Skip to content

feat: cloud calls default to in.webdecoy.com, the fronted ingest address - #83

Merged
cport1 merged 1 commit into
mainfrom
feat/in-webdecoy-endpoint
Aug 28, 2026
Merged

feat: cloud calls default to in.webdecoy.com, the fronted ingest address#83
cport1 merged 1 commit into
mainfrom
feat/in-webdecoy-endpoint

Conversation

@cport1

@cport1 cport1 commented Aug 28, 2026

Copy link
Copy Markdown
Contributor

All server-side endpoints flip from ingest.webdecoy.com to in.webdecoy.com (Cloudflare-fronted, app repo #833). PHP-originated connections carry no fingerprint telemetry, so nothing is lost and DDoS absorption is gained. The plugin has no browser-tag ingest reference, so nothing here touches the direct hostname that carries JA4.

Verified live before this PR: 200 via Cloudflare, direct origin unusable. Custom API URLs unaffected. Version 2.8.0 with readme/changelog entries.

Every server-to-server call the plugin makes (detections, page-serve,
violations, IP enrichment, actor feed and intel, entitlements, the
bundled SDK client) moves behind Cloudflare fronting (app repo #833).
These connections carry no fingerprint telemetry, so the proxy costs
nothing and buys DDoS absorption in front of ingest. Sites that set a
custom API URL are unaffected. 2.8.0.
@cport1
cport1 merged commit 03ac404 into main Aug 28, 2026
3 checks passed
@cport1
cport1 deleted the feat/in-webdecoy-endpoint branch August 28, 2026 14:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant