benchmark-agents
Advanced AI agent benchmark scenarios that push Vercel's cutting-edge platform features —…
Vercel Firewall expert guidance — automatic DDoS mitigation, the Vercel WAF (custom rules, IP blocking, managed rulesets, rate limiting), Attack Mode, system bypass, bot management, and the `vercel firewall` CLI. Use when configuring platform-level security, responding to
$ npx -y skills add vercel/vercel-plugin --skill vercel-firewall --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/vercel-firewallContext preview
The summary Claude sees to decide when to auto-load this skill.
Vercel Firewall expert guidance — automatic DDoS mitigation, the Vercel WAF (custom rules, IP blocking, managed rulesets, rate limiting), Attack Mode, system bypass, bot management, and the `vercel firewall` CLI. Use when configuring platform-level security, responding to
name: vercel-firewall
description: Vercel Firewall expert guidance — automatic DDoS mitigation, the Vercel WAF (custom rules, IP blocking, managed rulesets, rate limiting), Attack Mode, system bypass, bot management, and the `vercel firewall` CLI. Use when configuring platform-level security, responding to attacks, or staging firewall rules.
metadata:
priority: 7
docs:
- 'https://vercel.com/docs/vercel-firewall'
- 'https://vercel.com/docs/cli/firewall'
bashPatterns:
- '\bvercel\s+firewall\b'
promptSignals:
phrases:
- 'vercel firewall'
- 'vercel waf'
- 'attack mode'
- 'ddos protection'
- 'ip block'
- 'managed ruleset'
- 'bot protection'
- 'system bypass'
- 'rate limit rule'
allOf:
- [firewall, vercel]
- [waf, vercel]
- [ddos, vercel]
- [challenge, vercel]
- ['rate limit', vercel]
- ['system bypass', vercel]
- ['ip block', vercel]
noneOf: []
minScore: 6
retrieval:
aliases:
- ddos protection
- waf rules
- bot protection
- rate limiting
- attack mode
- ip allowlist
- traffic filtering
- verified bots
intents:
- protect from ddos
- block malicious traffic
- configure firewall
- rate limit api
- allow bot through firewall
- enable attack mode
- publish firewall rule
entities:
- Vercel Firewall
- Vercel WAF
- DDoS
- Attack Mode
- Bot Protection
- Managed Rulesets
- System Bypass
- JA3
- JA4You are an expert in the Vercel Firewall including the `vercel firewall` CLI, Vercel WAF and platform-level protections (custom rules, IP blocks, system bypass, Attack Mode, system mitigations). You follow all the [best practices](#best-practices) outlined below.
Project must be linked first (`vercel link`).
vercel firewall overview # active rules, blocks, bypasses, attack-mode, drafts vercel firewall overview --json vercel firewall diff # show unpublished draft changes vercel firewall diff --json
`rules` and `ip-blocks` changes are **staged** as drafts — run `vercel firewall publish --yes` to make them live. `system-bypass`, `attack-mode`, and `system-mitigations` take effect **immediately**.
[Custom rules](https://vercel.com/docs/vercel-firewall/vercel-waf/custom-rules) define traffic policies based on request attributes. Block abuse, rate limit APIs, challenge suspicious requests, redirect legacy paths, or log traffic. Rules can also be defined declaratively in `vercel.json` via the `routes` property with a `mitigate` action, but only `challenge` and `deny` are supported that way — use the CLI or dashboard for `log`, `bypass`, `rate_limit`, or `redirect`.
vercel firewall rules list # table of all rules vercel firewall rules list --expand # show conditions + actions vercel firewall rules list --json vercel firewall rules inspect "My Rule" # full detail of one rule vercel firewall rules inspect "My Rule" --json
# AI — TTY only, BLOCKED FOR AGENTS/SCRIPTS
vercel firewall rules add --ai "Rate limit /api to 100 requests per minute by IP"
# Interactive wizard — TTY only, BLOCKED FOR AGENTS/SCRIPTS
vercel firewall rules add
# Flags — works in scripts and agents
vercel firewall rules add "Block crawlers" \
--condition '{"type":"user_agent","op":"sub","value":"crawler"}' \
--action deny --yes
# JSON — works in scripts and agents
vercel firewall rules add --json '{"name":"Block crawlers","conditionGroup":[{"conditions":[{"type":"user_agent","op":"sub","value":"crawler"}]}],"action":{"mitigate":{"action":"deny"}}}' --yes# AND — multiple --condition flags in the same group
vercel firewall rules add "Secure admin" \
--condition '{"type":"path","op":"pre","value":"/admin"}' \
--condition '{"type":"geo_country","op":"eq","neg":true,"value":"US"}' \
--action deny --yes
# OR — use --or to start a new group
vercel firewall rules add "Block dangerous methods" \
--condition '{"type":"method","op":"eq","value":"DELETE"}' \
--or \
--condition '{"type":"method","op":"eq","value":"PATCH"}' \
--action challenge --yesvercel firewall rules edit "My Rule" --action challenge --yes # change action vercel firewall rules edit "My Rule" --name "New Name" --yes # rename vercel firewall rules edit "My Rule" --enabled --yes # enable vercel firewall rules edit "My Rule" --disabled --yes # disable vercel firewall r
Comprehensive Vercel ecosystem plugin — relational knowledge graph, skills for every major product, specialized agents, and Vercel conventions. Turns any AI agent into a Vercel expert.
Repo: vercel-labs/vercel-plugin
Advanced AI agent benchmark scenarios that push Vercel's cutting-edge platform features —…
End-to-end benchmark suite for vercel-plugin. Runs realistic projects through skill…
Run vercel-plugin eval scenarios in Vercel Sandboxes instead of local WezTerm panels.…
Create and launch benchmark test projects to exercise vercel-plugin skill injection across…
Audit vercel-plugin performance on real-world projects. Extracts tool calls from Claude Code…
Release vercel-plugin — run gates, bump version, generate artifacts, commit, and push. Use…