Checkpoint Docs

Welcome

Checkpoint protects your applications from AI agents and automated bots

Checkpoint is a comprehensive AI agent detection and protection platform. It identifies and manages automated traffic on your web applications with enterprise-grade detection, flexible enforcement, and identity-based governance for AI agents.

Why Checkpoint?

  • Advanced AI Detection — State-of-the-art algorithms to identify AI agents, bots, and automated browsers
  • Flexible Enforcement — Block, redirect, rate-limit, or allow — you decide how to handle detected agents
  • Identity Governance — Control what AI agents can access using MCP-I (Model Context Protocol with Identity)
  • Real-time Analytics — Monitor traffic patterns, detection trends, and agent activity
  • Privacy First — GDPR compliant with configurable privacy settings

Platform Overview

Detect

Identify AI agents and bots using client-side or server-side signals. Checkpoint supports multiple detection methods you can use independently or combine.

Learn more about detection methods →

Enforce

Take action on detected agents with configurable policies. Start with logging, then graduate to blocking or rate-limiting when you're confident in your detection settings.

Learn more about enforcement →

Govern (MCP-I)

Control what AI agents can access using identity-based governance. MCP-I (Model Context Protocol with Identity) adds authentication, authorization, and consent to AI agent interactions.

Learn more about governance →

Choose Your Integration

View Marketing Pixel documentation
No Code
Marketing Pixel

Marketing Pixel

GTM-compatible pixel for marketing teams - no coding required

View Beacon documentation
Client Side
Beacon

Beacon

Lightweight tracking beacon for any website with WebWorker support

View Middleware documentation
Next.js
Middleware

Middleware

Middleware for Next.js to detect and block AI agents

View Express documentation
Node.js
Express

Express

Express middleware for detecting and blocking AI agents

View API documentation
Custom
API

API

API for detecting and blocking AI agents

Quick Start

Get started with Checkpoint in minutes:

# For Next.js applications
npm install @kya-os/agentshield-nextjs

# For Express applications
npm install @kya-os/agentshield-express

# For client-side detection
npm install @kya-os/agentshield-beacon

Then follow our Quick Start Guide to configure your first protection.

Architecture Overview

Checkpoint uses a multi-layered approach to detect and manage automated traffic:

  1. Detection Layer — Analyzes requests using user agent, TLS fingerprint, headers, and behavioral signals
  2. Classification Engine — Classifies traffic as human, ai_agent, bot, or incomplete_data with confidence scores (0–100)
  3. Policy Engine — Evaluates enforcement rules (allow lists, deny lists, path rules, thresholds)
  4. Governance Layer — MCP-I identity verification, delegation proofs, and scoped access control
  5. Analytics Layer — Tracks and reports detection metrics with session consolidation

Next Steps

Support