Honey Tokens — Decoys for Improper Access // MODULES

Honey Tokens — Decoys for Improper Access

Canary tokens you can plant in six or more formats: a transparent pixel, a DNS beacon, JS fingerprinting, public HTTP endpoints, AWS keys and Word/Excel documents.

Overview

Every trigger records full telemetry (IP, ASN, geolocation, user agent, device) and notifies the configured channels. Tokens support automatic rotation and burn-on-trigger.

Capabilities

  • 6+ token types
  • Geo/ASN/UA/device telemetry
  • Continuous alerting
  • Automatic rotation
  • Optional burn-on-trigger

Use Cases

  • Detect improper access to sensitive files
  • Identify exfiltration by e-mail
  • Honeypots on public endpoints
  • Tracking internal leaks

Integrations

  • DLP solutions
  • EDR (CrowdStrike, SentinelOne)
  • Slack/Teams alerts

SLA & Guarantees

Immediate trigger · 99.9% SLA

Next Steps