Dectrax
EDGE API & REVERSE PROXY

GATE Open-Source Edge Security & Traffic Control

Inspect API traffic at the network edge, validate JSON request schemas, and route malicious payloads into deception targets.

Inspecting and controlling traffic at the API edge

Web applications and APIs are directly exposed to malicious traffic, schema bypass attempts, and automated exploit probes. Processing malformed or malicious requests at origin backends consumes compute resources and increases attack surface risk.

Backend application servers spend compute resources processing invalid, malformed, or malicious API requests.

Traditional WAF rules can be complex to maintain and slow to update when new threat patterns emerge.

API security requires lightweight, low-latency edge inspection operating before traffic reaches production backends.

GATE open-source edge proxying & DentiGrid intelligence

DentiGridDeception & Intelligence

DentiGrid provides the centralized threat intelligence feed and deception traps. When attackers interact with DentiGrid honeypots, generated threat intelligence feeds directly into GATE edge enforcement rules.

GATEEdge Proxy Enforcement

GATE is Dectrax open-source edge security reverse proxy built on Cloudflare Workers. It intercepts incoming HTTP/HTTPS requests, validates JSON schemas against spec files, filters malformed payloads, and routes suspicious traffic into decoy traps.

SYSTEM TOPOLOGY & DATA FLOW
                  INCOMING HTTP/S REQUEST
                            |
                            v
          +-----------------------------------+
          |          GATE EDGE PROXY          |
          |  - Cloudflare Workers             |
          |  - JSON Schema Validation         |
          |  - WAF / Payload Inspection       |
          +-----------------+-----------------+
                            |
             +--------------+--------------+
             | (Valid Request)             | (Malicious Payload)
             v                             v
    Production Backend             DentiGrid Honeypot
       Application                    Decoy Target
                                           |
                                           v
                                  Threat Intelligence
                                           |
                                           v
                                  GATE Enforcement Rules

Sanitized GATE Edge Event — Schema Validation Failure

Telemetry Observation Record
Proxy Node: cf-worker-proxy-01
Timestamp: 2026-08-14T21:55:30Z
Client IP: 198.51.100.72
Target Route: POST /api/v2/user/update
Error: JSON Schema Violation (Unexpected Type Payload Injection)
Action: Request blocked at Edge (HTTP 400) -> Source IP cached in GATE Blocklist

How GATE inspects requests and enforces security at the edge

1

A client sends an HTTP POST request to an application API endpoint guarded by GATE.

2

GATE inspects the payload at the edge and validates request structure against schema definitions.

3

If the payload contains schema violations or malicious patterns, GATE drops the request or routes it to a decoy.

4

DentiGrid intelligence feeds update GATE edge blocklists in real-time.

What your engineering team receives

GATE open-source repository and edge proxy worker codebase.
JSON schema validation configuration templates.
DentiGrid threat intelligence feed integration for automated edge enforcement.
Commercial technical support for high-throughput edge deployments.

Security Stack Integration

GATE operates alongside existing API gateways (Kong, NGINX, Apigee) and cloud edge networks (Cloudflare Workers, Fastly).

COMMERCIAL POSITIONING

Why pay Dectrax if GATE is open source?

GATE is 100% open source and free to use under open-source licensing. Dectrax sells commercial DentiGrid deception node telemetry, managed threat intelligence pipelines, multi-tenant dashboards, and SLA-backed support.

Discuss your environment with our team

Consult directly with Dectrax security engineers to review deception node placement and edge proxy deployment specs for your network.