Signals, Not Certainty
ActiveHeadless detection reports likelihood and confidence. It never claims a user identity or treats a single signal as definitive proof.
Explain deterministic headless signals such as webdriver, automation globals, user-agent patterns, plugin inconsistencies, and rendering anomalies.
Local analysis works without login. Protected actions use PLATPHORM_API_KEY only.
Raw IPs, raw high-entropy component values, full visitor hashes, and unredacted JA4 digest metadata are excluded from public surfaces.
Headless detection reports likelihood and confidence. It never claims a user identity or treats a single signal as definitive proof.
The live checks run in the browser tab and handle unsupported APIs as unavailable, blocked, or degraded.
BrowserOps-triggered collection and private trace correlation require PLATPHORM_API_KEY and are not faked publicly.