Scout Monitoring is the all-in-one monitoring platform for devs who own it all—combining APM, errors, and logs in one simple tool.

Predis 3.6.1 patches a real CRLF command-smuggling CVE (GHSA-w6f5-v2h6-g786) in the Redis connection layer. If your Laravel app uses the redis cache driver, queues, or sessions, this is worth prioritizing over routine deps. scoutapm.com/blog/predis-3-6…
73
Predis v3.6.1 is officially out, packaging the CRLF command-smuggling fix (CVE GHSA-w6f5-v2h6-g786) we covered when it merged, plus deprecating CommandInterface::deserializeCommand() as part of closing the gap. github.com/predis/predis/rel…
1
102
Anomaly Detection is out of beta and on every Scout plan, including free. It learns each endpoint's normal behavior and flags real deviations, no thresholds to set, no pages for normal Monday traffic spikes. scoutapm.com/blog/anomaly-de…
44
Express 5.3.0 fixes CVE-2026-2391: a qs arrayLimit bypass that let arbitrarily large arrays in a query string cause a DoS. Also fixes a Content-Length/Transfer-Encoding header conflict in res.send(). Update if you're on Express. github.com/expressjs/express…
87
Context is a budget and most AGENTS.md files spend it badly. Here are the three levers for what an AI coding agent actually sees, and why bigger isn't better. scoutapm.com/blog/prompts-sk…
1
57
An AI coding agent running real CI needs real credentials, unless you sandbox it first. Corral runs Claude in Docker-in-Docker, zero blast radius if it goes wrong. scoutapm.com/blog/can-we-liv…
44
Three monitoring tools means three context switches every time something breaks. Error tracker, APM, log aggregator. Each is fine alone. Together they cost you 15 minutes per debugging session. There's a better way. scoutapm.com/blog/unified-lo…
36
Your AI coding agent can read your codebase but not your production errors or traces. That is a solvable problem. Connect your monitoring via MCP and your agent debugs with real production context. scoutapm.com/blog/production…
47
NestJS v12 just shipped a first-party observability SDK. Symfony pushed security patches. Two major Python SDKs (Anthropic, httpx2) hit stability milestones. Our roundup covers what changed and what to watch. #NestJS #Laravel #Symfony #OpenSource scoutapm.com/blog/last-week-…
57
This week in open source: NestJS v12 ships native observability with @nestjs/observe, Anthropic Python SDK hits v1.0.0, Laravel v13.27 adds Cloud facade + refreshForUpdate(), Symfony patches security issues, and Solid Queue v1.7 lands. scoutapm.com/blog/last-week-…
78
Node.js performance problems hide in places other runtimes don't have. Event loop blocking, connection pool saturation, Prisma N+1 patterns that only show up at production scale. A guide to what to track and how to fix it. scoutapm.com/blog/nodejs-per…
43
Bootsnap v1.25.0: YJIT toggling no longer invalidates your compile cache. The +YJIT marker in RUBY_DESCRIPTION was part of the cache key, so enabling YJIT threw away all cached instruction sequences. Fixed. github.com/rails/bootsnap/re…
51