unsubbed.co

SafeLine

Self-hosted web application firewall and reverse proxy that protects web apps from attacks and exploits.

Overview

SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits. A simple, lightweight, self-hosted wAF that protects your website from cyber attacks. The project has 21K+ GitHub stars and is licensed under GPL-3.0.

Key Features

Source: GitHub README

  • Block Web Attacks
  • It defenses for all of web attacks, such as SQL injection, XSS, code injection, os command injection, CRLF injection, XXE, SSRF, path traversal and so on.
  • Rate Limiting
  • Defend your web apps against DoS attacks, bruteforce attempts, traffic surges, and other types of abuse by throttling traffic that exceeds defined limits.
  • Anti-Bot Challenge
  • Anti-Bot challenges to protect your website from bot attacks, humen users will be allowed, crawlers and bots will be blocked.
  • Authentication Challenge
  • When authentication challenge turned on, visitors need to enter the password, otherwise they will be blocked.
  • Dynamic Protection
  • When dynamic protection turned on, html and js codes in your web server will be dynamically encrypted by each time you visit.

Normalized Features

Source: tool-features-normalized.json

encryption, ldap, rate limiting.

Features

Authentication & Access

  • LDAP / Active Directory

Security & Privacy

  • Encryption
  • Rate Limiting