A web application firewall that protects applications and APIs from cyber threats and data breaches. It blocks attacks such as SQL injection, XSS, and other OWASP Top 10 vulnerabilities using managed rules, machine learning, and threat intelligence. The product is designed for security analysts and organizations needing to comply with regulations like GDPR, PII, and PCI DSS. It can be deployed as a SaaS solution or on-premises, supporting public, private, and hybrid cloud environments. Capabilities include automated policy creation, bot protection, SSL management, and malicious file upload scanning. Security events are correlated into incident narratives to reduce alert fatigue and help teams respond to critical incidents. The platform also offers a Terraform provider to automate deployments using Infrastructure as Code practices.
Whether you want to cut software costs or escape vendor lock-in, these open source alternatives to Imperva give you an option you fully own. You can self-host them, so your data stays on infrastructure you control. This page lists 2 open source alternatives to Imperva. The most popular are SafeLine and BunkerWeb. Most use the AGPL-3.0 or GPL-3.0 license, and 2 offer an official Docker image.
A self-hosted web application firewall and reverse proxy that filters and monitors HTTP traffic to block exploits.
A web application firewall and reverse proxy that provides secure by default protection for web services.
Join our newsletter to get shiny new open source software delivered to your inbox. Unsubscribe anytime.