Skip to content

Update SCA onboarding requirements and clarify APM usage - #38498

Open
ayela232 wants to merge 1 commit into
anil.yelamarty/sca-docs-updatesfrom
ayela232-patch-1
Open

Update SCA onboarding requirements and clarify APM usage#38498
ayela232 wants to merge 1 commit into
anil.yelamarty/sca-docs-updatesfrom
ayela232-patch-1

Conversation

@ayela232

Copy link
Copy Markdown

Clarified requirements for Software Composition Analysis, emphasizing that only the Datadog Agent and SDK are necessary, while APM and Infrastructure Monitoring are optional. Also added context on APM costs.

What does this PR do? What is the motivation?

Merge readiness

  • Ready for merge

For Datadog employees:

  • ⚠️ Your branch name MUST follow the <name>/<description> convention and include the forward slash (/). If you've already created your PR with an incorrect branch name, please rename your branch and open a fresh PR.
  • 🤖 New: Comment with /review to run an automated check that catches common issues before a Documentation team member reviews your PR.

AI assistance

Additional notes

Clarified requirements for Software Composition Analysis, emphasizing that only the Datadog Agent and SDK are necessary, while APM and Infrastructure Monitoring are optional.  Also added context on APM costs.
@ayela232
ayela232 requested a review from a team as a code owner July 27, 2026 20:22
@ayela232
ayela232 requested review from Copilot and removed request for a team July 27, 2026 20:23

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the runtime Software Composition Analysis (SCA) setup documentation to clarify required vs. optional Datadog components, aiming to reduce onboarding friction and set expectations around APM usage/costs.

Changes:

  • Removes “Datadog APM Configuration” as a prerequisite for runtime SCA setup.
  • Adds an informational note stating that only the Datadog Agent and supported SDK are required, and that APM/Infrastructure Monitoring are optional.
  • Adds brief cost-related context when APM tracing is disabled (but still needed for certain SCA-related telemetry).

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

3. **Supported SDK:** The Datadog SDK used by your application or service supports Software Composition Analysis capabilities for the language of your application or service. For more details, refer to the [Library Compatibility][2] page.
2. **Supported SDK:** The Datadog SDK used by your application or service supports Software Composition Analysis capabilities for the language of your application or service. For more details, refer to the [Library Compatibility][2] page.

<div class="alert alert-info">The Datadog Agent and SDK are the only requirements for SCA. APM tracing and Infrastructure Monitoring are not required; SCA reports findings independently of both. To disable APM or Infrastructure Monitoring, see <a href="#disable-apm-and-infrastructure-monitoring">Disable APM and Infrastructure Monitoring</a>. If APM is disabled, expect some APM intake costs to support SCA features (for example, security traces and spans).</div>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants