AI that knows your users.
Catches what rules can't.
Every login scored. Every request baselined. ML models trained on YOUR data, running in YOUR binary. No data leaves your infrastructure.
Available on Pro and above. See pricing
Security dashboard
Real-time threat detection across every layer. Risk scores, alerts, anomaly detection.
Three intelligence layers
Rules catch the known. ML catches the unknown. LLM explains the why.
Layer 1: Rules engine
Deterministic policies. Rate limiting, geo-blocking, IP allowlists, time-based access. Fast and predictable.
if login_attempts > 5: lock(30m) if country not in [US, IN]: deny if time outside 9am-6pm: require_mfa
Layer 2: ML models
Behavioral baselines per user. Anomaly detection on login patterns, API usage, cloud access. Trained on YOUR data.
baseline: alice logs in 9am-5pm PST anomaly: login at 3am from new IP action: step-up MFA + alert admin
Layer 3: LLM intelligence
Natural language policy queries. Incident summarization. "Who accessed patient data last Tuesday?" answered in seconds.
> Who accessed prod-db from outside VPN? 3 users in the last 24h: - bob@acme.com (MFA verified, devops) - eve@acme.com (no MFA, flagged)
AI across every layer
Authentication
Login risk scoring, credential stuffing detection, impossible travel alerts, device fingerprinting.
Service access
API usage baselines, abnormal request patterns, privilege escalation detection.
Cloud access
Unusual cloud console activity, credential abuse, out-of-hours access patterns.
Infrastructure
Container anomalies, privileged process detection, network behavior shifts.
Ready to get started?
Free for 5,000 monthly active users. No credit card required.