Requires Java SDK v0.3.25 or later.
The Java SDK has no masking function, so span customizers are how you remove sensitive data before it leaves your application. To redact data after Braintrust receives it instead, see Protect sensitive data.
Register a customizer
To create a customizer and register it with the SDK:- Write the class. Implement
SpanCustomizerand overrideonSpanExport(SpanData span). The method receives each completed span as OpenTelemetrySpanDataand returns the span to export.SpanCustomizerisn’t a functional interface, so you can’t use a lambda. In the method:- Read the attributes you want to change. Integrations store the span’s content as JSON strings in
braintrust.input_json(input),braintrust.output_json(output), andbraintrust.metadata(metadata). Braintrust parses these into the span’s fields. - Return a replacement span with the new attributes.
SpanDatacan’t be modified, so return a copy that keeps everything the same except its attributes. ThewithAttributes()helper in the example below does this: it wraps the span in aDelegatingSpanDataand overridesgetAttributes()to return the new attributes. To leave a span unchanged, return it as is.
- Read the attributes you want to change. Integrations store the span’s content as JSON strings in
- Register the class. Call
addSpanCustomizer()onBraintrustConfig.Builder, then pass the config toBraintrust.get(config).
RedactEmails.java #skip-compile
draft-reply span’s input shows {"to": "[EMAIL]"}. The customizer redacts spans from Java SDK integrations the same way.
Add tags and metadata
To add metadata or tags to a span without losing the values the integration recorded:- Read the existing values.
braintrust.metadataholds the span’s whole metadata object as a JSON string, andbraintrust.tagsholds its tags as a string array. - Merge in your values. Add your keys to the parsed metadata and your tags to the existing list. Replacing either attribute drops what was there.
- Return a replacement span with the merged attributes, using the
withAttributes()helper from the previous example.
environment metadata key and a production tag. It uses Jackson to parse the metadata, so add com.fasterxml.jackson.core:jackson-databind to your build’s dependencies. It also reuses the imports from the previous example:
#skip-compile
onSpanExport() throws an exception, the SDK drops the whole export batch, as described in How customizers run. Choose the behavior that fits each customizer:
- Customizers that add data, like this one: Return the span unchanged when you can’t process it. This example does that when the existing metadata isn’t valid JSON.
- Customizers that redact data: Throw an exception when you can’t redact a span, so the SDK drops the batch instead of sending unredacted data.
Chain customizers
To run more than one customizer:- Write each customizer separately, so each one handles one change and you can test and reuse it on its own.
- Call
addSpanCustomizer()once for each, in the order you want them to run. Each customizer receives the span that the previous one returned.
RedactEmailAddresses, then AddEnvironment:
#skip-compile
How customizers run
- Every exported span: The SDK runs customizers on every span it exports, including spans you create with the OpenTelemetry API. If you enable
BRAINTRUST_FILTER_AI_SPANS, the SDK exports only spans with an attribute that starts withgen_ai.,braintrust.,llm.,ai., ortraceloop.. Customizers don’t run on the spans the filter drops. - Once per completed span: The SDK runs each customizer once per span, after the span ends, on the background export thread.
- Before attachment upload: The SDK runs customizers before it converts inline base64 data in span attributes to attachments and uploads them. A customizer can remove file data before it leaves your process.
- Identity: Customizers can change anything except the trace ID, span ID, and parent span ID, and must not return
null.
Limitations
- Code only: You register customizers in code, on
BraintrustConfig. There’s no environment variable or system property for them. - Java agent: The Java agent configures itself only from
BRAINTRUST_*environment variables, and no environment variable registers a customizer. To use customizers with the agent, also set up the SDK in code withBraintrust.get(config)before your application makes any instrumented calls. The agent’s spans then run through your customizers too. - One config per process: The first call to
Braintrust.get()orBraintrust.get(config)in a process sets the SDK’s configuration. Later calls return that same instance and ignore the config you pass, so register every customizer in the first call.
Next steps
- See all redaction options, including ingestion redaction, in Protect sensitive data.
- See
SpanCustomizerin the API reference. - Set up Java SDK integrations for your AI libraries.