⚡ ACTIVE DECEPTION SECURITY

Canary Tokens & Honeypot Engine

Plant high-value decoy credentials in your repositories, databases, and environments. When an intruder or unauthorized scraper invokes them, our edge gateway isolates the adversary, logs their forensic JA4 fingerprint, and signs a tamper-evident XDR-1 breach attestation.

🔑 API Bearer Token Decoy
Plant a fake c402_canary_... credential in public staging .env files, developer notebooks, or client-side bundles. Any API call using it triggers instant edge alerting.
☁️ AWS Key Honeytoken
Looks like a genuine AKIA... access key. Plant in GitHub repos or Docker images. The moment an automated credential-stuffing scanner touches it, forensic telemetry logs the attacker.
🕷️ Spider Trap / Tarpit URL
An invisible link to place in HTML footers. Automated crawlers following it are trapped in a zero-CPU byte-dribbler that locks their connection threads at 1 byte/15s.

Canary Token Activated

ACTIVE ON EDGE
Place this decoy token into your designated test location.
c402_canary_...
Inspection Endpoint: /api/canary/status/<id>