Security

Mitigation that stays on
before the attack starts.

DDoS filtering is enabled on every service by default — there is no separate 'under attack' plan to purchase.

Protection layers

Filtering applied at each layer of the stack.

Layer 3

Volumetric packet floods absorbed and filtered at the network edge before reaching your ports.

Layer 4

SYN, ACK and UDP amplification mitigation with connection state tracking per destination.

Layer 7

Application-aware filtering, challenge pages and configurable per-route rate limits.

Controls you operate

Security tooling exposed in the dashboard and API.

Traffic filtering

Signature and heuristic filters with per-service sensitivity tuning.

Rate limiting

Request budgets per IP, path or API token with burst allowances.

IP allow/deny lists

CIDR-level controls applied at the edge and on instance firewalls.

Security events

Timeline of blocked traffic, rule matches and mitigation activations.

Attack analytics

Volume, vector and source breakdowns for every mitigation event.

Alerts

Email, webhook and dashboard notifications when thresholds are crossed.

Account security

How access to the platform itself is protected.

MFA & passkeys

TOTP, WebAuthn passkeys and single-use backup codes for account recovery.

Session control

Device list, session expiry and remote revocation for any active session.

Audit logging

Immutable records of infrastructure and billing changes with actor attribution.

RBAC

Granular team roles scoped per project, product and environment.

API authentication

Scoped API tokens with expiry, IP restrictions and per-token usage logs.

Suspicious login detection

Anomalous location and device checks with step-up verification.

Demo dataAttack analytics shown in product screenshots use synthetic data until monitoring is connected.

Ready to deploy on GoOblivion?

Talk to our infrastructure team about capacity, migrations and volume pricing.