TripSignal
LIVE GET/signals status200 · no-store waf request id-eSK3z6QNSo8TerrP279804cBsTioqW9JsX4S1Y77uJiBOoMOinFhg== seen from216.73.216.202 loaded outcomeALLOW

/signals

This page reports and never enforces: it answers 200 whatever the policy decides, with Cache-Control: no-store. The statuses below are what a content route would have returned.

1. WAF-inserted headers

6 received
HeaderValue as received
x-amzn-waf-bot-categoryai
x-amzn-waf-bot-signalscloud_service_provider:aws,non_browser_user_agent
x-amzn-waf-bot-statuscategory:ai,name:claudebot,unverified
x-amzn-waf-client-ip216.73.216.202
x-amzn-waf-token-statusabsent
x-amzn-waf-waf-request-id-eSK3z6QNSo8TerrP279804cBsTioqW9JsX4S1Y77uJiBOoMOinFhg==

2. Every other request header

32 headers
HeaderValue
accept*/*
accept-encodinggzip, br, zstd, deflate
cloudfront-forwarded-protohttps
cloudfront-is-android-viewerfalse
cloudfront-is-desktop-viewertrue
cloudfront-is-ios-viewerfalse
cloudfront-is-mobile-viewerfalse
cloudfront-is-smarttv-viewerfalse
cloudfront-is-tablet-viewerfalse
cloudfront-viewer-address216.73.216.202:64327
cloudfront-viewer-asn16509
cloudfront-viewer-cityColumbus
cloudfront-viewer-countryUS
cloudfront-viewer-country-nameUnited States
cloudfront-viewer-country-regionOH
cloudfront-viewer-country-region-nameOhio
cloudfront-viewer-http-version2.0
cloudfront-viewer-latitude39.95870
cloudfront-viewer-longitude-82.99870
cloudfront-viewer-metro-code535
cloudfront-viewer-postal-code43215
cloudfront-viewer-time-zoneAmerica/New_York
cloudfront-viewer-tlsTLSv1.3:TLS_AES_128_GCM_SHA256:fullHandshake
hosttripsi-demos-9ov3tnly4fng-874983800.us-east-1.elb.amazonaws.com
user-agentMozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)
via2.0 1c7d2acc571bfdfea1aaa4496085dbda.cloudfront.net (CloudFront)
x-amz-cf-id-eSK3z6QNSo8TerrP279804cBsTioqW9JsX4S1Y77uJiBOoMOinFhg==
x-amzn-trace-idRoot=1-6ac81d97-0326a8346c28cc2b24b4e316
x-forwarded-for216.73.216.202, 18.68.21.101
x-forwarded-port80
x-forwarded-protohttp
x-tripsignal-origin-secret***

The origin secret's name is shown and its value is redacted to ***. Seen from here: 216.73.216.202.

3. The backend policy

Outcome: allow

On a content route this request would have received HTTP 200.

Labels the policy read

Policy inputAs forwarded
botcategory:ai,name:claudebot,unverified
categoryai
signalscloud_service_provider:aws,non_browser_user_agent
rate(absent)

Policy table top to bottom, first match wins

OutcomeEvidence the row needsContent route
block a specific bot name AND another signal 403 from the origin
inspect a specific bot name on its own; handed to third-party review 200, recorded
allow everything else: no row matched 200 ◀ this request

No policy row matched.

6. Correlation token

No well-formed tstrace token on this request, so nothing was recorded. A malformed token is ignored rather than rejected.