Security – Vercel (original) (raw)
Scalable application security and DDoS mitigation with Vercel Firewall.
The Vercel Firewall delivers multi-layer protection against application-layer attacks, DDoS threats, and bots.
Global protection
Edge-localized protection.
L3/L4 protection at every edge location. Your site stays protected without adding latency.
DDoS mitigation
Automatic DDoS Mitigation for all plans.
Embedded bot management and protection against traffic abuse.
198.51.100.227
t13d1726h2
/wp-admin
continent=europe
Powerful Rules Engine
Custom rule management, for everybody.
Instantly create and enforce the rules unique to your business.
Vercel
Security Checkpoint
To ensure a smooth and safe experience, we’re taking a few moments to verify your browser.
Attack Challenge Mode
Protect your site when under attack.
Prevent malicious traffic by showing a verification challenge for visitors.
Maintain visibility into key metrics and production deployments, allowing you to monitor threats and requests in real-time.
Managed Rulesets
Enterprise
Activate Vercel’s managed rulesets to protect against top priority risks, including OWASP Top 10.
Define rules based on your framework's routes rather than fiddling with regular expressions or prefixes.
Programmatically manage WAF rules and integrate with third-party tools for continuous, dynamic security.
Control the frequency of requests made to your web applications and APIs.
Quickly revert to previous versions of firewall rules to ensure continuous protection without unintended outcomes.
Uses the same propagation pipeline as our cache infra, so firewall changes can be seen across the globe in 300ms.
Block matching requests from a suspicious client for a set duration, preventing repeat malicious behavior and preventing unnecessary resource use.
Trusted by the most security conscious teams.
Extend your backend
Create a secure, isolated bridge from Vercel to your on-premise backend or Kubernetes services with Vercel Secure Compute.
Dedicated environments
Private and dedicated access to build and runtime environments.
VPN and VPC peering
Secure runtime environments, without extra backend complexity.
Define your regions
Multiple availability zone redundancy by default.
Designed for high availability.
Every layer of Vercel’s infrastructure is designed for ultimate redundancy and resiliency, so your app stays online, even during the unexpected.
Automatic failover.
Traffic is routed to the nearest region in the face of incidents or network outages, for resilient protection against full regional downtimes.
Multi-layered redundancy.
Static assets are automatically replicated and cached across the Vercel Edge Network, with Anycast routing to ensure the lowest latency.
Workspace Security.
Role-based Access Control
Assign roles to ensure that the right people have the right permissions to work on your projects.
Deployment Protection
Secure your Vercel project’s preview and production URLs. Fine-grained access control for deployments.
Audit Logs
Enterprise
Track and analyze your team members' activity. Accessed by team members with the owner role.
Directory Sync
Enterprise
Manage your organization’s memberships from third-party identity providers.
- @acme/design
- @acme/eng
- @acme/security
- @acme/marketing
Code Owners.
Ensure the right people review the right code, with the right context.
- Major Issues
Across 6 projects
3 - Minor Issues
Across 12 projects
8
Conformance.
Catch issues before they become security vulnerabilities.