Blocking bots by category kept breaking legitimate traffic (assistants, search, integrations).
So I built a detection-first tool that observes behavior and shows proof (logs, counts, patterns) before enforcing anything.
Still early. Looking for feedback from people dealing with real bot noise and false positives.