Risk Timeline
Human, suspicious and blocked pressure by bucket.
Use your account to open the workspace
Traffic protection
Loading policy...
Sentinel / Overview
Current traffic decisions and signals that need your attention.
Traffic intelligence
Current traffic decisions and signals that need your attention.
Human, suspicious and blocked pressure by bucket.
Account
Plan, available limits, invoices and organization details in one place.
Billing profile
Checking saved requisites...
Organization details are changed by the platform administrator after a support request.Customer control plane
Manage protected domains and choose how suspicious traffic is handled.
Proxy mode lets Sentinel enforce decisions before origin. Decision mode lets the client load balancer ask Sentinel for a prediction and enforce it locally.
Create an API or Mobile API resource, keep Observe mode first, point the test domain to Sentinel gateway and pass safe correlation headers from the edge.
X-Request-ID or Idempotency-Key, X-API-Nonce, X-API-Timestamp, X-Sentinel-Account-Hash, X-Sentinel-Token-Hash and X-Sentinel-Body-Hash.
No. Authorization, API keys, cookies and request bodies stay on the customer side. Sentinel receives only presence flags and hashes.
Client onboarding
Connect your edge to the Decision API and add Browser SDK telemetry when the protected resource has web pages.
The connection passport and configurations are generated for a specific resource.
Use it only on your gateway or backend. Never place it in Browser SDK code, a mobile application or a public repository.
Connection passport
Configuration guide
Support and incidents
Explain a challenge or block without exposing internal detection rules.
Enter the session ID received in the X-AntiBot-Session-ID header.
Protection settings are applied independently to each domain.
Every detector that can add risk score or issue an immediate automated-client decision for this resource.
Actions by users who have access to this tenant.
Client registry
Legal entities, administrators, subscriptions and onboarding status.
| Client | Requisites | Administrator | Plan | Resources | Onboarding | Actions |
|---|
SaaS billing
Financial summary and SaaS plan catalog. Client operations are managed from client cards.
Operations
DDoS emergency mode
When enabled, yellow-zone requests are rejected instead of being challenged.
L7 anti-DDoS
Redis-backed distributed counters across gateway and collector instances.
Ingestion queue
Redis Stream health for ClickHouse ingestion, retries and dead-letter messages.
Data clusters
ClickHouse shards and the reputation plane used by gateways.
Network intelligence
Global operator-maintained signals used when GeoIP/ASN data is incomplete.
Operational health
Priority queue
Fleet overview
Summary across all clients, product versions, license and trust status.
Client and platform-operator changes for the selected tenant.
Inspect requests, detections and browser events even when no fingerprint is available.
Enter a session ID to inspect its complete event history.
A compact workspace for recent decisions, browser telemetry and calibration signals.
Clears IP, subnet and JA4 risk accumulated by profiles seen in the selected tenant and period. Request logs remain intact.
Run preview before reset.