Live demo | Open source | Documentation | Contact
Open-source SIEM for web application
Platform

Use cases

How it works

About

Pricing

Download
The Lac d'Émosson, Valais, Switzerland.


01
Data
collection


02
Data
enrichment


03
Risk-based
alerting

tirreno collects real-time user event data from your web application through API calls.

 

The proprietary API enriches data, transforming it into actionable intelligence for real-time threat detection.

 

The rule engine processes data to identify positive signals, red flags, and regularities, assessing the risk associated with a particular user or event.

‐ User ID
‐ Event type
‐ Time stamp
‐ User agent
‐ IP address
‐ Requested URI
‐ Email address
‐ Phone number
 
‐ User activity metrics
‐ IP geolocation
‐ Historical user data
‐ Device model
‐ ASN information
‐ IP blacklist matching
‐ VPN/Datacenter detection
‐ Phone data enrichment
‐ Email intelligence
‐ Disposable email
‐ Domain intelligence
 
ⓘ Brute-force attack
ⓘ Account takeover
ⓘ Registration monitoring
ⓘ Fake accounts
ⓘ Merchant fraud
ⓘ Single user view
ⓘ Compromised accounts
ⓘ Account sharing
ⓘ Dormant accounts
ⓘ Content abuse

Open-source fraud prevention platform

Use cases

How it works

About

Pricing

Download

Live demo

Github

Dockerhub

Documentation

General team@tirreno.com
Support ping@tirreno.com
Security atdt@tirreno.com

Terms & conditions
Privacy policy
Imprint | Contact

Rte des Flumeaux 48
unlimitrust campus
CH-1008 Prilly
Switzerland Switzerland

© 2025 Tirreno Technologies Sàrl.