Secure. Detect. Protect.
Stop Discord scams before your members see them.
Wardnox detects phishing, disguised links, impersonation and scam patterns that keyword filters miss. Every decision is explainable. Every enforcement action stays yours to configure.
No card · Fourteen days of Pro when it joins · Enforces nothing until you say so
A message, as a member sees it
Disguises found
- A zero-width character. It takes up no space at all, so nobody sees the word is broken
- A Cyrillic “о” standing in for a Latin “o”
- A one-dot leader standing in for the full stop
What Wardnox found
- A word broken up by a character with no width
- A letter borrowed from another alphabet
- Support phrasing pushing people into direct messages
- A link arriving alongside both
Removed before anyone read it, and the sender timed out.
In production
What it has actually done.
Measured across every server running Wardnox, as of 2026-09-17. Servers that have removed the bot are not counted.
The decision path
How Wardnox thinks.
Every message walks the same six steps in the same order, and the log records which step produced which finding.
- 01
Message
The content, its attachments, the author’s account, and how they have been behaving.
- 02
Normalise
Undo the disguise before anything reads it. Invisible characters removed, look-alike alphabets folded back, masked links resolved, eight forms per message.
- 03
Detect
Twenty independent detectors run across four stages. None of them decides anything on its own.
- 04
Correlate
Signals are weighed together. One weak signal is not evidence, and who somebody is can never be the whole case.
- 05
Explain
Eighty-four reason codes, plus the exact resolved form that matched, so a moderator can tell whether it was right.
- 06
Act
Delete, timeout, kick or ban, with an escalation ladder for repeat offenders. Every one of them is your setting, and doing nothing is the default.
Monitor mode
Watch first.
Enforce when you’re ready.
Wardnox can run against your real traffic and record what it would have done, without deleting a single message. Turn enforcement on when the log has earned it: for the whole server, one channel, or one role.
A monitored decision carries the actions it withheld and the reason it withheld them, so “what would this have cost me” is a question the log can answer.
Layout only. Your own figures appear here once monitor mode has run on your server.
Design principles
Four rules the engine will not break.
01
Undo the disguise first
Attackers beat naive filters by writing the same thing a different way. Wardnox resolves a message past its disguises before any rule looks at it, and keeps the original untouched, because the original is the evidence.
02
Combine signals
No single weak signal, not a link, not a new account, not one alarming word, causes enforcement on its own. Detectors return weighted evidence, and the engine only escalates when a genuine pattern appears rather than a coincidence.
03
Explain every decision
Every action carries a reason your moderators can read: what fired, what it matched, and how the result was reached. No black boxes, and nothing you cannot argue with.
04
Administrators keep control
The profile, the sensitivity, what each outcome does, and every rule are yours to change. The example rules ship clearly labelled as examples, so nobody mistakes them for a curated ruleset doing the real work.
Secure. Detect. Protect.
Something is watching the gate.
Pauses on its own when the browser asks for reduced motion.
The security engine
Twenty detectors, in the four stages they actually run in.
Nineteen are deterministic and included on every plan, free ones too. One reaches outside your server, and it is metered rather than withheld.
Content
11What the message says, once the disguise is off.
- Blocked words
- Regex rules
- Link analysis
- Masked links
- Discord invites
- Obfuscation
- Attachments
- Character spam
- Profanity
- Fake support
- Wallet scams
Behaviour
3What the author has been doing lately.
- Message rate
- Repetition
- Mention spam
Identity
5Age and profile are contributory only, never enough on their own.
- Account age
- Membership age
- Staff impersonation
- Profile and status
- Bots and webhooks
External
1The one that reaches outside your server.
- AI review
Where it fits
A layer underneath your keyword filter.
Wardnox brings its own word lists, so it can replace a basic filter outright. What it is really for is the layer beneath: the messages that get past a word list because they contain no word worth listing.
| Capability | Basic keyword filters | Traditional rule-based bot | Wardnox |
|---|---|---|---|
| Keyword and pattern rules | Yes | Yes | Yes |
| Category word lists (slurs, sexual, general) | Varies | Varies | Built in, off by default |
| Resolves disguised text first | No | Varies | Eight resolved forms |
| Combines independent signals | No | Rarely | Twenty detectors, four stages |
| Explains why it acted | Limited | Varies | Eighty-four reason codes |
| Runs without enforcing, first | No | Rarely | Monitor mode |
| Account age alone can never enforce | n/a | Varies | Guaranteed |
| AI-assisted review | No | Varies | Opt-in only |
Privacy
Your Discord isn’t our dataset.
The overwhelming majority of your traffic is scanned in memory and written nowhere at all.
Clean messages
Never stored. Scanned in memory and written nowhere. Only a decision that actually fired is recorded.
Direct messages
Never read. Wardnox works inside your server and nowhere else.
Voice and typing
Never read, never recorded. Not accessed at all, by anything.
Presence
Off unless you turn on status screening. That one feature reads custom status text to catch scams parked in a profile. The status itself is never stored, only which of your own phrases matched.
Attachments
Files are never downloaded. Only the name, the type and the size are examined.
AI features
Opt-in. Your plan decides what you may switch on. It never switches anything on for you.
Pricing
Protection is free. Conversation is what costs money.
Every deterministic detector runs on every plan, with no cap on how many messages are scanned. What the paid plans sell is the AI.
Free
$0 forever
A genuinely good security bot, at no cost, forever.
- 15 word · 3 regex · 10 domain rules
- A daily allowance of AI scam checks
- 7 days of history
- 50 AI credits a month
Guard
$9 / month
The whole engine, nothing throttled.
- 50 word · 10 regex · 50 domain rules
- No daily limit of AI scam checks
- 30 days of history
- 200 AI credits a month
- Support tickets included
Pro
$29 / month
Protection, plus a bot that can actually talk.
- 100 word · 25 regex · 100 domain rules
- No daily limit of AI scam checks
- 90 days of history
- 5,000 AI credits a month
- Support tickets included
- 25 knowledge sources
Scale
$99 / month
The same product, with the ceilings taken off.
- Unlimited rules
- No daily limit of AI scam checks
- 365 days of history
- 20,000 AI credits a month
- Support tickets included
- 200 knowledge sources
Before you install
Straight answers.
What is Wardnox?
Wardnox is a configurable Discord security and anti-scam platform. It resolves messages past the disguises attackers use, weighs evidence from twenty independent detectors across four stages, and applies only the response an administrator configured, with a readable explanation behind every decision.
Does Wardnox come with a scam blocklist?
No, and that is deliberate. It ships with no hardcoded scam phrases that block anything on their own. What it catches is either a rule you wrote or a combination of weak signals it can account for to you. The example rules are clearly labelled as examples so nobody mistakes them for a curated ruleset.
Will it start deleting messages as soon as I add it?
No. It starts in monitor mode, which scans, scores and logs everything while enforcing nothing. You read a day of real decisions against your own traffic before switching enforcement on deliberately. The bot also says nothing in your server when it joins.
How does it handle disguised scams?
A filter that only reads what was typed loses to anyone willing to type it differently. Wardnox resolves each message past the common families of disguise before any rule looks at it, covering look-alike characters, invisible ones, text broken apart, and content wrapped in other content. Your moderators are told which form of a message a rule matched, so a catch is never unexplained.
Can a bad rule of mine take down my server?
No. Patterns are checked for dangerous constructions before they can be saved, and run isolated and time bounded so a bad one cannot stall anything. A rule that starts misfiring at scale is pulled automatically and your moderators are notified, before it becomes a mass deletion.
What data does Wardnox store?
Clean messages are never stored. The overwhelming majority of traffic is examined in memory and written nowhere. It never stores direct messages, voice, presence, typing, Discord access tokens at rest, or the contents of attachments. Turning message content storage off entirely is fully supported and does not affect how well it detects anything.
What is sent to anybody else?
Nothing, until you switch something on. Link resolution and AI review are each off until an administrator enables them, and being on a paid plan does not switch either of them on: a plan decides what you may enable, never what runs. When enabled, what is sent is limited to what is needed to ask the question. The scam checker sends the message text and nothing that identifies who wrote it. Conversation necessarily sends more, because a bot that cannot tell who it is talking to cannot hold a conversation: the server’s name and the display names of the people in the exchange go with it. Discord user IDs, channel IDs and guild IDs are never sent, on either path.
Do I have to host anything?
No. We run it. You invite the bot to your server, configure it from the dashboard, and there is nothing to install, update or keep online. Wardnox is a hosted service and the source is not distributed.
What does it cost?
There is a free plan with no time limit and no cap on how many messages are scanned, then Guard at $9 a month, Pro at $29 and Scale at $99. Your first server starts on a fourteen day trial of Pro, with no card and a thousand credits to spend rather than Pro’s full monthly allowance. What the paid plans sell is the AI: conversation, a knowledge base built from your own documentation, and higher ceilings. Protection itself is free on every plan.
What is Guard, and why would I not just want Pro?
Guard is the whole security engine without the limits Free puts on it: the daily cap comes off the AI scam checker, you get more rules, a month of history and support tickets. Most people who install a security bot do not want a conversational one, and Guard is priced for them, so its chat allowance is a deliberately small two hundred credits a month. The chatbot is not switched off, it is simply not what you are paying for. It is not a trial of Pro or a lesser version of it. A large server can sit on Guard permanently and be getting exactly what it wants.
If I stop paying, does my server become less safe?
No. Every detector that is ordinary computation keeps running, all of the rules you wrote stay exactly as you wrote them, and enforcement continues untouched. What you lose is the AI: the knowledge base, the uncapped scam checker, support tickets, and most of your conversation allowance, which drops to the fifty credits a month Free gets rather than stopping. One thing else does change: the starter rules Wardnox installs during setup follow your plan, so on a smaller plan some are switched off, greyed in your rules list, and restored if you subscribe again. Rules you wrote, or edited, are never touched.
What are support tickets?
A ticket desk inside your own server, included from Guard upwards. You post a panel with a button on it, a member presses it and gets a private channel with your staff. Each button can be its own kind of ticket with its own opening line. Staff claim a ticket so two people are not answering the same person, and closing it posts the whole conversation to an archive channel before the channel goes anywhere, so closing can never lose what was said. The security engine deliberately steps back inside tickets: it is off in there by default, because somebody reporting a scam has to paste the scam, and being deleted by the bot they are reporting it to is the worst possible introduction to it.
Can I see what was deleted in my server?
Yes, on every plan, and it is off until you turn it on. Wardnox records messages removed from your server and who removed them, which is what makes a scammer tidying up after themselves visible. Discord does not always say who deleted something, so the record distinguishes a message the author deleted from one that could not be attributed, rather than guessing at the difference. It keeps thirty days by default and ignores Wardnox’s own enforcement, so it does not become a second copy of your security log.
Do you charge per member?
No. A quiet server with thirteen thousand members costs us almost nothing to run, and a busy small one with a chatty bot costs real money. Credits already price activity directly, so charging for size as well would be charging twice for the same thing.
What is a credit?
One thing the AI does for you: answering a member, checking a borderline message, or reading a document into the knowledge base. A little over one credit a reply in practice, and a scam check costs a fraction of that. Everything the AI does spends credits and nothing else does, so scanning, blocking, enforcing, verification, welcome messages and logging are never metered, on any plan, at any volume. Your monthly allowance refills and does not stack up; credits you have bought stay until you spend them.
What happens when the trial ends?
The server moves to Free and keeps every rule and setting you made. Detection and enforcement carry on untouched. What stops is the knowledge base and support tickets, the AI scam checker goes back to a daily cap, and your conversation allowance drops to the fifty credits a month Free gets rather than stopping. Trial credits you had not spent are removed at that point, because they belong to the trial rather than to the account. Credits you bought are yours and are not touched.
Your server doesn’t need another moderation bot.
It needs to know when something is actually wrong, and to show you why it thinks so.
Secure. Detect. Protect.