Feature

DDoS & Abuse Protection

Traffic filtering, WAF, and bot mitigation.

15 providers 212 APIs 14 declared variants

The platform absorbs volumetric attacks and filters abusive traffic with WAF rules and bot detection. Keeps the API available when someone is actively trying to take it down.

15 API providers on the APIs.io network offer ddos & abuse protection. The highest-rated are Fastly, Amazon API Gateway, Cloudflare, Okta, F5 Networks.

Providers

Ranked by API Evangelist rating — Exemplar and Strong are expanded by default.

Exemplar 1 Complete, well-documented, and agent-ready
Strong 3 Solid coverage with minor gaps
Developing 5 Usable, with meaningful gaps to close
Thin 1 Limited public surface area
Emerging 5 Early or largely undocumented

What Providers Actually Declared

This feature is a canonical term. These are the free-text strings providers wrote in their own apis.yml that map onto it.

AES-256 at rest, TLS 1.2/1.3 in transit, 2FA, RBAC, WAF, DDoS protection, public bug bountyAWS WAF IntegrationAccount Takeover ProtectionBot Detection, Account Takeover Protection, Policy Abuse Prevention, Refund Fraud DetectionDDoS ProtectionNext-Gen WAF (Signal Sciences) with workspaces, signals, virtual patchesPolicy Protect — refund and return abuse prevention with claim adjudication via claim_create / claim_decision / claim_updatePro at $25/zone/mo with WAF and image optimizationProfessional: Device Access, ISPM, Identity Threat Protection, Sandbox, Unlimited Workflows (custom pricing)Returns API powering Return Insights, Return Abuse Prevention, and Instant RefundsService: Akamai App & API Protector (WAF + DDoS + Bot)Wafer-Level PackagingWeb Application FirewallWeb Application Firewall for application security

Scroll for all 14