Monitor
Not every automated client is a threat. Tag AI agents and known bots, watch what they actually do, and set policy on real data instead of hunches.
API
The planned API connects a TLS fingerprint with software reference data and the identity a client claims. It is designed to return candidate matches and context for your investigation. The product and response format are still in development.
A client claims one identity, but its TLS fingerprint differs from the reference.
<claimed User-Agent><observed Fingerprint><reference Fingerprint><claimed User-Agent><claimed User-Agent>Match<reference Fingerprint><observed Fingerprint>Bracketed values are placeholders, not captured fingerprints. This is a conceptual response, not a live lookup or a production API contract. Beta access is through the waitlist.
After the response
Not every automated client is a threat. Tag AI agents and known bots, watch what they actually do, and set policy on real data instead of hunches.
Feed verdicts into the WAF, CDN, or fraud stack you already run. Challenge what looks wrong, ban what keeps spoofing.
A scraper posing as Chrome does not have to see a block page. Serve it worthless data and let it fill its pipeline with garbage.
Private beta
Explore further