OK
reachable
Chrome 123 on /wp-json - caught by Request patterns appear normal, IP appears normal: 45.156.129.xxx, No bot marker in User-Agent (weak human lean; UA is easil...
| Mode | Observations | Maturity | Shift from baseline | Last seen |
|---|---|---|---|---|
| signalr-negotiate | 475 | 475 | 0.20 (header order hash, accept encoding ordered, header case pattern) | 05:10:45 |
| bot-raw | 4724 | 4724 | 0.15 (priority, header order hash, sec ch ua platform) | 04:41:49 |
| sub-resource | 530 | 530 | 0.29 (priority, header order hash, accept) | 14:43:58 |
| navigation | 1588 | 1588 | 0.37 (accept, sec ch ua brands ordered, priority) | 14:43:41 |
| # | Path |
|---|---|
| 1 | /wp-json |
| 2 | /license.txt |
| Time | Method | Path | Status | Prob | Conf | Risk Profile | Action | Time |
|---|---|---|---|---|---|---|---|---|
| 03:51:35 | GET | /wp-json | 404 | 90 % | 68 % | VeryHigh | Silent Throttle | 13.9ms |
| 15:29:40 | GET | /wp-json | 404 | 90 % | 68 % | VeryHigh | Silent Throttle | 10.8ms |
| 15:29:36 | GET | /license.txt | 404 | 90 % | 68 % | VeryHigh | Silent Throttle | 13.3ms |
Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/[phone] Safari/537.36
| Detector | Confidence Delta | Timing (ms) |
|---|---|---|
|
HeuristicLate
Heuristic model (late): 98 % bot likelihood (283 features)
|
+0.966 | 0.4 |
|
Heuristic
Heuristic model (early): 85 % bot likelihood (23 features)
|
+0.694 | 0.1 |
|
Ip
IP appears normal: 45.156.129.xxx
|
-0.150 | 2.1 |
|
Behavioral
Request patterns appear normal
|
-0.150 | 0.2 |
|
UserAgent
No bot marker in User-Agent (weak human lean; UA is easily spoofed)
|
-0.050 | 0.6 |
|
TlsFingerprint
Using HTTP instead of HTTPS (uncommon for modern browsers)
|
+0.050 | 0.0 |
|
AI
AI analysis: borderline case, monitoring
|
+0.000 | 10.2 |
|
Header
Browser UA without Accept-Language; deployment norm is low language rate (40 % over 288 samples)
|
+0.000 | 0.1 |
|
AiScraper
No AI scraper signals detected
|
+0.000 | 0.0 |
|
VerifiedBot
No known bot UA pattern
|
+0.000 | 0.0 |
|
SecurityTool
No security tools detected in User-Agent
|
+0.000 | 0.1 |
|
RequestHydrator
Request signals hydrated to sink
|
+0.000 | 0.0 |
|
Http2Fingerprint
Using HTTP/1.1; environment norm is HTTP/1.1 (25 % HTTP/2 over 61 samples)
|
+0.000 | 0.0 |
|
Http3Fingerprint
Connection uses HTTP/1.1 (not HTTP/3)
|
+0.000 | 0.0 |
|
TcpIpFingerprint
Network fingerprint analysis complete (no anomalies detected)
|
+0.000 | 0.0 |
|
HeaderCorrelation
Single signature per header profile
|
+0.000 | 0.0 |
|
TransportProtocol
Transport protocol analysis complete
|
+0.000 | 0.0 |
|
FastPathReputation
No known patterns in reputation cache
|
+0.000 | 0.0 |
No sessions recorded yet.
Sessions are created when a visitor's activity gap exceeds 30 minutes.
reachable
ASP.NET pack enabled
91e6038ebacb4268a4bab17554356661
0 observations
Span + log activity for this fingerprint, ordered by timestamp.
OTel Mesh receiver online, but no observations seen for this fingerprint id (check W3C baggage propagation)
Block/Allow writes a scoped policy rule for this fingerprint — a policy action, applied via the live policy pipe. It is never a skip-detection bypass.
WfyPyYO7-48-g_l2rlYuEQ
|
Processing: 14ms
|
Country: US
|
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/[phone] Safari/537.36
|
First seen: 2026-07-19 15:29:36 UTC