Skip to content

Datadog data sharing & exposure security checks

External sharing, public links, guest access, retention and data-protection settings that quietly push company data outside the tenant.

On Datadog, Black Cat runs 3 checks in this area on every scan. Each one below lists its severity, how to fix it, and the compliance controls it satisfies where a control applies. See what access the Datadog connector needs.

Checks (3)

severity: high Dashboard Public Sharing fix difficulty: easy #

Disable public dashboard widget sharing at the organization level

  1. Navigate to Organization Settings > Public Sharing
  2. Locate the "Enabled Sharing" toggle for public widget sharing
  3. Toggle it off to prevent any dashboard from being shared publicly
  4. Save the configuration
  5. Review existing shared dashboards and revoke any active public URLs

Vendor docs ↗

Satisfies: ISO 27001:2022 A.8.12 SOC 2 Type II CC6.7 CIS Controls v8 CIS-03.1 NIST CSF 2.0 PR.DS-01 GDPR (SaaS Security) GDPR-44.1 HIPAA (SaaS Security) HIPAA-308.a4 NIS2 Directive NIS2-21.a.3 DORA (SaaS Security) DORA-9.11

severity: medium Dashboard Public URL fix difficulty: easy #

Revoke the public URL for the flagged dashboard to prevent unauthenticated access

  1. Open the flagged dashboard in Datadog
  2. Click the Settings (gear) icon in the top-right corner of the dashboard
  3. Navigate to the Sharing section
  4. Locate the active public URL entry
  5. Click "Revoke" or "Delete" to invalidate the public link
  6. Confirm the revocation and verify the URL no longer loads the dashboard

Vendor docs ↗

Satisfies: ISO 27001:2022 A.8.12 SOC 2 Type II CC6.7 CIS Controls v8 CIS-03.1 NIST CSF 2.0 PR.DS-01 GDPR (SaaS Security) GDPR-44.1 HIPAA (SaaS Security) HIPAA-308.a4 NIS2 Directive NIS2-21.a.3 DORA (SaaS Security) DORA-9.11

severity: high Dashboard Publicly Shared and Writable fix difficulty: easy #

Set publicly shared dashboards to read-only or revoke the public URL

  1. Open the flagged dashboard in Datadog
  2. Click the Settings (gear) icon in the top-right corner
  3. Either revoke the public URL under the Sharing section
  4. Or set the dashboard to read-only under the Permissions section
  5. Save the updated settings

Vendor docs ↗

Satisfies: NIS2 Directive NIS2-21.a.3 DORA (SaaS Security) DORA-9.12

More Datadog checks

The information on this page is provided for general informational purposes and is believed to be accurate as of its most recent update. Product names, logos, and trademarks are the property of their respective owners and are used for identification purposes only; their use does not imply any affiliation with or endorsement by those owners. Descriptions of third-party applications and of compliance frameworks are based on publicly available documentation and may change over time.

See these checks run on your stack

Start a free 14-day trial — no credit card required.

Start Free Trial