Tagged: Compliance
01
Telemetry Data Sovereignty: Where Your Data Lives Matters
A system that spans continents produces telemetry that spans legal jurisdictions. Here's how to keep traces and logs where the law wants them, and still see your whole system.
02
Your Tagging Standard Is a Wiki Page. That's Why It Doesn't Work.
Every team has a tagging standard. Most of them live in a wiki, enforced by nobody, remembered by almost nobody, and invisible to the CI pipeline. Open Policy Agent fixes the root cause.
03
Scrub PII from Application Logs in .NET
Keep personal data out of your .NET logs before they leave the process: classify fields so the logger erases or pseudonymises them, scrub free text and exception messages in an OpenTelemetry processor, and prove nothing leaks.
04
Implementing Audit Trails with OpenTelemetry
An audit trail is not a log. It's a tamper-evident, time-ordered record of who did what, when, and why. Most teams build this wrong. Here is how to do it correctly using OpenTelemetry and append-only storage.
05
Observability Under Compliance: GDPR, HIPAA, SOC 2, and PCI DSS
Regulated industries need observability too. A guide to building telemetry pipelines that satisfy GDPR, HIPAA, SOC 2, and PCI DSS requirements — covering data minimisation, retention mandates, audit trails, and what each framework actually requires.