Platform

One explained decision for every request

Kavra reads each visit on several layers at once (network, device and environment, browser integrity, behavior, identity and history), weighs the evidence with an AI/ML risk engine and returns an explained assessment with a recommended action. Your backend decides what happens; the visitor never has to do anything.

How a decision is made

  1. 01

    The script loads from Kavra's edge

    A small script on your page (under 64 KB, loaded asynchronously) starts on Kavra's own edge network, so the very first request already carries evidence about the connection.

  2. 02

    Signals are collected in the background

    The script reads the browser and device environment without any action from the visitor and sends it in an encrypted envelope.

  3. 03

    Kavra weighs the evidence

    Every layer is checked on its own and against the others. The AI/ML risk engine looks for the contradictions a disguise leaves behind.

  4. 04

    Your page receives a signed token

    The token is short-lived, single-use and bound to the action it was issued for, such as signup, login or checkout.

  5. 05

    Your backend gets the assessment

    One server call redeems the token and returns the classification, the findings and a recommendation. Your rules decide: allow, verify or block.

The layers Kavra reads

A disguise can polish the layer it controls. It rarely keeps every layer consistent at once.

LayerWhat is readWhy it is hard to fake
NetworkWhere the connection really comes from: IP reputation, proxy, VPN and datacenter classification, network owner, velocityObserved by Kavra's edge, not reported by the browser; includes Kavra's own measurements of commercial proxy exits
Device and environmentGraphics, screen, hardware, fonts and system settings the device exposesMeasured values are compared with what the device claims to be
Browser integrityWhether the browser is genuine or automated, and whether it has been modifiedAutomation and tampering leave artifacts in the running browser
BehaviorHow the visitor moves, types and navigatesScripts and farms produce patterns that differ from people
Identity and historyWhether this device has been seen before, under which accounts, and how it changedA changed fingerprint on the same actor is kept as one actor with a rotation, not a new visitor
AI/ML risk engineWeighs all layers together into risk by domainNo single signal can push a score to certainty on its own

What counts as a data point

Kavra analyzes 3,000+ data points on a visit. A data point is one measured property: a network attribute, a device or graphics value, a browser behavior, a timing, or a comparison between two of them. Not every data point is available on every device or browser, so each assessment also reports how much Kavra could see (coverage), and a thinly observed visit is never presented as a clean one.

What your backend receives

FieldWhat it tells you
Client classificationLikely human, automation, verified bot, verified AI agent, declared but unverified bot, or unknown, with the bot's name and operator when known
Risk by domainNone, low, elevated or high for automation, impersonation, network and tampering
HeadlineOne sentence a person can read, for example "Automation: HTTP library impersonating Chrome"
FindingsThe specific checks that fired, each with a title and severity
Network contextCountry, network owner, network class (residential, datacenter, mobile), privacy service and IP risk
RecommendationAllow, verify or block under your policy preset (cautious, balanced or strict)

Built around your decision

  • Allow, verify or block

    Kavra recommends; your code applies your rules. Verify can mean a one-time code, 3-D Secure, a held reward or a manual review, whatever fits the action.

  • Observe-only mode

    See every assessment on your real traffic before any decision changes for your customers.

  • Good bots and AI agents

    Verified crawlers and agents are recognized by cryptographic signatures and published IP ranges and reported separately. You choose to allow, check or block them.

  • Console for your team

    Search every assessment, open the evidence behind it, follow linked devices and accounts, and review trends, with roles and an audit log.

What Kavra is and is not

Kavra is

  • A detection and decision service with explained results
  • Invisible to visitors: no puzzles, sliders or checkboxes
  • Added to your site with one script and one API call
  • Complementary to KYC, payment screening and your WAF

Kavra is not

  • A CAPTCHA or challenge widget
  • A CDN, firewall or DDoS scrubbing network; no DNS change is needed
  • An identity document or KYC service
  • A black box: every decision shows its reasons

FAQ

Frequently asked questions

Something else? Talk to our team.

Does Kavra show anything to my visitors?

No. Every check runs in the background. When the evidence is not conclusive, Kavra runs more background checks and reports its uncertainty; any extra step, such as a one-time code, is a choice your own backend makes.

Do I need to route my traffic through Kavra?

No. Kavra is not a proxy or CDN. You add a script to your pages and one server-side call; your DNS and hosting stay as they are.

How fast is a decision?

The script loads asynchronously and never blocks rendering. The assessment is prepared while the visitor uses the page, so your backend has it when the protected action happens.

Can I see why a request was flagged?

Yes. Every assessment includes a readable headline, the findings with their severity and the network context. The same explanation is available to your backend and in the console.

See who is really on your site.

Run Kavra on your own traffic in observe-only mode. No risk to your customers, and a clear report of the fraud it finds.