Lineage-aware observability &root-cause tracing for incidentresponse in production ML
Production ML incidents, fully connected.
Model health, lineage evidence, deployment state, and recovery in one workspace.
mobile-money-fraud
production · incident HG-184
Incident HG-184
Production recall crossed its allowed decrease
Reference
14.3%
stable · v1
Observed
0.0%
feature release · v2
Decrease
−14.3 pp
14.3 percentage points
Sample
240
10 min evaluation
Recall · labeled outcomes
12:00—14:30 UTCNext evidence
Trace the changed input
DataHub links the affected model to the amount feature released before the breach.
Compare releases on production evidence.
Stable and candidate versions share the same labeled window and an explicit performance boundary.
Production recall
Same-window comparison
- Reference
- 14.3%
- stable · v1
- Released
- 0.0%
- feature release · v2
- Allowed decrease
- 5.0 pp
- healthy at 9.3%
Recall on the shared sample
Stable · v1
14.3%
Feature release · v2
0.0%
Shared labeled outcomes
Both releases evaluated on the same production window
240 shared
See which change reached production.
Histograph correlates monitor evidence with DataHub lineage and records the exact path on the incident.
DataHub investigation
Persisted lineage evidence
Dataset
momtsim.transactions
source
Changed feature
amount
v2
Affected model
mobile-money-fraud-detection
model
Deployment
production
reached
Unaffected branch · account_velocity_24h
- Changed feature
- amount · v2
- Reached
- mobile-money-fraud-detection
- Change time
- 14:06 UTC
- Monitor window
- 14:12–14:18 UTC
Root-cause evidence
Approval stays in your workflow.
Merge a rollback PR or authorize your remediation adapter. Histograph records who approved what.
Rollback mobile-money-amount-feature
histograph/rollback-hg-184
Action
Rollback feature
Target
v1 · ×1
- Proposed by
- Histograph
- Approved by
- risk-lead
- Proof
- Signed merge
- Merge commit
- 87ac2d1
Approval record
Desired state changed. Observed state is verified separately.
Recovery requires fresh production evidence.
Execution, observed runtime state, and a new healthy monitor window must agree before the incident resolves.
Recovery verification
Post-remediation evidence
240 fresh labeled outcomes
Action result
Succeeded
Observed state
feature v1 · ×1
Fresh window
240 labeled outcomes
Incident
Recovery verified
Connect without replacing your stack.
DataHub for lineage. GitHub for desired state and approvals. Your runtime for telemetry and recovery evidence.
Connector register
Existing systems stay authoritative
DataHub
Configured
Lineage context
entity + upstream/downstream lineage
Destination
Incident record
GitHub
Configured
Desired state + approval
manifest + signed merge + deploy status
Destination
Incident record
Runtime
Configured
Telemetry + runtime state
predictions + outcomes + runtime state
Destination
Incident record
