Sandfly Security

Sandfly Security Documentation

Welcome to the Sandfly Security documentation hub. Sandfly is an agentless compromise and intrusion detection system for Linux.

Sandfly automates security investigation and forensic evidence collection on Linux. Sandfly constantly searches for intruders 24 hours a day on your network without needing to load any agents on your endpoints.

Get Started


Dashboard Overview

Dashboard Overivew

The Dashboard is the first thing you see when you login. The dashboard contains a quick view of any alarms, system status, and quick access to any alerts if present.

Updated 2 years ago

What's Next

Alarm Viewer


Dashboard Overview

Suggested Edits are limited on API Reference Pages

You can only suggest edits to Markdown body content, but not to the API spec.