Skip to main content
CanaryVaultsCanaryVaults home
ProductsPricingBlogDocs
Start Free
← Back to BlogDetection design

A believable decoy teaches you more than a blocked request

February 20264 min readCanaryHoneypot

Honeypots are useful because they observe attacker behavior directly. The quality of the trap determines the quality of the signal.


Blocking attacks is good. Understanding attacks is better. A firewall tells you that someone tried something bad. A honeypot tells you exactly what they tried, how they tried it, what they were looking for, and how sophisticated their technique was.

CanaryHoneypot lets you deploy fake AI assistants that look completely real. You give the honeypot a persona — 'Customer Support Bot for AcmeCorp' — and it generates a public trap URL. Anyone who finds it and starts probing gets fingerprinted.

The honeypot classifies every interaction by intent: JAILBREAK (trying to bypass restrictions), EXTRACTION (trying to get the system prompt), PROBING (testing capabilities), or NORMAL (legitimate-looking traffic). High-suspicion hits trigger instant alerts and tamper-evident evidence logs.

The key insight is that attackers behave differently when they think they found a real target. They reveal their techniques, their tools, and their objectives. This intelligence is far more valuable than a simple 'blocked' notification from a firewall.


This article is about a shipped surface: CanaryHoneypot — decoy assistants. Integration details live in the docs.

Continue reading

More notes from the CanaryVaults team.

Featured

What a paste-site canary sees: the anatomy of a credential-stuffing hit

A walkthrough of the seeding pipeline end to end: how a decoy credential ends up on a paste site, what happens in the moments after someone tries to use it, and what lands in your alert channel.

Platform6 min read
Postmortem

Every page on our site was shipping an empty body

One call to useSearchParams() sat inside the root layout's only Suspense boundary, and deopted the entire application to client-side rendering. Twelve words of markup left our server. Nothing in the build said so.

Platform4 min read
Engineering

It worked, it said so, and nothing happened

A contact form returned 201 and showed a green confirmation every time. Nobody was ever notified. We went looking for more of these and found about thirty, all with the same shape.

Platform4 min read
CanaryVaults

Deception-based AI security. Decoys, trap facts, honeypots, prompt defense, and tamper-evident audit trails — one workspace.

Plant your first canary

PRODUCT

ProductsCanaryAgentDashboardPricingReferralGet started

RESOURCES

DocumentationQuickstartShieldEvidence formatAPIBlog

COMPANY

AboutSecurityReport a vulnerabilityContact

TRUST

Trust centerVerify evidenceStatusChangelogIncidentsDPA

COMPARE

vs Thinkst Canaryvs CanaryTokensFor SaaS teams

LEGAL

TermsPrivacyCookiesSubprocessorsSupport
deception-based AI security© CanaryVaults · canaryvaults.comsha-256 sealed · tamper-evident

CANARYVAULTS