Sep 14, 2026 — Improvements to Web Security Analytics

Enhancements:

  • Client-Side Protection integration. You can now monitor script behavior and track rule violations directly within the Web Security Analytics dashboard. By switching the newly added toggle, you can access a dedicated Client-Side view that automatically isolates your browser-level telemetry from traditional server-side firewall events to give you an unfragmented view of your script behaviors. Client-Side Protection is now available to all App & API Protector users with Advanced Security Management. Learn more

Bug fixes:

  • Updates and bug fixes for the All Traffic feature. The display color for the All Traffic series was updated from red to purple to improve visual clarity. Tooltip messaging now explicitly specifies that the All Traffic feature is available to Security Hub users. Additionally, resolved a display bug that caused the All Traffic series to duplicate or disappear from the chart legend when applying a pivot view.
  • Resolved throttling report loading delays. Fixed an issue where throttling reports failed or timed out when you loaded Web Security Analytics. Reporting data now loads earlier during page startup, ensuring your reports load consistently without timeouts.
  • Fixed throttling data loading issues when switching views. Fixed an issue where throttling indicators and data failed to load when you added or loaded a main chart from a view that originally contained only tables. Throttling data now populates automatically without requiring you to manually adjust the time range.
  • Fixed missing column values in Bot & Agent Control widgets. Resolved an issue where column data appeared empty for Bot & Agent Control widgets. The widget tables now dynamically display the Traffic Type column when rendering Bot & Agent Control data and the Bot Type column when displaying legacy data.
  • Resolved saved view display persistence when exiting Alert configuration. We resolved an issue where modifying widget displays or adding a pivot view while inside Alert configuration permanently changed your saved view upon exit. Exiting Alert configuration now correctly resets all dashboard display settings to match your original saved view.
  • Preserved active dashboard view when opening Alert configuration. Opening Alert configuration now retains your previously active dashboard view and custom widgets instead of defaulting to a single attack type chart. This helps you maintain the full analytical context of your active view while defining alert criteria.
  • Fixed Connecting IP Address CIDR filter removal on saved view reload. We fixed an issue where reloading a saved view that contained a Connecting IP Address CIDR filter caused Web Security Analytics to strip the filter and display an error message. Saved views now retain CIDR filters across page reloads without error.