Threat detection
LaraOwl includes a built-in WAF analysis engine that inspects requests for common attack patterns:- SQL injection
- Cross-site scripting (XSS)
- Path traversal
- Command injection
- Local / remote file inclusion (LFI / RFI)
Risk scoring
Detected threats are scored by a risk-scoring engine with configurable thresholds across three levels:IP-based tracking
- Threats are tracked per IP address with automatic pattern recognition, so repeat offenders and coordinated activity stand out.
- The security audit dashboard presents a threat timeline for investigation.
Cloudflare integration
Connect your Cloudflare account to manage your edge firewall without leaving LaraOwl:- Direct Cloudflare API connection for WAF management.
- Firewall rule CRUD — create, read, update, and delete rules from the dashboard.
- Traffic analytics and audit-log visualization.
- One-click IP blocking for addresses flagged by threat detection.
The Cloudflare integration is optional. LaraOwl’s threat detection works independently — Cloudflare simply lets you act on findings at the edge.
