📊 Risk Matrix

Pre-defined Risk Factors
ID Factor Key Factor Name Score / Action Description
1 UNTRUSTED_DEVICE Untrusted Device
Device not recognized / new device
2 DEVICE_FINGERPRINT_CHANGED Device Fingerprint Changed
Browser/OS signature changed
3 NEW_IP New IP Address
Login from a new IP
4 NEW_COUNTRY New Country
Login from a different country
5 VPN VPN / Proxy Detected
VPN, Proxy, or anonymizer detected
6 BLACKLISTED_IP Blacklisted IP
IP flagged as malicious
7 UNUSUAL_TIME Unusual Login Time
Login outside normal hours
8 IMPOSSIBLE_TRAVEL Impossible Travel
Geolocation too far from previous login
9 FAILED_ATTEMPT_3 3 Failed Login Attempts
Possible brute-force attempt
10 FAILED_ATTEMPT_4 4 Failed Login Attempts
Higher risk of brute-force
11 FAILED_ATTEMPT_5 5+ Failed Login Attempts
High risk, account may be locked
Risk Decision Thresholds
ID Decision Key Decision Name Score Range Status
1 ALLOW ALLOW 0 - 29 ALLOW
2 REQUIRE_OTP Require OTP 30 - 59 Require OTP
3 BLOCK BLOCK 60 - 9999 BLOCK