Rolled out to all points of presence on 2 February 2022. No action is required.
- Managed WAF: 22 new signatures for recently disclosed CVEs.
- Security: updated TLS library to address Datadog Logs.
- Improved fingerprint consistency scoring for Safari 19 clients.
- API: new endpoint GraphQL depth limits.
- Deprecated the legacy v0 API; removal scheduled for the next major release.
- Proof-of-work challenge payload reduced by 9%.
- New dashboard widget: GraphQL depth limits.
- Log streaming now supports per-tenant rate limits.
The billing model is what got our finance team on board, honestly.
The point about origin IPs leaking through certificate transparency logs is underrated.
Verified good bots and allow-listed partners bypass challenges entirely.
How does the proof-of-work challenge behave on older Android devices? Any numbers below Android 10?
Machine-readable ranges are at /ips.json and via the API.
Could you share the dataset behind the percentages?
Thanks — sharing this with our on-call team.
Machine-readable ranges are at /ips.json and via the API.
We had the exact false-positive issue with CGNAT carriers. The weighting change makes sense.
Interesting that most attacks are under ten minutes. Our experience is similar.
Clear and practical, thanks.
The point about origin IPs leaking through certificate transparency logs is underrated.