Urgent.News

What's breaking now, across thousands of outlets.

Tech

Metadata to Attach to Error Events for PII-Safe User Incident Tracking

TL;DR: Attach release, environment, service, route template, request ID, and a stable pseudonymous correlation value to an error event. Keep raw user IDs, emails, access tokens, request bodies, and user-entered text out of the event. For a fintech experiment split across tenant cohorts, retain the cohort assignment rather than the customer's identity. If the observability system cannot delete…

Attach release version, environment, service name, normalized route, request ID, and a stable pseudonymous correlation value to an error event. Omit raw user IDs, emails, access tokens, request bodies, and user-entered text. For the fintech experiment, keep cohort assignment instead of customer identity. If the observability system cannot delete events for a user, treat pre-ingestion redaction as required, not cleanup.

This ensures incident reconstruction, answering questions about specific releases or cohorts without building a shadow customer database. The error field should be included if it alters debugging decisions. The core metadata fields are release version, environment, service name, normalized route, request ID, and stable correlation identifiers.

Add tenant_cohort, experiment_key, and opaque tenant_ref for this experiment. Use route templates, drop raw URLs and query strings, and generate opaque correlation IDs stored separately from the primary controlled store. Invariants include untrusted payloads not deciding observability schema and separation of tenant reference mapping.

Deletion is the hard failure boundary. Consider alternative observability solutions like Sentry, Datadog, or Rollbar if Infrai's deletion and bulk export interfaces are lacking. Geography fields are not compliance controls. Final decision depends on evaluating retention, residency, deletion, and contract terms with privacy and legal owners before selecting an error-tracking vendor.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in Tech

A reader saw what my fix didn't do

The previous note ended with a question, and today someone answered. They didn't answer the question: they corrected the fix I had presented as the end of the story.

More from Wednesday 30 September →