430,079
req
3.1%
bot
13,374
/
416,148
bot / human
4,412
signatures
557
uncertain
Detection pending…
Overview
Activity
Visitors
Countries
Endpoints
Sessions
Threats
Policies
Configuration
Compliance
Investigate
Exact
Broad
515 detections
First: May 29 22:49
Last: May 30 22:05
0 high |
0 med |
0 low
TLS connection appears normal
Request patterns appear normal
User-Agent appears normal
22:05:18
GET
/dashboard
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
22:05:00
GET
/_content/Mostlylucid.BotDetection.UI/vendor/js/apexcharts.min.js
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
22:04:34
GET
/_content/Mostlylucid.BotDetection.UI/vendor/css/jsvectormap.min.css
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
22:04:13
GET
/sitemap.xml
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
22:03:54
GET
/dashboard
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:47:12
GET
/robots.txt
Allow
Unknown
wget (missing client hints)
Detector contributions
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=54.198.67
request.protocol=HTTP/1.1
risk.justification=Insufficient data for reliable risk assessment
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
21:40:21
GET
/legal/dpa
Allow
VeryLow
--
Detector contributions
Ip
-25 %
IP appears normal: 43.153.36.xxx
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-119 %
Heuristic model (early): 80 % human likelihood (19 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /legal/dpa
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 77 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=43.153.36
ua.family=Safari
ua.is_bot=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=18
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=13.0
behavioral.anomaly=False
risk.justification=No significant indicators
heuristic.confidence=0.5942753939407391
heuristic.prediction=human
h2.population_samples=77
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:39:55
GET
/dashboard/signature/tyV4_iqqTLLCdiI6_wSUOw
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:53
GET
/dashboard/signature/pUgmTzQWOxaARRobchxpnQ
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:49
GET
/dashboard/signature/nFffPF9lFlJcdf5_ev8rgg
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:47
GET
/dashboard/signature/ivapIL71LYVLrc0Snw6N0Q
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:45
GET
/dashboard/signature/eLbkF8KyzrHU4r4sO4QW_Q
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:42
GET
/dashboard/signature/Zt5KjvrhjjNxYufXV_bVTQ
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:39
GET
/dashboard/signature/MJV2i4wxxkMPq7WUJNwndg
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:37
GET
/dashboard/signature/I0SCm_b3h_SBr-gxhoJFjg
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:35
GET
/dashboard/signature/BF_fyRvaluxfCNIgVpuWXQ
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:39:33
GET
/dashboard/signature/7qUUokelw19YVAjPHlYVlw
rate-limit-search
VeryHigh
MJ12bot
Detector contributions
Ip
-25 %
IP appears normal: 2001:41d0:...
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-37 %
Heuristic model (early): 59 % human likelihood (18 features)
UserAgent
135 %
Known bot pattern: MJ12bot
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /dashboard/signature/7qUUokelw19YVAjPHlYVlw
Http2Fingerprint
3 %
Using HTTP/1.1 instead of HTTP/2 (HTTP/2 rate: 0 % over 3 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=2001:41d0:0303
ua.family=MJ12bot
ua.is_bot=True
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
ua.bot_name=MJ12bot
ua.bot_type=GoodBot
header.count=15
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=
behavioral.anomaly=False
risk.justification=probability 1.00
heuristic.confidence=0.18460891316395345
heuristic.prediction=human
h2.population_samples=3
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=skipped:no_corroboration (UA claims MJ12bot as GoodBot; UA alone is not sufficient)
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:34:44
GET
/dashboard
throttle-aggressive
VeryHigh
googlebot
Detector contributions
Ip
-25 %
IP appears normal: 190.120.255.xxx
Header
0 %
Browser UA without Accept-Language; deployment norm is low language rate (6 % over 114 samples)
Intent
0 %
Session intent: unknown (threat=0.05, band=None)
AiScraper
0 %
No AI scraper signals detected
Heuristic
78 %
Heuristic model (early): 70 % bot likelihood (22 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
VersionAge
48 %
Chrome v68 is 66 versions behind (latest: 134)
StreamAbuse
0 %
Stream abuse check - non-streaming request
SecurityTool
0 %
No security tools detected in User-Agent
HeuristicLate
250 %
Heuristic model (late): 100 % bot likelihood (225 features)
Inconsistency
150 %
Browser User-Agent without Accept-Language header; Chrome User-Agent without Client Hints; Outdated browser version in User-Agent
SessionVector
0 %
Session tracking active (1 requests, 0 prior sessions)
ReputationBias
7 %
UA pattern Suspect (score=0.72, support=13)
TlsFingerprint
-45 %
TLS connection appears normal
ClaimedIdentity
0 %
Chrome behavioral profile mismatch (consistency=0.33): missing Sec-Fetch headers (expected for this browser); no Accept-Language (browsers always send this); no text/html in Accept (expected for browser)
ReactivePattern
0 %
No prior error events to analyze
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 129 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
BehavioralWaveform
0 %
Behavioral waveform analysis complete (insufficient history)
FastPathReputation
0 %
No known patterns in reputation cache
MultiLayerCorrelation
0 %
Cross-signal consistency check complete (not enough data to compare)
Signals
ip.subnet=190.120.255
ua.family=Chrome
ua.is_bot=False
ip.is_ipv6=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=14
tls.is_https=True
tls.available=True
h2.behind_proxy=False
intent.analyzed=True
intent.category=unknown
ip.is_datacenter=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=68.0
behavioral.anomaly=False
intent.match_count=1
intent.threat_band=None
risk.justification=probability 0.90
intent.threat_score=0.05
heuristic.confidence=0.39228688553328395
heuristic.prediction=bot
h2.population_samples=129
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
reputation.bias_count=1
tcp.connection_header=keep-alive
intent.similarity_score=1.0000001192092896
reputation.bias_applied=True
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=Scraper,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
heuristic.late_confidence=0.9999990979787108
heuristic.late_prediction=bot
header.has_accept_encoding=True
header.has_accept_language=False
reputation.useragent.score=0.7232543929114645
reputation.useragent.state=Suspect
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
reputation.useragent.support=13.20060389661698
header.is_service_worker_fetch=False
header.population_accept_language_rate=0.06140350877192982
21:31:09
GET
/privacy
Allow
VeryLow
--
Detector contributions
Ip
-25 %
IP appears normal: 170.106.180.xxx
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-119 %
Heuristic model (early): 80 % human likelihood (19 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /privacy
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 76 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=170.106.180
ua.family=Safari
ua.is_bot=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=18
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=13.0
behavioral.anomaly=False
risk.justification=No significant indicators
heuristic.confidence=0.5949218765014582
heuristic.prediction=human
h2.population_samples=76
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:18:17
GET
/dashboard/signature/_2M9TNNgQLm_7cCLnHDt1Q
Allow
Unknown
--
Signals
referrer.domain=stylobot.net
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:18:16
GET
/dashboard/entity/9e5950de177a416f
Allow
VeryLow
--
Detector contributions
Ip
-25 %
IP appears normal: 43.159.46.xxx
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-117 %
Heuristic model (early): 79 % human likelihood (19 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /dashboard/entity/9e5950de177a416f
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 75 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=43.159.46
ua.family=Safari
ua.is_bot=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=18
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=13.0
behavioral.anomaly=False
risk.justification=No significant indicators
heuristic.confidence=0.5864580028862163
heuristic.prediction=human
h2.population_samples=75
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:18:06
GET
/terms
throttle-aggressive
VeryHigh
googlebot
Detector contributions
Ip
-25 %
IP appears normal: 119.155.194.xxx
Header
0 %
Browser UA without Accept-Language; deployment norm is low language rate (6 % over 113 samples)
Intent
0 %
Session intent: unknown (threat=0.05, band=None)
AiScraper
0 %
No AI scraper signals detected
Heuristic
79 %
Heuristic model (early): 70 % bot likelihood (22 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
VersionAge
48 %
Chrome v89 is 45 versions behind (latest: 134)
StreamAbuse
0 %
Stream abuse check - non-streaming request
SecurityTool
0 %
No security tools detected in User-Agent
HeuristicLate
250 %
Heuristic model (late): 100 % bot likelihood (225 features)
Inconsistency
150 %
Browser User-Agent without Accept-Language header; Chrome User-Agent without Client Hints; Outdated browser version in User-Agent
SessionVector
0 %
Session tracking active (1 requests, 0 prior sessions)
ReputationBias
7 %
UA pattern Suspect (score=0.70, support=12)
TlsFingerprint
-45 %
TLS connection appears normal
ClaimedIdentity
0 %
Chrome behavioral profile mismatch (consistency=0.33): missing Sec-Fetch headers (expected for this browser); no Accept-Language (browsers always send this); no text/html in Accept (expected for browser)
ReactivePattern
0 %
No prior error events to analyze
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 128 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
BehavioralWaveform
0 %
Behavioral waveform analysis complete (insufficient history)
FastPathReputation
0 %
No known patterns in reputation cache
MultiLayerCorrelation
0 %
Cross-signal consistency check complete (not enough data to compare)
Signals
ip.subnet=119.155.194
ua.family=Chrome
ua.is_bot=False
ip.is_ipv6=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=14
tls.is_https=True
tls.available=True
h2.behind_proxy=False
intent.analyzed=True
intent.category=unknown
ip.is_datacenter=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=89.0
behavioral.anomaly=False
intent.match_count=1
intent.threat_band=None
risk.justification=probability 0.90
intent.threat_score=0.05
heuristic.confidence=0.3937665560241068
heuristic.prediction=bot
h2.population_samples=128
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
reputation.bias_count=1
tcp.connection_header=keep-alive
intent.similarity_score=1.0000001192092896
reputation.bias_applied=True
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=Scraper,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
heuristic.late_confidence=0.9999990758513986
heuristic.late_prediction=bot
header.has_accept_encoding=True
header.has_accept_language=False
reputation.useragent.score=0.696665843380631
reputation.useragent.state=Suspect
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
reputation.useragent.support=12.324060686740438
header.is_service_worker_fetch=False
header.population_accept_language_rate=0.061946902654867256
21:14:55
GET
/
Allow
VeryLow
Chrome Desktop (privacy headers)
Detector contributions
Ip
-25 %
IP appears normal: 1.12.70.xxx
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-152 %
Heuristic model (early): 88 % human likelihood (18 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 74 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=1.12.70
ua.family=Safari
ua.is_bot=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=19
tls.is_https=True
tls.available=True
h2.behind_proxy=False
referrer.domain=stylobot.net
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=13.0
behavioral.anomaly=False
risk.justification=No significant indicators
heuristic.confidence=0.7600147629243992
heuristic.prediction=human
h2.population_samples=74
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:14:38
GET
/
throttle-stealth
VeryHigh
Unknown
Detector contributions
Ip
72 %
Datacenter IP detected: Hetzner
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-34 %
Heuristic model (early): 59 % human likelihood (18 features)
UserAgent
90 %
Suspiciously short User-Agent (< 10 chars)
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
Http2Fingerprint
3 %
Using HTTP/1.1 instead of HTTP/2 (HTTP/2 rate: 0 % over 1 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=65.109.33
ua.family=Node.js
ua.is_bot=True
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
ua.bot_name=
ua.bot_type=Unknown
header.count=16
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=
behavioral.anomaly=False
risk.justification=probability 1.00
heuristic.confidence=0.17080919554590723
heuristic.prediction=human
h2.population_samples=1
header.sec_fetch_dest=
header.sec_fetch_mode=cors
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=Unknown,yamlType=null,botName=
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:11:13
GET
/dashboard/signature/ivapIL71LYVLrc0Snw6N0Q
Allow
VeryLow
--
Detector contributions
Ip
-25 %
IP appears normal: 43.130.72.xxx
Header
-18 %
Headers appear normal
AiScraper
0 %
No AI scraper signals detected
Heuristic
-117 %
Heuristic model (early): 79 % human likelihood (19 features)
UserAgent
-33 %
User-Agent appears normal
Behavioral
-30 %
Request patterns appear normal
SecurityTool
0 %
No security tools detected in User-Agent
TlsFingerprint
-45 %
TLS connection appears normal
ContentSequence
0 %
Document hit — sequence reset at /dashboard/signature/ivapIL71LYVLrc0Snw6N0Q
Http2Fingerprint
0 %
Using HTTP/1.1; environment norm is HTTP/1.1 (0 % HTTP/2 over 73 samples)
Http3Fingerprint
0 %
Connection uses HTTP/1.1 (not HTTP/3)
TcpIpFingerprint
0 %
Network fingerprint analysis complete (no anomalies detected)
HeaderCorrelation
0 %
Single signature per header profile
TransportProtocol
0 %
Transport protocol analysis complete
FastPathReputation
0 %
No known patterns in reputation cache
Signals
ip.subnet=43.130.72
ua.family=Safari
ua.is_bot=False
h2.is_http2=False
h2.protocol=HTTP/1.1
h3.is_http3=False
h3.protocol=HTTP/1.1
ip.is_local=False
header.count=18
tls.is_https=True
tls.available=True
h2.behind_proxy=False
request.protocol=HTTP/1.1
header.has_accept=True
ua.family_version=13.0
behavioral.anomaly=False
risk.justification=No significant indicators
heuristic.confidence=0.5834978886945702
heuristic.prediction=human
h2.population_samples=73
header.sec_fetch_dest=
header.sec_fetch_mode=
header.sec_fetch_site=
tcp.connection_header=keep-alive
request.accept_encoding=gzip, br
risk.friendly_pin_trace=not-applicable:botType=null,yamlType=null,botName=null
h2.population_http2_rate=0
header.has_proxy_headers=False
heuristic.early_completed=True
header.has_accept_encoding=True
header.has_accept_language=True
header.is_websocket_upgrade=False
header.sec_fetch_same_origin=False
header.is_service_worker_fetch=False
21:09:52
GET
/dashboard/signature/tyV4_iqqTLLCdiI6_wSUOw
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:09:49
GET
/dashboard/signature/MJV2i4wxxkMPq7WUJNwndg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:09:22
GET
/dashboard/signature/7qUUokelw19YVAjPHlYVlw
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:09:06
GET
/dashboard/signature/Zt5KjvrhjjNxYufXV_bVTQ
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:09:00
GET
/
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:09:00
GET
/dashboard/signature/I0SCm_b3h_SBr-gxhoJFjg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:59
GET
/dashboard/signature/eLbkF8KyzrHU4r4sO4QW_Q
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:35
GET
/dashboard/signature/UbKcWVnejdQG9zTQl4yvWQ
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:34
GET
/dashboard/signature/pUgmTzQWOxaARRobchxpnQ
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:21
GET
/dashboard/signature/ivapIL71LYVLrc0Snw6N0Q
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:21
GET
/dashboard/signature/BF_fyRvaluxfCNIgVpuWXQ
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:05
GET
/_content/Mostlylucid.BotDetection.UI/vendor/js/signalr.min.js
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:05
GET
/dashboard/signature/nFffPF9lFlJcdf5_ev8rgg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:02
GET
/dashboard/signature/bst3fdfp6gf9TzyImAFGjQ
Allow
Unknown
--
Signals
h2.protocol=h2
referrer.domain=stylobot.net
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:02
GET
/dashboard/entity/83358b5362a945d1
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:08:02
GET
/_content/Mostlylucid.BotDetection.UI/img/stylowall.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:42
GET
/_content/Mostlylucid.BotDetection.UI/vendor/css/boxicons.min.css
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:42
GET
/_content/Mostlylucid.BotDetection.UI/flags/hk.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:16
GET
/_content/Mostlylucid.BotDetection.UI/flags/jp.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:16
GET
/_content/Mostlylucid.BotDetection.UI/flags/cn.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:05
GET
/_content/Mostlylucid.BotDetection.UI/flags/de.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:04
GET
/_content/Mostlylucid.BotDetection.UI/flags/us.svg
Allow
Unknown
--
Signals
h2.protocol=h2
request.protocol=HTTP/2
request.accept_encoding=gzip, br
21:07:04
GET
/dashboard/signature/tyV4_iqqTLLCdiI6_wSUOw
Allow
Unknown
--
Signals
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:06:51
POST
/stylobot/hub/negotiate
Allow
Unknown
--
Signals
referrer.domain=stylobot.net
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br
21:06:50
GET
/dist/assets/index.css
Allow
Unknown
--
Signals
referrer.domain=stylobot.net
request.protocol=HTTP/1.1
request.accept_encoding=gzip, br