Skip to content

Security Dashboard

The Security Dashboard provides real-time visibility into security events, anomaly detection rules, and IP reputation management. It has four tabs: Overview, Events, Rules, and IP Reputation.

Overview Tab

Four stat cards at the top:

MetricDescription
Total Events (30d)Security events in the last 30 days
UnresolvedEvents still open
Active RulesAnomaly detection rules currently enabled
Blocked IPsIP addresses currently blocked

Below the stats:

  • Events by Severity — breakdown of events by severity level
  • Top Event Types — bar chart of most common event types
imageSecurity dashboard overview tab showing stat cards for total events, unresolved count, active rules, and blocked IPs, with events by severity breakdown and top event types bar chart
Security dashboard with KPI cards

Events Tab

A filterable table of security events:

ColumnDescription
TypeEvent type (e.g., brute_force, impossible_travel, prompt_injection)
SeverityBadge colored by severity
Risk ScoreNumeric risk score
IPSource IP address
ActionAction taken (alert, block, rate_limit)
StatusOpen or Resolved
DateTimestamp

Filters

  • Severity dropdown
  • Unresolved only toggle

Click Resolve on any open event to mark it as handled.

imageSecurity events table showing columns for type, severity badge, risk score, IP address, action taken, status, and date, with severity dropdown filter and unresolved toggle
Security events table with filtering

Rules Tab

Anomaly detection rules define what triggers a security event.

Creating a Rule

  1. Click New Rule.
  2. Choose from pre-built rule templates or create a custom rule.

Rule Template Categories

CategoryExamples
Rate LimitingConversation rate limit, escalation rate limit, password spray detection
Geo-RestrictionsLocation-based access control
BehaviorAfter-hours access, VPN/Tor detection
Pattern MatchingSensitive data access patterns
Conversation FraudPrompt injection, social engineering, SSN/CC leakage, PII extraction

Managing Rules

Each rule card shows:

  • Name and severity badge
  • Type and action (alert, block, rate_limit)
  • Cooldown period
  • Toggle switch to enable/disable (system rules)
  • Delete button (custom rules only)

IP Reputation Tab

IP Lookup

  1. Enter an IP address in the lookup field.
  2. Click Lookup.
  3. The result shows:
FieldDescription
IPThe queried address
LocationCountry and region
ISPInternet service provider
ScoreReputation score
ThreatsBadges for VPN, Tor, Proxy, Datacenter, Blocked

Blocking / Unblocking IPs

  • Click Block IP to add an IP to the blocklist. Blocked IPs are rejected on all requests.
  • Click Unblock on a blocked IP to remove it.

Blocked IPs Table

Shows all currently blocked IPs with country, ISP, threat indicators, and an Unblock button.

OmniBots AI Bot Platform