Demo  Arrow | GitHub | Docs | API reference | Contact | Blog
tirreno - Open-source security framework Home Use cases How it works Pricing About
Arrow Download
The Lac d'Émosson, Valais, Switzerland.





Security framework for
devs and product teams

From simple input to multi-dimensional awareness





01.
Data
ingestion


02.
Context
builder


03.
Risk-based
analysis


04.
Review & 
auto-blocking

tirreno receives real-time user event data from your applications through API calls.

 

User context and proprietary API enrich data, transforming it into actionable intelligence.

 

The rule engine processes data to identify positive signals, red flags, and regularities to re-evaluate user risk score.

 

Flagged accounts sent for manual review. Accounts with the lowest scores may be automatically suspended to prevent further access to your app.

‐ User ID
‐ Event type
‐ Time stamp
‐ User agent
‐ IP address
‐ Requested URI
‐ Field history
 
‐ User activity metrics
‐ Behavioural data
‐ Device model
‐ Operating system
‐ IP geolocation
‐ VPN/Datacenter detection
‐ ASN information
 
ⓘ Account takeover
ⓘ Brute-force attack
ⓘ Non-human identities abuse
ⓘ Compromised accounts
ⓘ Account sharing
ⓘ Insider threats
ⓘ Dormant accounts
ⓘ Content abuse
ⓘ Your custom rules
↳ Manual review
↳ Blacklist

tirreno is an open-source security
framework that embeds protection
into your product against threats,
fraud and abuse.

—  Security framework

—  Use cases

—  How it works

—  Pricing

—  About

—  Download

—  Live demo

—  GitHub

—  Dockerhub

—  Documentation

—  Blog

General team@tirreno.com
Support ping@tirreno.com
Security atdt@tirreno.com

Terms & conditions
Privacy policy
Imprint | Contact

Rue Galilée 7
1400 Yverdon-les-Bains
Switzerland Switzerland

©2026, tirreno




Open-source security framework