SpanKind.INTERNAL, created as children of the currently active span. String attribute values longer than 4096 characters are truncated (suffixed [truncated]). An attribute whose value is undefined/null is omitted from the span entirely rather than sent as an empty value — so the presence/absence of an attribute is itself signal.
Span attributes
aip.integrity_check — 31 domain attributes + 2 GenAI SIG aliases + 3 GenAI SemConv / role attributes
The primary span for AIP integrity checkpoint results.
Events emitted on this span:
aip.concern— One event per concern detected. Attributes:category,severity,description.aip.drift_alert— Emitted (with no event attributes) when the window summary’sdrift_alert_activeis true. The drift detail lives on the separateaap.detect_driftspan’saap.drift_alertevents (below), not on this one.
aap.verify_trace — 8 attributes
Span for AAP trace verification results.
Events emitted on this span:
aap.violation— One event per violation. Attributes:type,severity,description.
aap.check_coherence — 5 attributes
Span for AAP value coherence check results (used in multi-agent coordination).
aap.detect_drift — 2 attributes
Span for AAP behavioral drift detection results.
Events emitted on this span:
aap.drift_alert— One event per alert. Attributes (each present only when the underlying alert carries it):alert_type,agent_id,card_id,similarity_score,drift_direction,recommendation.
policy.evaluate — 13 attributes
Span for policy evaluation results. Created when the Policy Engine evaluates a request against the active policy.
Events emitted on this span:
policy.violation— One event per violation. Attributes:type(forbidden/capability_exceeded/unmapped_denied),severity,reason, andtool(present only when the violation names a specific tool).
gen_ai.safety.reclassification — 8 attributes
Span for violation reclassification. Created when a checkpoint is reclassified via the Reclassification API. Note the span (and every attribute on it) lives under the gen_ai.safety.reclassification.* namespace, not a reclassification.* one.
This span emits no events.
safe_house.sideband.finding — 3-6 attributes
Span for a sideband detector firing (coherence / fault-line / fleet cron sweeps). source, axis, and finding_count are always present (defaulting finding_count to 0); the rest are present only when the finding carries them.
Events emitted on this span:
safe_house.sideband.finding— One event, mirroring the span’s own attributes (source,axis, and whichever ofteam_id/severity/pattern_type/finding_countare present).
Span hierarchy
Spans are created as children of the current active span viacontext.active():
Metrics
9 metric instruments for aggregate monitoring, created bycreateAIPMetrics(). There is no separate metrics API for policy evaluation, reclassification, or sideband findings today — those three are span/event-only (§Span attributes above); aggregate them from spans if you need counters.
AIP metrics
AAP metrics
? marks a label that is only attached when the underlying value is present.
GenAI SIG forward compatibility
The exporter includes forward-compatible aliases that track the emerging OTel GenAI SIG conventions for AI/ML observability:
These aliases are emitted alongside the
aip.* attributes on every aip.integrity_check span, ensuring forward compatibility as the OTel GenAI SIG conventions stabilize.
Upstream-provider attribution and span role
Two further OTel GenAI SemConv attributes, plus one Mnemom-specific one, are emitted onaip.integrity_check and policy.evaluate spans:
Dashboard templates
Pre-built Grafana and Datadog dashboards that consume these attributes and metrics are available in the aip-otel-exporter repository:- grafana-aip-overview.json — Fleet-wide integrity monitoring using
aip.integrity_checks.total,aip.concerns.total, andaip.window.integrity_ratio - grafana-aip-detail.json — Per-agent deep-dive using all
aip.integrity.*span attributes - datadog-aip-overview.json — Datadog importable dashboard
See also
- Observability Guide — Full integration guide for the aip-otel-exporter
- Policy Engine — Policy evaluation concepts
- Card Lifecycle — Reclassification and trust recovery
- AIP Specification — Protocol specification for Integrity Checkpoints
- AAP Specification — Protocol specification for AP-Traces and verification