Look beyond one webdriver flag
Automation can spoof one signal, so Voidek combines browser collect data with request headers, route pressure, and client classification.
Headless browser detection
Headless browser detection for sites that need crawler friction without forcing CAPTCHA on every visitor.
Automation can spoof one signal, so Voidek combines browser collect data with request headers, route pressure, and client classification.
Server middleware calls the Voidek decision API before returning protected content, allowing allow, log, challenge, and block outcomes.
Decision reasons and scores make it easier to tune policies before strict blocking reaches normal users.
Detection proof
Use these examples as rollout checks: start in monitor mode, confirm the log rows, then enforce only the classes that match your protected routes.
Rollout path
Voidek is meant to start quietly: save the runtime key, run a controlled test, then raise friction only where live logs support it.
Create a personal account on the Free plan, add one protected site, and save the runtime key before turning on headless browser detection.
Copy the test request, export VOIDEK_API_KEY, then confirm the GPTBot row appears in Analytics with path, action, and score.
Add the decision API at middleware or backend boundaries, then tune Selenium detection after live rows look clean.
FAQ
Some can spoof signals. Voidek raises the cost by combining multiple signals and route-level behavior instead of depending on a single flag.
The snippet improves browser verification, while server middleware can still classify many clients from headers and request behavior.
First setup
Create a personal account, add one protected site, copy the runtime key, and run one test decision before enforcing headless browser detection.