: 2 of 4 sampled runs have
access.logavailable, while 2 runs show firewall activity in run metadata but no Squid access log in the bundle. MCP telemetry is better but still incomplete: 3 of 4 sampled runs includerpc-messages.jsonl, and 1 run has tool execution recorded but no MCP log artifact at all.The healthy runs do have usable telemetry. Where present,
access.logcontains both successful (200) and error/zero-status rows, and the MCP logs are valid JSONL with paired request/response events. The main gap is artifact capture, not execution itself.Key Alerts and Anomalies
🔴 Critical Issues:
AI Moderator) has firewall activity inrun_summary.jsonbut noaccess.log.PR Code Quality Reviewer) has firewall activity inrun_summary.jsonbut noaccess.log.PR Code Quality Reviewer) has tool execution recorded in run metadata, but neithergateway.jsonlnorrpc-messages.jsonlwas present.access.logorrpc-messages.jsonlfiles that were present.Coverage Summary
access.log)gateway.jsonlorrpc-messages.jsonl)📋 Detailed Run Analysis
Firewall-Enabled Runs
Missing Firewall Logs (
access.log)MCP-Enabled Runs
rpc-messages.jsonlrpc-messages.jsonlrpc-messages.jsonlMissing MCP Telemetry (no
gateway.jsonlorrpc-messages.jsonl)🔍 Telemetry Quality Analysis
Firewall Log Quality
access.logentries analyzed: 290200): 1470): 143Gateway Log Quality
rpc-messages.jsonlgithub,safeoutputstools/callrequests: 3Healthy Runs Summary
Daily Documentation HealerandPR Sous Chefhave complete firewall and MCP telemetry in the sampled logs.Recommended Actions
sandbox/firewall/logs/access.loginto every firewall-enabled run bundle before artifact upload.gateway.jsonlorrpc-messages.jsonlfor every MCP-enabled run and fail the telemetry step if neither file exists.Report generated automatically by the Daily Observability Report workflow
Analysis window: Last 7 days | Runs analyzed: 4
All reactions