Now with ML-powered threat detection

Enterprise-grade SIEM
for every team

Real-time threat detection, ML-powered anomaly detection, and instant alerts — all in one platform. Free forever.

Start Free View Demo
10K
Logs / day free
5
Team members free
<5s
Time to first alert
100%
Always free tier

Platform

Everything you need to detect threats

From log ingestion to ML analysis to alerts — Courra-Sec gives you a complete security operations centre in minutes.

Real-time log ingestion via SDK
Drop one line of JavaScript into your app. Events stream to your SIEM over WebSocket in under 100ms with automatic fallback to HTTP.
ML-powered threat detection
IsolationForest anomaly detection, UEBA behavioural profiling, LSTM sequence analysis, and attack chain correlation — all running locally.
Custom detection rules
Three-tier rule authoring: visual drag-and-drop, YAML/JSON rules, or a full Python DSL for advanced detections mapped to MITRE ATT&CK.
Multi-channel alerting
Instant alerts to Slack, Microsoft Teams, email, and custom webhooks. Configure per-severity routing and throttling to avoid alert fatigue.
GeoIP threat mapping
Enrich every event with country, city, and coordinates. Geo-velocity detection flags impossible travel between logins automatically.
Team collaboration
Invite your security team with role-based access control. Owners, admins, analysts, and read-only roles keep sensitive actions controlled.

Free forever. No credit card.

We run on Oracle Cloud Always Free infrastructure. Your SIEM costs us nothing — so it costs you nothing.

FREE FOREVER
Courra-Sec Free
$0
per month, forever
Up to 5 users per organisation
10,000 logs per day
All ML features (IsolationForest, UEBA, LSTM)
WebSocket real-time ingestion
API key included
Custom detection rules (10 rules)
Multi-channel alerts (Slack, Teams, webhook)
GeoIP enrichment
IP blocklist management
JSON / CEF / Syslog export
Start Free — No Card Required

Set up in under 3 minutes. No installation required.


Up and running in 3 steps

From zero to real-time threat detection in under 5 minutes.

1

Register your organisation

Create an account, name your organisation, and get instant access to your SIEM dashboard.

30 seconds
2

Copy your API key and add the SDK

Add one <script> tag to your website or app. The SDK automatically collects security events and streams them to your SIEM.

2 minutes
3

See threats in real time

Within seconds of deploying the SDK, events appear in your dashboard. ML detection and alerts run automatically.

Immediately