Rolled out to all points of presence on 21 August 2021. No action is required.
- Improved fingerprint consistency scoring for the legacy v0 API clients.
- Managed WAF: 14 new signatures for recently disclosed CVEs.
- Proof-of-work challenge payload reduced by 38%.
- Security: updated TLS library to address Safari 19.
- Added Android WebView support to the rules engine.
- Fixed a race in origin health checks that could mark a healthy origin as down for up to 30 seconds.
- Log streaming now supports /v1/incidents/{id}/export.
- Deprecated GraphQL depth limits; removal scheduled for the next major release.
We had the exact false-positive issue with CGNAT carriers. The weighting change makes sense.
Interesting that most attacks are under ten minutes. Our experience is similar.
Any plans to support per-tenant limits keyed on a JWT claim?
Clear and practical, thanks.
Clear and practical, thanks.