Skip to content
Contact us

Moatgator Pulse

See attacks as they happen.

A live feed of what was attempted against your protected apps, and what was stopped.

Live events
Live events, Alert sent, Blocked, Warned, Passed

Security signals, not user content.

Pulse collects security events from protected apps so your team can see attack patterns by app, version and build. It records signals about devices and attempts, never your users' content.

  • Live event feed per app and build
  • Alerts to email, Slack and webhooks
  • Retention that depends on your plan

What Pulse gives you

  • 01

    A live threat feed

    Events stream in as attacks happen, with the detection, the action taken and the context around it.

  • 02

    Filters that find the pattern

    Slice by app, version, country and type of threat to see where an attack started and how it spreads.

  • 03

    Alerts where you work

    Email, Slack and webhooks, plus Microsoft Teams, Discord, PagerDuty and Opsgenie for on-call teams.

  • 04

    Retention by plan

    From 7 days on Hatchling and Indie up to 90 to 365 days on Enterprise.

  • 05

    Sampling and aggregation

    Events are sampled and aggregated so telemetry stays light for your app and affordable for you.

  • 06

    Privacy by design

    Only the data needed to understand a threat, with your choice of region. No user content.

From event to action

  1. 1

    Events flow in

    Runtime reports each detection through a queue-backed ingestion service built to absorb attack spikes.

  2. 2

    See the pattern

    The dashboard groups events by app, version, country and threat type so patterns stand out.

  3. 3

    Route and export

    Send alerts to your channels, call a webhook, or export to your SIEM on Enterprise.

threat.detectedIllustrative example
{  "event": "threat.detected",  "app": "com.example.pay",  "version": "4.12.0",  "threat": "hooking.frida",  "action": "block",  "severity": "high",  "device": { "os": "Android 14", "country": "BR" }}

What an event carries

Detection

  • Type of threat
  • Action taken
  • Severity

Context

  • App, version and build
  • Operating system and device class
  • Country

Outcome

  • Blocked, warned or passed
  • Session ended
  • Transaction stopped

Frequently asked questions

How long is data kept?

7 days on Hatchling and Indie, 14 on Startup, 30 on Scale and 90 to 365 on Enterprise.

Can I send events to my SIEM?

Yes. Enterprise includes export to Datadog, Splunk, Elastic, Sentry, Microsoft Sentinel and syslog/CEF.

What data does Pulse collect?

Security signals about devices and attempts, such as the type of threat, the action taken and the app version. It never collects your users' content.

Can I choose where data is stored?

Yes. Region choice is part of the privacy controls.

Will Pulse add weight to my app?

Telemetry is sampled and aggregated so it stays light for your app, and Pulse collects only the signals needed to understand a threat.

Ready to protect your app?

Start free, or tell us what you need.