Nothing goes unseen.

Vardex keeps a constant sonar sweep over your network — naming every device on it and telling you, in plain language, the moment something looks wrong. Built for people who run their own network and don't have a SOC on call.

No cloud dependency for detection. Captured packet content never leaves your machine.
The Watch — Scanning
9 zones watched · 0 packets leave this machine
Capture
Live
Classify
9/9
Enrich
2
Log
All
Review
You
Resolve
Manual

Everything you'd see on a Tuesday night.

A quiet interface until it isn't. Click through what each screen actually shows — recreated from the real app.

Dashboard

Every category of trouble, counted live, since the app started watching.

0
Blocked
22
Port scan
13
SQLi
19
DNS tunnel
1
Brute force
0
Anomaly

Threat detail

Click any event and Vardex explains exactly why it was flagged — then lets you block it on the spot.

SQL Injection Critical
Source203.0.113.42 · example
Pattern matchedUNION SELECT tautology
AbuseIPDB confidence92%
ActionBlock available

Device identity

MAC addresses don't change when DHCP hands out a new IP — so neither does Vardex's memory of who's on your network.

LAPTOP-7SRJBK9J
192.168.1.106 · AzureWave Technology Inc.
Kitchen speaker
192.168.1.114 · Sonos, Inc.

Geo origins

Where your inbound noise is actually coming from, plotted the moment it's seen.

AI incident report

One click turns a night of raw events into a plain-English summary — using your own Anthropic key, never ours.

"Between 01:16–01:31, 203.0.113.42 attempted 9 SQL injection payloads against your exposed web service, escalating from tautology checks to UNION-based extraction. AbuseIPDB lists this address at 92% confidence. Recommended: block the source and review logs for the targeted endpoint."

Nine ways in, one watch kept over all of them.

Every detection is entered under its own instrument — nothing lumped into a generic "alert."

Brute force & SYN floods

Rate-based detection on login and connection attempts before they succeed.

Port scans

Both loud and stealth scans, TCP and UDP, across your exposed surface.

SQL injection

Pattern-matched against real attack taxonomy, not a naive keyword list.

DNS tunneling

Catches exfiltration hiding inside what looks like ordinary DNS traffic.

Data exfiltration

Flags abnormally large outbound transfers before they finish.

ML anomaly detection

An Isolation Forest model learns your network's normal — and flags what isn't.

C2 beaconing

Regular, quiet check-ins that look nothing like a person clicking around.

New device alerts

Know the moment something joins your network — by MAC, not just IP.

Real enforcement

Block an IP straight from the detail card. A real Windows Firewall rule, not just a log line.

Nothing about this needs to trust the cloud.

A network monitor that phones home is a strange thing to trust. Vardex doesn't.

Detection runs entirely on your machine

Packet capture, analysis, and storage happen locally. Nothing about your traffic is uploaded for Vardex to work.

Secrets encrypted at rest

API keys and credentials are protected with Windows DPAPI, tied to your own login — the same mechanism Chrome uses.

You bring your own third-party keys

AbuseIPDB, GreyNoise, and Anthropic integrations are optional and use your own free-tier accounts — never a proxy run by us.

Manual, human-reviewed blocking

Vardex never blocks anything on its own judgement. You see the evidence, you decide, you click Block.

Open about its open source

Every third-party component and its license is listed in full — no obscured dependencies.

Built for networks you own

Vardex is for monitoring what's yours — your home, your own business network — clearly, not quietly.

Test strip — what happens if you continue
STATUS: Not yet available for download.
Nothing will be charged, installed, or activated today.

Put a watch-light on your network.

One license key activates one machine at a time — deactivate to move it to another. Vardex isn't available to download just yet; check back soon.

Will require Windows 10 or later · Npcap (free) for packet capture