Keyboard shortcuts

Press or to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Metrics & observability

Metrics are on by default and exported locally only (Directive #8). The HTTP listener serves Prometheus text at /metrics:

portcullis_requests_total{tenant="acme",outcome="allowed"} 128
portcullis_requests_total{tenant="acme",outcome="denied"} 3
portcullis_requests_total{tenant="acme",outcome="upstream_error"} 1

Counts are per tenant, making usage/cost tenant-attributable. Bind the listener to a trusted interface if you expose metrics.

Structured logging uses tracing throughout (structured fields, never string interpolation of user data). An OTLP exporter is on the roadmap; nothing leaves the process today.