Skip to main content

The CompleteStatus Blog

Monitoring & security, explained

Practical, no-fluff guides on uptime and security monitoring — fixing security headers, email authentication, SSL certificates, and consolidating your monitoring stack.

RSS feed
email-security deliverability

Gmail and Yahoo's New Sender Requirements — Your Four-Month Prep Checklist

Google and Yahoo will require SPF, DKIM, DMARC, one-click unsubscribe and sub-0.3% spam rates for bulk senders in February 2024. A prep checklist.

5 min read
on-call incidents

On-Call for Small Teams — You're Not Google, and That's Fine

On-call for a 2–5 person team is not Google's playbook shrunk down. Honest rotations, what deserves a 3 a.m. page, runbooks and humane escalation.

6 min read
security vulnerabilities

MOVEit Transfer: When the File Transfer Server Becomes the Breach

A zero-day in Progress MOVEit Transfer is being mass-exploited for data theft. What we know so far, and what it says about internet-facing appliances.

6 min read
monitoring synthetic

Synthetic Monitoring vs Real User Monitoring — What Each Catches, What Each Misses

Synthetic monitoring vs real user monitoring: what each catches, what each misses, what they cost, and why small teams should start synthetic-first.

6 min read
ssl certificates

Google Wants 90-Day Certificates: Get Ready Before It Becomes a Rule

Chrome's root program plans to propose 90-day maximum TLS certificate lifetimes. No date yet, but manual renewals are on borrowed time. Here's how to prepare.

6 min read
alerting alert-fatigue

Alert Fatigue — How Teams Learn to Ignore Their Own Alarms, and How to Undo It

Alert fatigue is a design failure, not a discipline problem. Why teams tune out their own alarms, and the confirmation, severity and escalation fixes.

6 min read
metrics incidents

MTTD, MTTA, MTTR, MTBF — Reliability Metrics Without the Jargon

MTTD, MTTA, MTTR and MTBF in plain terms: what each measures, a worked incident timeline, why averages mislead, and the cheapest one to improve.

6 min read
heroku migration

Heroku's Free Tier Is Gone — A Migration Checklist That Doesn't Break Production

Heroku's free dynos and Postgres shut down November 28. Where hobby projects are moving (Render, Fly.io, Railway, a VPS) and how to cut over safely.

6 min read
security openssl

OpenSSL 3.0.7: The Critical Bug That Wasn't, and Why the Fire Drill Still Paid Off

OpenSSL pre-announced a critical fix, then shipped two high-severity bugs instead. How to find every OpenSSL 3 copy you run, and why the inventory matters.

6 min read
alerting slack

Send Alerts Where Your Team Actually Lives — Slack, Discord, Telegram and Webhooks

Email alerts get buried. How to route monitoring alerts to Slack, Discord, Telegram and webhooks — channel design, dedup, and who actually gets paged.

6 min read
outages networking

The Rogers Outage: When One Carrier Takes Down Phones, Payments and 911

Friday's Rogers outage knocked out mobile, internet and Interac debit across Canada. What it says about single-carrier risk and where your alerts go.

7 min read
http3 quic

HTTP/3 and QUIC, Explained — What Just Became a Standard Actually Changes

HTTP/3 is now a Proposed Standard. What QUIC's UDP transport, built-in TLS 1.3 and connection migration change, and what they mean for monitoring.

6 min read

Browse by topic

Monitor your site — free

Uptime, SSL, DNS, security-header grades and SPF/DKIM/DMARC — one dashboard, one bill. The free tier includes the security layer and allows commercial use.