Mini Program Security
Intl - English

Private Security Gateway

The WeTest Security Gateway integrates multiple protection technologies—including CC attack mitigation, replay attack prevention, and signature verification interception—to safeguard mini programs against malicious attacks, unauthorized access, and threats from malicious content during data transmission.

Product Features
Traffic Log Monitoring
WeTest supports real-time monitoring of mini program traffic and aggregates risky requests. Developers can leverage detailed analytics to pinpoint risk sources.
API Configuration
Effortlessly manage frontend requests and RealServer forwarding rules, conceal the actual service address and port, and eliminate the risk of sensitive information exposure.
​RS Configuration
Centrally manage real service addresses to ensure precise gateway forwarding; built-in circuit breaking mechanisms prevent overload, while real-time health checks guarantee stability—delivering comprehensive protection for high service availability.
Anti-Bot Protection
Wetest supports private dedicated-link data transmission with end-to-end encryption, ensuring no plaintext exposure in frontend code—significantly increasing the difficulty of external packet sniffing and decryption attempts.
​CC Attack Mitigation
By employing dynamic verification and traffic pattern analysis to distinguish between legitimate users and malicious traffic, attack requests are intercepted to safeguard the stability of backend services.
Preconfigured Static Defense Rules
The system preconfigures over 600 static detection rules to safeguard against more than 10 types of vulnerabilities, including SQL injection, XSS, and malicious access.
Product Advantages
Mitigate Malicious Traffic
Accurately identifies black-gray market activities, providing multiple protection measures including CC attack defense and static rule-based safeguards.
Weak Network Acceleration
Provides weak network acceleration capabilities, optimizing user access experience across diverse network conditions and significantly enhancing client-side service stability.
Multi-Layer Encryption Security
Building upon WeChat's private link data encryption, we employ China's national cryptographic standards (SM-series algorithms) to establish a multi-layered encryption framework, ensuring comprehensive data security.
Customizable Protection Policies
Supports users in defining customized protection policies based on specific business requirements.
Usage Scenarios

Business-Critical Data Scraping

When sensitive business data is transmitted in plaintext, it becomes vulnerable to packet sniffing, leading to data breaches. This significantly increases the risk of user issues such as telephone harassment, potentially triggering public relations crises that damage brand reputation and erode user trust.

Solution

By leveraging dynamic encryption and decryption technologies combined with China's national cryptographic standards (SM-series algorithms), the solution implements multi-layered protection for mini program data. This ensures sensitive information remains encrypted during transmission, effectively preventing unauthorized access or tampering.