Skip to content

WebDecoy Documentation

Deception-based threat detection for your web applications

WebDecoy is a deception-based threat detection platform that helps you identify and respond to malicious actors targeting your web applications. By deploying honeypots, decoy links, and bot scanners, you can detect attackers before they reach your real assets.

Decoy Links

Hidden honeypot URLs that only bots and attackers will find. Legitimate users never see them.

API Honeypots

Fake API endpoints that capture attack attempts including SQL injection, XSS, and more.

Bot Scanner

JavaScript-based detection that identifies headless browsers, automation tools, and scrapers.

MITRE ATT&CK

Automatic classification of detected threats using the industry-standard MITRE ATT&CK framework.

Integrations

Connect WebDecoy to Cloudflare, Slack, webhooks, and more for automated responses.

All Integrations

Every detection includes a 0-100 threat score calculated from multiple signals:

Score RangeLevelRecommended Action
0-20MINIMALAllow
21-40LOWLog
41-60MEDIUMMonitor/Challenge
61-80HIGHChallenge/Block
81-100CRITICALBlock
  • Organizations - Top-level containers for billing and access control
  • Properties - Logical groupings for different websites or environments
  • API Keys - Scoped access for SDKs and integrations

WebDecoy automatically provisions Let’s Encrypt SSL certificates for your custom domains, ensuring your honeypots use HTTPS.

WordPress Plugin

Comprehensive bot protection for WordPress sites without writing any code.

Learn more

Node.js SDK

Server-side bot detection for Express, Next.js, and Fastify applications.

Learn more

Looking for specific information?