Skip to content

Add 48h cooldown for Muzzle dependency checks - #12779

Draft
sarahchen6 wants to merge 2 commits into
sarahchen6/muzzle-improvementsfrom
sarahchen6/muzzle-cooldown
Draft

sarahchen6 wants to merge 2 commits into
sarahchen6/muzzle-improvementsfrom
sarahchen6/muzzle-cooldown

Conversation

@sarahchen6

Copy link
Copy Markdown
Contributor

What Does This Do

Apply 48 hr cooldown to Muzzle checks - backfill with older eligible versions when available. If the publication timestamp can't be found, warn and continue checking the version.

Motivation

We see transient failures with Muzzle checks like the ones below from just this past month that are related to Muzzle checks on partially published releases, particularly with AWS SDK artifacts that are released nearly every day. Additionally we already have a 48 hr cooldown policy for dependency upgrades for security reasons. This PR applies a similar cooldown to Muzzle checks in order to avoid these transient failures.

Example Muzzle failures on master from the past month that would've been addressed by this cooldown:

Additional Notes

Contributor Checklist

Jira ticket: [PROJ-IDENT]

@sarahchen6 sarahchen6 added type: feature Enhancements and improvements comp: tooling Build & Tooling tag: ai generated Largely based on code generated by an AI or LLM labels Oct 7, 2026
@datadog-datadog-prod-us1-2

This comment has been minimized.

@sarahchen6
sarahchen6 force-pushed the sarahchen6/muzzle-cooldown branch from 38628d8 to 03ed09e Compare October 7, 2026 21:39
@dd-octo-sts

dd-octo-sts Bot commented Oct 7, 2026

Copy link
Copy Markdown
Contributor

🟢 Java Benchmark SLOs — All performance SLOs passed

Suite Status
Startup 🟢 pass

SLO thresholds are defined here based on automatically generated metrics. A warning is raised when results are within 5% of the threshold.

PR vs. master results
Scenario Candidate master Δ (95% CI of mean)
startup:insecure-bank:iast:Agent 14.74 s 14.63 s [+0.2%; +1.5%] (maybe worse)
startup:insecure-bank:tracing:Agent 13.51 s 13.65 s [-1.9%; -0.2%] (maybe better)
startup:petclinic:appsec:Agent 17.05 s 16.86 s [+0.1%; +2.2%] (maybe worse)
startup:petclinic:iast:Agent 16.76 s 17.01 s [-2.3%; -0.7%] (maybe better)
startup:petclinic:profiling:Agent 16.57 s 16.68 s [-1.8%; +0.5%] (no difference)
startup:petclinic:sca:Agent 17.03 s 16.92 s [-0.2%; +1.4%] (no difference)
startup:petclinic:tracing:Agent 16.08 s 16.15 s [-1.5%; +0.7%] (no difference)

Commit: 03ed09e5 · CI Pipeline · Benchmarking Platform UI


Load and DaCapo benchmarks can be triggered manually in the GitLab pipeline. Results will appear in the Benchmarking Platform UI after completion.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

comp: tooling Build & Tooling tag: ai generated Largely based on code generated by an AI or LLM type: feature Enhancements and improvements

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant