From 69325e57a967e52dc1d602b4b5a8fc85bef02d4f Mon Sep 17 00:00:00 2001 From: "alejandro.gonzalez" Date: Mon, 3 Mar 2025 11:45:29 +0100 Subject: [PATCH 1/2] Exclude com.stripe.net.HttpURLConnectionClient --- .../trace/instrumentation/iastinstrumenter/iast_exclusion.trie | 2 ++ 1 file changed, 2 insertions(+) diff --git a/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie b/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie index 20bc2c5006d..b87e706a526 100644 --- a/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie +++ b/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie @@ -127,6 +127,8 @@ 1 com.safelayer.* 1 com.solarmetric.* 1 com.squareup.* +# APPSEC-56641 +1 com.stripe.net.HttpURLConnectionClient # Required for propagation purposes 2 com.squareup.okhttp.Request 2 com.squareup.okhttp.Request$* From 23f07da35d1202d71a0fe76c8c4a90cdc61b5f3b Mon Sep 17 00:00:00 2001 From: "alejandro.gonzalez" Date: Mon, 3 Mar 2025 13:26:04 +0100 Subject: [PATCH 2/2] Change exclusion --- .../trace/instrumentation/iastinstrumenter/iast_exclusion.trie | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie b/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie index b87e706a526..27e1e4a19e5 100644 --- a/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie +++ b/dd-java-agent/instrumentation/iast-instrumenter/src/main/resources/datadog/trace/instrumentation/iastinstrumenter/iast_exclusion.trie @@ -127,8 +127,9 @@ 1 com.safelayer.* 1 com.solarmetric.* 1 com.squareup.* +1 com.stripe.* # APPSEC-56641 -1 com.stripe.net.HttpURLConnectionClient +2 com.stripe.net.HttpURLConnectionClient # Required for propagation purposes 2 com.squareup.okhttp.Request 2 com.squareup.okhttp.Request$*