For AI agents: a documentation index is available at the root level at /llms.txt. Append /llms.txt to any URL for a page-level index, or .md for the markdown version of any page.
LogoLogo
HUMAN DashboardHUMAN WebsiteRequest a Demo
Product GuidesEnforcer GuidesMobile SDKAPI ReferenceCustomer support
Login
Product GuidesEnforcer GuidesMobile SDKAPI ReferenceCustomer support
  • General
    • About Enforcers
    • Support first-party HUMAN calls
    • Deploy Tool
    • Troubleshoot Enforcer configurations
  • Enforcer frameworks
    • Akamai ESI
    • Apache - C Module
    • ASP.NET
    • Callout Enforcer
    • Envoy Proxy
    • F5 BIGIP
    • Fastly JavaScript Compute@Edge
    • Google Cloud Platform (GCP) Callout Enforcer
    • Kong Plugin
    • NGINX - C Module
    • NGINX - LUA Module
    • PHP
    • Python
    • Ruby
    • Salesforce Commerce Cloud Cartridge
      • Changelog
      • Importing the Cartridge
      • Registering the Cartridge
      • Importing Metadata and Services
      • Configuring the Cartridge
      • Using the Cartridge
      • SCAPI Protection Considerations
      • Upgrading
      • Customized Block Page
      • Configuration options
      • First Party
  • About Enforcers
  • Support first-party HUMAN calls
  • Deploy Tool
  • Troubleshoot Enforcer configurations
  • Akamai EdgeWorker changelog
  • Installation
  • Manual installation
  • Configuration
  • API
  • Upgrading
  • Supported Features
  • Install the Akamai EdgeWorker Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • Akamai ESI
  • Akamai ESI changelog
  • Installation
  • Configuration
  • First Party Configuration
  • Apache - C Module
  • Apache changelog
  • Module Configuration
  • Configuration Options
  • First Party Configuration
  • Apigee Edge changelog
  • Installation
  • Configuration
  • ASP.NET
  • ASP.NET changelog
  • Configuration
  • Changelog
  • Installation
  • API
  • Configuration
  • Changelog
  • Installation
  • Configuration
  • AWS Lambda@Edge changelog
  • Installation
  • Manual installation
  • API
  • Configuration
  • Upgrading
  • Supported Features
  • Installing the Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • Changelog
  • Install the Azure Front Door Enforcer
  • Manually install the Azure Front Door Enforcer
  • API
  • Configuration
  • Callout Enforcer
  • Changelog
  • Supported Features
  • Envoy configuration
  • Enforcer Configuration
  • Advanced Configuration
  • Docker Image
  • Complete Example
  • Cloudflare Worker changelog
  • Installation
  • Installation with Terraform
  • Manual installation
  • Deploy the Cloudflare Enforcer for Shopify applications
  • API
  • Configuration
  • Configuration (v5 and Below)
  • Upgrading to Version 6
  • Changelog
  • Installation
  • API
  • Configuration
  • Changelog
  • Installation
  • API
  • Configuration
  • Envoy Proxy
  • Changelog
  • Installation
  • Configuration Options
  • First Party Configuration
  • F5 BIGIP
  • Changelog
  • Installation
  • First Party Integration
  • Configuration
  • Configurational Classes
  • Advanced Customization
  • Troubleshooting
  • Fastly JavaScript Compute@Edge
  • Changelog
  • Installation
  • API
  • Configuration
  • Fastly Rust Compute@Edge changelog
  • Supported Features
  • Installation
  • Configuration
  • Changelog
  • Installation
  • Manual installation
  • Configuration
  • How it works
  • Upgrade to V12
  • Installation
  • Configuration
  • How It Works
  • Upgrade to V11
  • Installation
  • Configuration
  • How It Works
  • Upgrade to V10
  • Installing the Enforcer
  • GraphQL Support
  • Sensitive GraphQL Operations
  • Basic Configuration
  • Customized Subroutines
  • Additional Activity Handler
  • Advanced Blocking Response
  • Creating and Configuring the Edge-Dictionary
  • Custom CSS
  • Custom First Party Sensor Endpoint
  • Custom Logo
  • Custom JS Script
  • Custom Parameters
  • Filter Requests
  • Filter by HTTP Method
  • Filter by Route
  • Filter by Extension
  • Filter by IP
  • Filter by User Agent
  • Data Enrichment
  • First Party
  • First Party Snippet
  • Enforced Routes
  • Login Credentials Extraction
  • Modify First Party Response
  • Module Context Object
  • Module Enabled
  • Module Mode
  • Monitored Routes
  • Returning A Custom Block Page
  • Sensitive Routes
  • Test Block Flow on Monitoring Mode - Bypass Monitor Header
  • Upgrading the Enforcer
  • Changelog
  • Installation
  • API
  • Configuration
  • Installing the Enforcer
  • Supported Features
  • Configuration Options
  • Upgrading the Enforcer
  • Google Cloud Platform (GCP) Callout Enforcer
  • Integrate the GCP Callout Enforcer
  • HAProxy changelog
  • Supported Software Versions
  • Supported Features
  • Installation
  • Configuration
  • Java changelog
  • Installation
  • Configuration
  • Upgrading
  • Kong Plugin
  • Changelog
  • NGINX Gateway Fabric with the HUMAN Enforcer
  • NGINX Gateway Fabric Enforcer configurations
  • Ingress NGINX controller
  • Ingress NGINX Enforcer configuration options
  • Changelog
  • Installation
  • Configuration options
  • Changelog
  • Installation
  • Configuration options
  • Changelog
  • Installation (Next.js 16)
  • Installation (Next.js 15 and lower)
  • Configuration
  • NGINX - C Module
  • NGINX changelog
  • Supported Features
  • Installation
  • Module Configuration
  • Configuration Options
  • Enrichment
  • First Party Configuration
  • Nginx Docker Image
  • Ingress NGINX Controller with HUMAN Enforcer
  • NGINX - LUA Module
  • Changelog
  • Supported Features
  • Installing the Enforcer
  • Configuration Options
  • Upgrading the Enforcer
  • HUMAN Plugin Configuration
  • First Party Configuration
  • Enrichment
  • Changelog
  • Installation
  • API
  • Configuration
  • Configuration Options (7.9.0 and below)
  • Upgrading to Version 8
  • PHP
  • Changelog
  • Upgrading
  • Configuration Options
  • Advanced Configuration
  • Python
  • Changelog
  • Installation
  • Required Configuration
  • Configuration Options
  • Upgrading
  • First Party Configuration
  • Ruby
  • Changelog
  • Installation
  • Configuration
  • Additional Information
  • Salesforce Commerce Cloud Cartridge
  • Changelog
  • Importing the Cartridge
  • Registering the Cartridge
  • Importing Metadata and Services
  • Configuring the Cartridge
  • Using the Cartridge
  • SCAPI Protection Considerations
  • Upgrading
  • Customized Block Page
  • Configuration options
  • First Party
  • Varnish changelog
  • Supported Software Versions
  • Installation
  • Configuration Options
  • Enforcer Configuration
  • Example configuration
HUMAN DashboardHUMAN WebsiteRequest a Demo
On this page
  • July 9, 2026
  • Version 22.4.0
  • May 27, 2026
  • Version 22.3.0
  • March 29, 2026
  • Version 22.2.0
  • January 29, 2026
  • Version 22.1.1
  • October 22, 2025
  • Version 22.1.0
  • September 3, 2025
  • Version 22.0.1
  • April 28, 2025
  • Version 22.0.0
  • December 19, 2024
  • Version 21.4.3
  • June 23, 2024
  • Version 21.4.2
  • December 27, 2023
  • Version 21.4.1
Enforcer frameworksSalesforce Commerce Cloud Cartridge

Changelog

July 9, 2026
July 9, 2026

May 27, 2026
May 27, 2026

March 29, 2026
March 29, 2026

January 29, 2026
January 29, 2026

October 22, 2025
October 22, 2025

September 3, 2025
September 3, 2025

April 28, 2025
April 28, 2025

December 19, 2024
December 19, 2024

June 23, 2024
June 23, 2024

December 27, 2023
December 27, 2023
Older posts
Next
Built with
Login

Version 22.4.0

Added

  • Send original VID from cookie on the risk API request under orig_cookie_vid
  • Telemetry activity includes redacted sensitive configuration fields
  • Telemetry activity includes custom function hash field
  • Aligned Enforcer telemetry enforcer_configs with the telemetry spec by splitting it into active_config, static_config, and remote_config
  • Added s2s_call_reason and risk_mode fields to the async activities

Version 22.3.0

  • Added support for cookie v2
  • Send original vid from cookie on all activities under orig_cookie_vid

Version 22.2.0

Added

  • Added support for filter requests by http method
  • Added support for enforcing SCAPI requests via the int_perimeterx_SCAPI cartridge

Changed

  • Aligned cookie v2 validation flow with js-core: structure check, then HMAC validation, then expiry, then block/pass decision
  • Split cookie v2 decrypt and validation stages to report cookie_decryption_failed vs cookie_validation_failed correctly on the Risk API

Version 22.1.1

Changed

  • Changed handleHeaders implementation to support specific customer’s headers structure

Version 22.1.0

Added

  • Added support for is sensitive request custom function
  • Added is_sensitive_route field to risk API and async activities
  • Reporting the cross tab session cookie for AD on async activities and risk API
  • Added the additional_risk_info field to async activities if present on the risk API response
  • Added custom functions support for Site Gensis and SFRA if onRequest is not wanted.

Version 22.0.1

Fixed

  • Added missing px_cookie on async activities

Version 22.0.0

Internal

  • Added E2E tests GitHub action

Added

  • Added Enforcer start time to Risk API activity and async activities
  • Added domain attribute to the pxhd cookie.
  • Added user and pass fields to async activities

Changed

  • Moved custom configuration files to dedicated pxCustomFunctionsConfig.js file
  • Aligned the following field names to spec:
    • http_status to http_status_code
    • ip to socket_ip
    • uuid to client_uuid
  • Improved telemetry error handling and stop the flow correctly after successful telemetry request processing
  • Added support for configuring the backend URL and collector URL through the configuration
  • Updated additionalActivityHandler custom function to return void instead of a boolean
  • Updated pxSensitiveRoutes, pxMonitoredRoutes, pxEnforcedRoutes, and pxFilteredRoutes to accept a single regular expression pattern instead of an array of strings.
  • Changed the async activities default url to https://collector-<px_app_id>.perimeterx.net

Removed

  • Removed deprecated sensitiveRoutesRegex, enforcedRoutesRegex, monitoredRouteRegex, and filteredRoutesRegex configuration fields

Version 21.4.3

Fixed

  • Removed service package to support SiteGenesis compatibility

Version 21.4.2

Added

  • Support for filter routes by regex.

Fixed

  • Better config handling.

Version 21.4.1

Changed

  • Updated deprecated methods used in PXRequestValidator and pxCrypto.