Skip to content

Matthieu.roux/document appsec mcp waf tools#37788

Merged
M4TTRX merged 4 commits into
masterfrom
matthieu.roux/document-appsec-mcp-waf-tools
Jul 2, 2026
Merged

Matthieu.roux/document appsec mcp waf tools#37788
M4TTRX merged 4 commits into
masterfrom
matthieu.roux/document-appsec-mcp-waf-tools

Conversation

@M4TTRX

@M4TTRX M4TTRX commented Jun 26, 2026

Copy link
Copy Markdown
Contributor

What does this PR do? What is the motivation?

Adds documentation on the new App and API Protection related MCP tools in the Security toolset.

The aim is to help users know and understand how they can use the Datadog MCP to protect their apps and apis against web attacks and threats.

Jira Ticket

Merge readiness

  • Ready for merge

For Datadog employees:

  • ⚠️ Your branch name MUST follow the <name>/<description> convention and include the forward slash (/). If you've already created your PR with an incorrect branch name, please rename your branch and open a fresh PR.
  • 🤖 New: Comment with /review to run an automated check that catches common issues before a Documentation team member reviews your PR.

AI assistance

This PR was generated using the help of Claude Opus 4.8
Because the /review command failed in the CI, I also ran the review skill locally manually and applied the recommended changes

Additional notes

Add comprehensive documentation, permissions, and example prompts for the ten new WAF, passlist, denylist, and custom rule tools under the security toolset.
@M4TTRX
M4TTRX force-pushed the matthieu.roux/document-appsec-mcp-waf-tools branch from 15836cc to 97c9439 Compare June 26, 2026 12:01
@github-actions

Copy link
Copy Markdown
Contributor

@datadog-official

This comment has been minimized.

@M4TTRX

M4TTRX commented Jun 30, 2026

Copy link
Copy Markdown
Contributor Author

/review

@github-actions

Copy link
Copy Markdown
Contributor

Review posting failed. See the workflow run logs for details. Re-run /review to retry.

M4TTRX added 3 commits June 30, 2026 16:42
Use the correct RBAC display names (Application Security Management Protect Read/Write), clarify the custom rule blocking warning, simplify the denylist description, and add an App & API Protection use case.
…onfig tools

Drop the custom rule upsert and delete tools and the blocking config get tool, which are not yet released, and update the App & API Protection use case accordingly.
Drop the get custom rules tool, which is not yet released, and update the App & API Protection use case accordingly.
@M4TTRX
M4TTRX marked this pull request as ready for review July 2, 2026 09:30
@M4TTRX
M4TTRX requested a review from a team as a code owner July 2, 2026 09:30

@jeff-morgan-dd jeff-morgan-dd left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@M4TTRX
M4TTRX merged commit 8ef2ce2 into master Jul 2, 2026
22 checks passed
@M4TTRX
M4TTRX deleted the matthieu.roux/document-appsec-mcp-waf-tools branch July 2, 2026 12:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants