For AI agents: a documentation index is available at the root level at /llms.txt. Append /llms.txt to any URL for a page-level index, or .md for the markdown version of any page.
LogoLogo
HUMAN DashboardHUMAN WebsiteRequest a Demo
Product GuidesEnforcer GuidesMobile SDKAPI ReferenceCustomer support
Login
Product GuidesEnforcer GuidesMobile SDKAPI ReferenceCustomer support
  • General
    • About Enforcers
    • Support first-party HUMAN calls
    • Deploy Tool
    • Troubleshoot Enforcer configurations
  • Enforcer frameworks
    • Akamai ESI
    • Apache - C Module
    • ASP.NET
    • Callout Enforcer
    • Envoy Proxy
    • F5 BIGIP
    • Fastly JavaScript Compute@Edge
      • Changelog
    • Google Cloud Platform (GCP) Callout Enforcer
    • Kong Plugin
    • NGINX - C Module
    • NGINX - LUA Module
    • PHP
    • Python
    • Ruby
    • Salesforce Commerce Cloud Cartridge
  • About Enforcers
  • Support first-party HUMAN calls
  • Deploy Tool
  • Troubleshoot Enforcer configurations
  • Akamai EdgeWorker changelog
  • Installation
  • Manual installation
  • Configuration
  • API
  • Upgrading
  • Supported Features
  • Install the Akamai EdgeWorker Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • Akamai ESI
  • Akamai ESI changelog
  • Installation
  • Configuration
  • First Party Configuration
  • Apache - C Module
  • Apache changelog
  • Module Configuration
  • Configuration Options
  • First Party Configuration
  • Apigee Edge changelog
  • Installation
  • Configuration
  • ASP.NET
  • ASP.NET changelog
  • Configuration
  • Changelog
  • Installation
  • API
  • Configuration
  • Changelog
  • Installation
  • Configuration
  • AWS Lambda@Edge changelog
  • Installation
  • Manual installation
  • API
  • Configuration
  • Upgrading
  • Supported Features
  • Installing the Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • Changelog
  • Install the Azure Front Door Enforcer
  • Manually install the Azure Front Door Enforcer
  • API
  • Configuration
  • Callout Enforcer
  • Changelog
  • Supported Features
  • Envoy configuration
  • Enforcer Configuration
  • Advanced Configuration
  • Docker Image
  • Complete Example
  • Cloudflare Worker changelog
  • Installation
  • Installation with Terraform
  • Manual installation
  • Deploy the Cloudflare Enforcer for Shopify applications
  • API
  • Configuration
  • Configuration (v5 and Below)
  • Upgrading to Version 6
  • Changelog
  • Installation
  • API
  • Configuration
  • Changelog
  • Installation
  • API
  • Configuration
  • Envoy Proxy
  • Changelog
  • Installation
  • Configuration Options
  • First Party Configuration
  • F5 BIGIP
  • Changelog
  • Installation
  • First Party Integration
  • Configuration
  • Configurational Classes
  • Advanced Customization
  • Troubleshooting
  • Fastly JavaScript Compute@Edge
  • Changelog
  • Installation
  • API
  • Configuration
  • Fastly Rust Compute@Edge changelog
  • Supported Features
  • Installation
  • Configuration
  • Changelog
  • Installation
  • Manual installation
  • Configuration
  • How it works
  • Upgrade to V12
  • Installation
  • Configuration
  • How It Works
  • Upgrade to V11
  • Installation
  • Configuration
  • How It Works
  • Upgrade to V10
  • Installing the Enforcer
  • GraphQL Support
  • Sensitive GraphQL Operations
  • Basic Configuration
  • Customized Subroutines
  • Additional Activity Handler
  • Advanced Blocking Response
  • Creating and Configuring the Edge-Dictionary
  • Custom CSS
  • Custom First Party Sensor Endpoint
  • Custom Logo
  • Custom JS Script
  • Custom Parameters
  • Filter Requests
  • Filter by HTTP Method
  • Filter by Route
  • Filter by Extension
  • Filter by IP
  • Filter by User Agent
  • Data Enrichment
  • First Party
  • First Party Snippet
  • Enforced Routes
  • Login Credentials Extraction
  • Modify First Party Response
  • Module Context Object
  • Module Enabled
  • Module Mode
  • Monitored Routes
  • Returning A Custom Block Page
  • Sensitive Routes
  • Test Block Flow on Monitoring Mode - Bypass Monitor Header
  • Upgrading the Enforcer
  • Changelog
  • Installation
  • API
  • Configuration
  • Installing the Enforcer
  • Supported Features
  • Configuration Options
  • Upgrading the Enforcer
  • Google Cloud Platform (GCP) Callout Enforcer
  • Integrate the GCP Callout Enforcer
  • HAProxy changelog
  • Supported Software Versions
  • Supported Features
  • Installation
  • Configuration
  • Java changelog
  • Installation
  • Configuration
  • Upgrading
  • Kong Plugin
  • Changelog
  • NGINX Gateway Fabric with the HUMAN Enforcer
  • NGINX Gateway Fabric Enforcer configurations
  • Ingress NGINX controller
  • Ingress NGINX Enforcer configuration options
  • Changelog
  • Installation
  • Configuration options
  • Changelog
  • Installation
  • Configuration options
  • Changelog
  • Installation (Next.js 16)
  • Installation (Next.js 15 and lower)
  • Configuration
  • NGINX - C Module
  • NGINX changelog
  • Supported Features
  • Installation
  • Module Configuration
  • Configuration Options
  • Enrichment
  • First Party Configuration
  • Nginx Docker Image
  • Ingress NGINX Controller with HUMAN Enforcer
  • NGINX - LUA Module
  • Changelog
  • Supported Features
  • Installing the Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • HUMAN Plugin Configuration
  • First Party Configuration
  • Enrichment
  • Changelog
  • Installation
  • API
  • Configuration
  • Configuration Options (7.9.0 and below)
  • Upgrading to Version 8
  • PHP
  • Changelog
  • Upgrading
  • Configuration Options
  • Advanced Configuration
  • Python
  • Changelog
  • Installation
  • Required Configuration
  • Configuration Options
  • Upgrading
  • First Party Configuration
  • Ruby
  • Changelog
  • Installation
  • Configuration
  • Additional Information
  • Salesforce Commerce Cloud Cartridge
  • Changelog
  • Importing the Cartridge
  • Registering the Cartridge
  • Importing Metadata and Services
  • Configuring the Cartridge
  • Using the Cartridge
  • SCAPI Protection Considerations
  • Upgrading
  • Customized Block Page
  • Configuration options
  • First Party
  • Varnish changelog
  • Supported Software Versions
  • Installation
  • Configuration Options
  • Enforcer Configuration
  • Example configuration
HUMAN DashboardHUMAN WebsiteRequest a Demo
On this page
  • August 12, 2026
  • Version 12.6.0
  • Added
  • July 16, 2026
  • Version 12.5.0
  • April 27, 2026
  • Version 12.4.2
  • February 11, 2026
  • Version 12.4.1
  • December 10, 2025
  • Version 12.4.0
  • November 18, 2025
  • Version 12.3.0
  • September 16, 2025
  • Version 12.2.1
  • August 19, 2025
  • Version 12.2.0
  • June 15, 2025
  • Version 12.1.5
  • June 5, 2025
  • Version 12.1.4
Enforcer frameworksFastly VCL

Changelog

August 12, 2026
August 12, 2026

July 16, 2026
July 16, 2026

April 27, 2026
April 27, 2026

February 11, 2026
February 11, 2026

December 10, 2025
December 10, 2025

November 18, 2025
November 18, 2025

September 16, 2025
September 16, 2025

August 19, 2025
August 19, 2025

June 15, 2025
June 15, 2025

June 5, 2025
June 5, 2025
Older posts
Next
Built with
Login

Version 12.6.0

Added

  • Added MCP Protection support

Version 12.5.0

Added

  • Support for multiple mobile cookie versions headers (X-PX-AUTHORIZATION-V2 with priority over X-PX-AUTHORIZATION)
  • Added x-px-authorization-v2, x-px-original-token, and x-px-bypass-reason headers to page_requested and block activities

Fixed

  • Fixed X-PX-ORIGINAL-TOKEN header reading bug. It now correctly reads from the request header instead of an unpopulated internal context variable
  • Added request_id field to telemetry activity
  • Added window._pxCustomOnErrorMessage support in block page template

Version 12.4.2

  • Send original vid from cookie on all activities under orig_cookie_vid

Version 12.4.1

  • Adjusted Telemetry by risk - adjusted telemetry requested flag on risk_api response

Version 12.4.0

  • Added Header Based Logger support
  • Added Telemetry by Risk support
  • Correct enforcer_start_time and risk_start_time on all enforcer activities

Version 12.3.0

  • Added response custom parameters feature (px_custom_add_response_custom_parameters custom subroutine)

Version 12.2.1

  • Added px_cookie field on block activity

Version 12.2.0

  • Updated MAIN.vcl boilerplate

  • Support for adding a data enrichment header (new px_data_enrichment_header_name configuration)

  • Added Documentation enforcement workflow - verify that the documentation is up to date with the latest changes in the codebase

  • Added mobile headers to async activities

    • X-PX-VID-MOBILE
    • X-PX-UUID-MOBILE
    • X-PX-HID
    • X-PX-MOBILE-SDK-VERSION
    • X-PX-OS
    • X-PX-OS-VERSION
    • X-PX-DEVICE-FP
    • X-PX-DEVICE-MODEL
    • X-PX-HELLO
  • Adding redacted px_auth_token, px_cookie_secret, and px_remote_config_auth_token to telemetry activities

  • Fixed PXDE bugs

Version 12.1.5

  • Send default config values on Telemetry activity even if not set in enforcer config config explicitly

Version 12.1.4

  • Added Cross Tab Session cookie support on activities
  • Fixed the commented out example for the px_custom_block_page_content subroutine in the VCL template