Doorman
DocsRule BuilderGet StartedGitHub
Doorman

Multi-provider WAF automation as code. Define a rule once, enforce it everywhere, review it in a pull request.

Product

  • Docs
  • Rule Builder
  • Getting Started

Providers

  • Vercel
  • Cloudflare
  • Fastly
  • Google Cloud Armor

Resources

  • GitHub
  • npm package
  • Example configs
  • Report an issue

© 2026 griffen.codes

System status: ● Operational· Doorman v3.15.4

    Interactive tool

    Rule builder

    Fill in a condition and an action. Get a real doorman add command and the equivalent JSON, both accurate to what the CLI actually accepts.

    rule.builder
    01When a request's…
    02…then doorman should
    In plain English

    Block requests where the path starts with "/admin".

    Run this — terminal
    $ doorman add --name "Block Admin Access" --field path --op pre --value "/admin" --action deny
    Or add to .doorman.json
    {
      "id": "rule_block_admin_access",
      "name": "Block Admin Access",
      "conditionGroup": [
        {
          "conditions": [
            {
              "type": "path",
              "op": "pre",
              "value": "/admin"
            }
          ]
        }
      ],
      "action": {
        "mitigate": {
          "action": "deny"
        }
      },
      "active": true
    }

    Need multiple conditions in one rule (AND/OR groups)? A single command line can't do that. Run doorman add --interactive for the guided prompts instead.