Flowtriq

✓ Verified Profile

Detect. Mitigate. Stay online.

No approved reviews yet. Be the first to review
Visit Website Write a Review
Decision Snapshot

Flowtriq Evaluation Snapshot

Review the most important product facts, official access information, and SoftwareWorld’s page-level trust standards in one place.

User RatingNot rated yet
Starting PricePer User
Free Trial7 Days
Free VersionNo
APINot specified
DeploymentCloud Hosted
HeadquartersCanada
Buyer Contribution

Your Flowtriq experience can help other buyers

Used Flowtriq? Share an honest review about usability, features, support, and overall experience. Your feedback can help other buyers evaluate the product with greater confidence.

Reviews are published after SoftwareWorld moderation.

Write a Review
Trust & Transparency

Why Buyers Can Trust This Page

Structured Product Information

Consistent buyer-focused fields make software profiles easier to evaluate.

Clear Sponsored Disclosure

Paid placements are labeled and separated from product facts and reviews.

Editorial Independence

Sponsored participation does not influence SoftwareWorld's editorial assessment.

Data Transparency

Pricing and availability can change, so current details should be confirmed with the vendor.

Product Overview

Flowtriq Overview

Product description, media, company details, support, training, deployment, customer size, languages, and industries.

About Flowtriq

Flowtriq is a real-time DDoS detection and auto-mitigation platform built for infrastructure teams, hosting providers, ISPs, MSPs, game server operators, SaaS platforms, and anyone who runs their own Linux servers. Unlike traditional DDoS protection services that reroute all your traffic through a remote scrubbing center, Flowtriq installs as a lightweight agent directly on your servers and responds to attacks at the source, without adding latency or depending on third-party traffic rerouting during normal operation.

How It Works

The Flowtriq agent (FTAgent) installs on any Linux server in under two minutes with two commands. Once running, it reads packets-per-second and bandwidth data directly from kernel-level network stats every single second, not every 60 seconds like traditional monitoring tools. This means Flowtriq knows the instant your traffic crosses a threshold, typically detecting attacks in under one second from the moment they begin.

When traffic spikes, the agent immediately classifies the attack by type and severity. Flowtriq identifies eight attack families including UDP floods, SYN floods, ICMP floods, DNS amplification, NTP amplification, memcached amplification, HTTP floods, and multi-vector attacks. Each classification comes with a confidence score and IP spoofing detection via TTL entropy analysis, so you know not just that you're under attack but exactly what kind of attack you're dealing with and whether source IPs are faked.

Dynamic Baselines

Rather than requiring manual threshold configuration, Flowtriq builds a dynamic baseline of your server's normal traffic automatically. It samples 300 data points over a rolling five-minute window, calculates your 99th percentile PPS, and sets the detection threshold at 3x that value per node. Baselines update continuously every 30 seconds as your traffic patterns change, and manual overrides are always available. This means a game server with naturally spiky traffic and a database server with steady low traffic each get appropriate thresholds without any tuning on your part.

Automatic Mitigation

When an attack is detected, Flowtriq responds automatically based on escalation policies you define. Mitigation operates across four levels. At the server level, it can deploy iptables rules, nftables rules, ipset blocks, null routes, UFW rules, and tc rate limiting directly on the affected node, choosing from 22 firewall action types across seven tool groups. At the network level, it deploys BGP FlowSpec rules, RTBH blackhole routes, and rate-limiting announcements to your BGP speakers via ExaBGP, GoBGP, Cloudflare, or custom webhook adapters. For large volumetric attacks that exceed what BGP can handle, it escalates automatically to cloud scrubbing, triggering Cloudflare Magic Transit, OVH VAC, or Hetzner DDoS protection via API. All mitigation rules are automatically withdrawn when an incident resolves, and every action is logged to an immutable audit trail.

Full PCAP Forensics

Flowtriq runs a 500-packet pre-attack ring buffer at all times. When an attack is detected, this buffer becomes the opening section of the PCAP capture, meaning you get traffic data from before the threshold crossed, not just from the moment detection fired. Captures include up to 10,000 packets per incident, are automatically uploaded on attack resolution, and are available as signed download URLs from the dashboard. Standard plans include seven days of PCAP retention, and Enterprise plans extend this to 365 days. An AI-powered forensic analysis layer summarizes each capture to help you understand what happened without having to open Wireshark yourself.

IOC Pattern Matching

Flowtriq ships with over 500,000 active threat IOC patterns and matches packet payloads against them in real time during an attack. This includes known botnet signatures such as Mirai variants and LOIC, as well as amplification attack patterns for memcached, NTP, DNS, and others. Custom IOC libraries are available on Enterprise plans. When an IOC match is found, it is surfaced alongside the attack classification with a confidence score, giving your team immediate context about whether you are dealing with a known botnet campaign.

Layer 7 Detection

In addition to network-layer detection, Flowtriq monitors your web server access logs in real time to detect application-layer attacks. HTTP flood detection analyzes request rates, user agent patterns, and request distributions to identify attacks that look like legitimate traffic at the network layer but are hammering your application. This covers both volumetric HTTP floods and more sophisticated slow-rate application attacks.

Multi-Channel Alerting

Alerts fire within one second of detection to every channel your team uses. Flowtriq supports Discord rich embeds, Slack messages, PagerDuty incidents with automatic deduplication, OpsGenie alerts, SMS, email, and cryptographically signed custom webhooks. Escalation policies let you route critical attacks to on-call rotations while sending low-severity events to a review channel. Maintenance windows suppress alerts during planned downtime so your team is not woken up unnecessarily.

Public Status Pages

Flowtriq generates branded public status pages at a unique URL that reflect live detection data from your nodes. Visitors can see whether each node is operational, experiencing elevated traffic, under attack, or offline, without needing a Flowtriq login. Pages include a 30-day uptime history bar per node and a seven-day incident history with expandable threat details. This keeps your customers informed during an attack without requiring you to manually post updates.

Multi-Node Management

All nodes are managed from a single dashboard workspace. You can monitor detection events, review PCAP captures, configure mitigation policies, manage alert channels, and review the audit log across your entire infrastructure from one place. Enterprise plans support separate workspaces for different teams or clients, making Flowtriq well suited to hosting providers and MSPs managing infrastructure on behalf of multiple customers.

Who uses Flowtriq

Flowtriq is used by hosting providers who need to protect customer servers from attacks, ISPs managing network-level threats, MSPs handling infrastructure security for clients, game server operators dealing with frequent targeted attacks, SaaS platforms protecting API endpoints and application servers, e-commerce businesses protecting against downtime during peak trading periods, and financial services companies with strict uptime requirements. It is also used by smaller operators and individual server owners who want enterprise-grade detection and mitigation without enterprise pricing.

Getting Started

Flowtriq is priced at $9.99 per node per month, or $7.99 per node per month on an annual plan. There are no per-seat charges, no traffic-volume surcharges, and no per-alert fees. Every plan includes unlimited incidents, all alert channels, PCAP capture, BGP mitigation, cloud scrubbing integration, and auto-mitigation. A seven-day free trial is available with no credit card required. Enterprise plans include volume discounts for 50 or more nodes, 365-day PCAP retention, a dedicated Slack support channel, custom IOC libraries, SSO, and a 99.9% uptime SLA. A white label option is available for hosting providers and MSPs who want to offer Flowtriq under their own brand. Setup takes under two minutes and requires only two commands to get the agent running on a Linux server.
Company Flowtriq
Founded 2026
Headquarters Canada
Employees 1-10

Support

Email Chat Knowledge Base FAQs/Forum

Training

Live Online Webinar Documentation Videos

Licensing & Deployment

Proprietary Cloud Hosted Web-Based Linux

Typical Customers

Midsize-Business
Languages Supported 1 language available
English
Industries Served 6 industries available
Computer & Network Security Computer Games Internet Managed Service Provider (MSP) Startups Telecommunications
Category-Based Capabilities

Flowtriq Features

Each category combines the selected software category, its category-specific description, and the features assigned to that category.

Computer Security Software 17 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Endpoint Protection Vulnerability Scanning Security Auditing Real Time Monitoring Secure Data Storage Application Security Alerts/Escalation Access Controls/Permissions Network Security SSL Security Incident Management Server Monitoring Remote Monitoring & Management Audit Trail Threat Intelligence Threat Response Firewalls
Cybersecurity Software 16 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Whitelisting/Blacklisting Audit Trail Real Time Reporting Behavior Tracking Incident Management Activity Tracking Endpoint Protection Risk Alerts Remote Monitoring & Management Security Auditing Server Monitoring Access Controls/Permissions Two-Factor Authentication Threat Response Data Security Artificial Intelligence
Cloud Security Software 11 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Threat Intelligence Reporting/Analytics Vulnerability Protection Vulnerability Scanning Alerts/Notifications Access Controls/Permissions Real-Time Monitoring Incident Management Behavioral Analytics Endpoint Management Artificial Intelligence
DDoS Protection Software 10 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Web Traffic Monitoring IT Incident Management Reporting/Analytics Alerts/Notifications Server Monitoring Threat Intelligence Dashboard Policy Management Third-Party Integrations Artificial Intelligence
Network Monitoring Software 17 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

IP Address Monitoring Web Traffic Reporting Patch Management Uptime Reporting Dashboard Bandwidth Monitoring Network Resource Management Threshold Alerts Incident Management Baseline Manager Reporting & Statistics Network Analysis Real-Time Data Server Monitoring Event Logs Performance Metrics Artificial Intelligence
Network Security Software 12 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Threat Response Event Logs Vulnerability Scanning Activity Monitoring Audit Trail Firewalls Real-Time Monitoring Risk Alerts Access Controls/Permissions Intrusion Detection System Reporting/Analytics Artificial Intelligence
Website Security Software 8 selected features Open category ↗

Flowtriq runs directly on your servers, detects DDoS attacks in under a second, and automatically deploys BGP FlowSpec rules, RTBH blackholes, and cloud scrubbing to stop them. Full PCAP evidence and instant alerts on Slack, Discord, or PagerDuty. Billed per server. Not per GB, not per alert, not per team seat. Unlimited incidents on every node.

Threat Response Vulnerability Scanning Log Management Endpoint Protection Alerts/Notifications Anomaly/Malware Detection DDoS Protection API
Pricing Information

Flowtriq Pricing

Pricing type, currency, trial availability, payment frequency, destination links, and package-level starting prices.

Pricing Type Per User
Preferred Currency USD ($)
Free Trial 7 Days
Free Version NA
Payment Frequency Annual Subscription, Monthly Subscription
Frequently Asked Questions

Flowtriq FAQs

Answers generated from approved profile information, selected options, packages, integrations, support, training, deployment, and devices.

Flowtriq is a real-time DDoS detection and auto-mitigation platform built for infrastructure teams, hosting providers, ISPs, MSPs, game server operators, SaaS platforms, and anyone who runs their own Linux servers. Unlike traditional DDoS protection services that reroute all your traffic through a remote scrubbing center, Flowtriq installs as a lightweight agent directly on your servers and responds to attacks at the source, without adding latency or depending on third-party traffic rerouting during normal operation.

How It Works

The Flowtriq agent (FTAgent) installs on any Linux server in under two minutes with two commands. Once running, it reads packets-per-second and bandwidth data directly from kernel-level network stats every single second, not every 60 seconds like traditional monitoring tools. This means Flowtriq knows the instant your traffic crosses a threshold, typically detecting attacks in under one second from the moment they begin.

When traffic spikes, the agent immediately classifies the attack by type and severity. Flowtriq identifies eight attack families including UDP floods, SYN floods, ICMP floods, DNS amplification, NTP amplification, memcached amplification, HTTP floods, and multi-vector attacks. Each classification comes with a confidence score and IP spoofing detection via TTL entropy analysis, so you know not just that you're under attack but exactly what kind of attack you're dealing with and whether source IPs are faked.

Dynamic Baselines

Rather than requiring manual threshold configuration, Flowtriq builds a dynamic baseline of your server's normal traffic automatically. It samples 300 data points over a rolling five-minute window, calculates your 99th percentile PPS, and sets the detection threshold at 3x that value per node. Baselines update continuously every 30 seconds as your traffic patterns change, and manual overrides are always available. This means a game server with naturally spiky traffic and a database server with steady low traffic each get appropriate thresholds without any tuning on your part.

Automatic Mitigation

When an attack is detected, Flowtriq responds automatically based on escalation policies you define. Mitigation operates across four levels. At the server level, it can deploy iptables rules, nftables rules, ipset blocks, null routes, UFW rules, and tc rate limiting directly on the affected node, choosing from 22 firewall action types across seven tool groups. At the network level, it deploys BGP FlowSpec rules, RTBH blackhole routes, and rate-limiting announcements to your BGP speakers via ExaBGP, GoBGP, Cloudflare, or custom webhook adapters. For large volumetric attacks that exceed what BGP can handle, it escalates automatically to cloud scrubbing, triggering Cloudflare Magic Transit, OVH VAC, or Hetzner DDoS protection via API. All mitigation rules are automatically withdrawn when an incident resolves, and every action is logged to an immutable audit trail.

Full PCAP Forensics

Flowtriq runs a 500-packet pre-attack ring buffer at all times. When an attack is detected, this buffer becomes the opening section of the PCAP capture, meaning you get traffic data from before the threshold crossed, not just from the moment detection fired. Captures include up to 10,000 packets per incident, are automatically uploaded on attack resolution, and are available as signed download URLs from the dashboard. Standard plans include seven days of PCAP retention, and Enterprise plans extend this to 365 days. An AI-powered forensic analysis layer summarizes each capture to help you understand what happened without having to open Wireshark yourself.

IOC Pattern Matching

Flowtriq ships with over 500,000 active threat IOC patterns and matches packet payloads against them in real time during an attack. This includes known botnet signatures such as Mirai variants and LOIC, as well as amplification attack patterns for memcached, NTP, DNS, and others. Custom IOC libraries are available on Enterprise plans. When an IOC match is found, it is surfaced alongside the attack classification with a confidence score, giving your team immediate context about whether you are dealing with a known botnet campaign.

Layer 7 Detection

In addition to network-layer detection, Flowtriq monitors your web server access logs in real time to detect application-layer attacks. HTTP flood detection analyzes request rates, user agent patterns, and request distributions to identify attacks that look like legitimate traffic at the network layer but are hammering your application. This covers both volumetric HTTP floods and more sophisticated slow-rate application attacks.

Multi-Channel Alerting

Alerts fire within one second of detection to every channel your team uses. Flowtriq supports Discord rich embeds, Slack messages, PagerDuty incidents with automatic deduplication, OpsGenie alerts, SMS, email, and cryptographically signed custom webhooks. Escalation policies let you route critical attacks to on-call rotations while sending low-severity events to a review channel. Maintenance windows suppress alerts during planned downtime so your team is not woken up unnecessarily.

Public Status Pages

Flowtriq generates branded public status pages at a unique URL that reflect live detection data from your nodes. Visitors can see whether each node is operational, experiencing elevated traffic, under attack, or offline, without needing a Flowtriq login. Pages include a 30-day uptime history bar per node and a seven-day incident history with expandable threat details. This keeps your customers informed during an attack without requiring you to manually post updates.

Multi-Node Management

All nodes are managed from a single dashboard workspace. You can monitor detection events, review PCAP captures, configure mitigation policies, manage alert channels, and review the audit log across your entire infrastructure from one place. Enterprise plans support separate workspaces for different teams or clients, making Flowtriq well suited to hosting providers and MSPs managing infrastructure on behalf of multiple customers.

Who uses Flowtriq

Flowtriq is used by hosting providers who need to protect customer servers from attacks, ISPs managing network-level threats, MSPs handling infrastructure security for clients, game server operators dealing with frequent targeted attacks, SaaS platforms protecting API endpoints and application servers, e-commerce businesses protecting against downtime during peak trading periods, and financial services companies with strict uptime requirements. It is also used by smaller operators and individual server owners who want enterprise-grade detection and mitigation without enterprise pricing.

Getting Started

Flowtriq is priced at $9.99 per node per month, or $7.99 per node per month on an annual plan. There are no per-seat charges, no traffic-volume surcharges, and no per-alert fees. Every plan includes unlimited incidents, all alert channels, PCAP capture, BGP mitigation, cloud scrubbing integration, and auto-mitigation. A seven-day free trial is available with no credit card required. Enterprise plans include volume discounts for 50 or more nodes, 365-day PCAP retention, a dedicated Slack support channel, custom IOC libraries, SSO, and a 99.9% uptime SLA. A white label option is available for hosting providers and MSPs who want to offer Flowtriq under their own brand. Setup takes under two minutes and requires only two commands to get the agent running on a Linux server.

  • No, Flowtriq does not offer a free version.

  • Yes, Flowtriq offers a free trial.

  • No, Credit Card details are not required for the Flowtriq trial.

  • Flowtriq supports the following payment frequencies:

    • Annual Subscription , Monthly Subscription

  • No, Flowtriq does not offer an API.

  • Flowtriq offers support with the following options:
    • Email , Chat , Knowledge Base , FAQs/Forum

  • Flowtriq offers training with the following options:
    • Live Online , Webinar , Documentation , Videos

  • Flowtriq supports the following languages:
    • English

  • Following are the typical users of the Flowtriq:
    • Midsize-Business

  • Flowtriq supports the following deployment:
    • Cloud Hosted

  • Flowtriq supports the following devices and operating systems:
    • Web-Based , Linux
Are you an authorized Flowtriq representative?

Sign in to the Vendor Account to manage approved profile information or contact SoftwareWorld for profile support.

Write a Review Visit Website ↗
Get Expert Help