BOT DETECTION & ACTIVE DEFENSE

The first line of defense.

Sentinel doesn't just detect bot farm attacks — it fights back. A three-stage automated defense chain: detect the threat, challenge every request with proof-of-work, and auto-scale infrastructure if the attack intensifies.

Part of the Candor Safety Ecosystem
CAPABILITIES
What Sentinel does.
Every capability is designed to work autonomously — detecting, responding, and protecting without human intervention.
🔍
Behavioral Fingerprinting
Request signature analysis, TLS fingerprinting, IP/ASN reputation, posting velocity, timing patterns, and coordinated inauthentic behavior detection identify bot traffic in real time.
Proof-of-Work Challenges
Suspicious requests trigger automatic PoW challenges. Each request costs the attacker CPU time. At scale, this makes bot farm attacks economically unviable.
🖥️
Auto-Scale Infrastructure
When attack intensity exceeds thresholds, Sentinel automatically provisions Hetzner Cloud overflow capacity. No human operator required. The system scales to absorb the attack.
🧮
Attack Monetization
Every blocked request has a cost to the attacker. Sentinel turns the economics of abuse against the abuser — attacking Candor becomes an expensive mistake.
🕸️
CIB Detection
Coordinated Inauthentic Behavior detection identifies troll farms using real browsers. Not just automated traffic — human-operated manipulation campaigns.
📊
Real-Time Dashboard
Live metrics at /monitor — total requests, blocked count, challenged count, clean rate, IP tracking, Prometheus process metrics, and request rate charts.
"Detect → Challenge → Scale. Fully automated. The system fights back in milliseconds while the attacker burns resources."
HOW IT WORKS
The pipeline.
From detection to response — fully automated.
Traffic Analyzed
Every request passes through Sentinel's middleware in the gateway. Behavioral fingerprints are computed in real time.
Threat Identified
Bot signatures, coordinated patterns, or volume anomalies trigger detection. The request is classified: clean, challenged, or blocked.
PoW Challenge Issued
Suspicious requests receive a proof-of-work challenge. Solving it costs CPU time. Legitimate users barely notice. Bot farms choke.
Auto-Scale Triggered
If the attack exceeds thresholds, Sentinel provisions additional infrastructure automatically. The platform stays online.
COMPLIANCE & STANDARDS
Built for the real world.
REAL-TIME
Millisecond Response
Detection and response happen in the request pipeline — before the attacker's request reaches any backend service.
PROMETHEUS
Full Observability
Prometheus metrics, Grafana dashboards, and a native network monitor provide complete visibility into platform defense.
HETZNER
Overflow Capacity
Automatic cloud provisioning absorbs attack traffic without degrading service for legitimate users.
Ready to integrate?
Contact us for API access, enterprise licensing, or grant partnership opportunities.
[email protected]

Choose Your Plan

Bot detection and DDoS defense for every scale

STARTER
$99
/month · 100K requests · 99.9% SLA
PRO
$299
/month · 1M requests · Overage enabled
ENTERPRISE
$999
/month · Unlimited · 99.99% SLA