Cachivo puts a distributed proxy cluster in front of your infrastructure. Attacks land on our multi-layer scrubbing edge — your real IP never appears in DNS, certificates, or headers.
Every protected server gets its own hostname, per-server rate limiting, and a fleet of disposable edge nodes in front of it.
Your real FQDN and IP never appear in public DNS, certificates, or response headers. Nodes reach your origin over a private, proxied hostname of its own.
An anycast edge spanning hundreds of locations absorbs volumetric floods. Our nodes add per-server connection and request-rate limits, SYN tuning, and packet filtering.
Traffic is load-balanced across health-monitored nodes. A failing node drains automatically and capacity is added in minutes, not days.
Nodes are stateless. Any of them can be destroyed and rebuilt from scratch, rejoining automatically — the control plane holds the only source of truth.
One point protects one server for one month. A full ledger, an automatic grace period, and instant resume the moment you top up.
Everything the dashboard does is scriptable. Mint scoped API tokens and manage servers, customers, and credit from your own tooling.
Register a server and it's published as yourname.scrubbing.top. Point your
users there — nothing else changes on your side.
Illustration, not live data. Every customer sees this same view for their own traffic, with real numbers, inside the panel.
The things people ask before switching their DNS.
No. Your origin keeps its current setup behind a private proxied hostname of its own. Cachivo becomes the public front door; you simply point users at the new protected subdomain.
The edge health-monitors every node and drains an unhealthy one automatically. Because nodes are stateless, a replacement is provisioned and enrolled in minutes.
Your server enters a grace period (5 days by default) and keeps serving. If it is still unpaid after that it is suspended and visitors see a payment-required page. Topping up resumes it immediately.
Yes — every dashboard action is a REST endpoint. Mint an API token in the panel and drive it from your own scripts or CI. See the API documentation.
HTTP and HTTPS are supported today. Raw TCP/UDP forwarding for game servers, RDP and custom ports is on the roadmap.
Register a server, get a protected hostname, and keep your origin off the map.
Open the panel