Module Center
The Module Center is the Protection Modules section near the top of the dashboard. It shows which Dralvia protection surfaces you can use with your current plan.
Plans control access, limits, seats, workspaces, billing, and support. Modules describe what you can protect, such as websites, contracts, repositories, email, browsers, AI use, and cloud resources.
Find a module
- Open the dashboard. Signing in is not required to browse the catalog.
- Find Protection Modules below the scan coverage cards.
- Review the six groups shown together: Web & Browser, Web3, Code & Supply Chain, Email, AI Security, and Operations.
- Check each card's Active, Setup required, Limited evaluation, Locked, or On the roadmap status.
- Select the card action to open the existing scanner, setup page, or module console.
Select View all modules to open the full module catalog. Guests can browse every module and use supported guest scanners. A Locked card clearly links to account creation because activating that module requires an account or eligible workspace plan; the catalog itself does not require sign-in.
The full catalog uses the same platform action layout as other workspace pages. Back to dashboard, Create free account, and Sign in use the shared button size, spacing, colors, and keyboard focus treatment instead of a separate compact link style.
Dashboard overview
Guest / Anonymous, Free Evaluation, Starter, Pro, and Enterprise use the same dashboard structure. Plan access changes module status, limits, trial actions, data visibility, and enterprise controls. It does not rearrange the page.
All five dashboard states use the Dralvia blue accent. Plan context remains visible through the plan label, module status, limits, actions, and available controls instead of changing the dashboard color.
The dashboard header provides separate Sun and Moon choices for light and dark mode. The selected choice is highlighted, and the preference remains active when navigating between dashboard and module pages.
The dashboard includes KPI cards, Threat Trend, Risk Distribution, Threat Categories, recent scans, live signals, contract reviews, and Global Scan Activity. Pro and Enterprise also show team activity. Global Scan Activity is an interactive map using current country and campaign data. Select View map to open the larger interactive view with zoom, pan, reset, location details, and campaign-cluster selection.
Threat Trend is not a security score. It counts threat detections in the loaded scan history for each day of the current seven-day window. Its vertical scale shows detection counts. Risk Distribution separately groups loaded scans by risk level, while Threat Categories counts matching evidence categories.
Every KPI, analytics chart, activity panel, map panel, and dashboard module card has an i help control. Hover it, or focus it with the keyboard, to read a plain-language description without leaving the dashboard. Help text opens in a layer above the dashboard, wraps inside its box, and is not cut off by compact cards or panel boundaries.
Compact Protection Modules cards show up to two readable lines of their module description. Select anywhere on a card, or focus it and press Enter or Space, to expand the module details. The separate i control opens the same detail view. The dialog shows the complete description, current plan/setup status, why that status applies, and the supported module and documentation actions. Close the dialog to return to the unchanged six-column dashboard grid. A locked module's detail view does not bypass its plan gate.
The dashboard navigation uses the same dot markers and complete Dralvia palette as the rest of the platform. The outer background, sidebar, top bar, cards, panels, borders, actions, and light-mode surfaces all resolve from the shared platform design tokens. Plan names and module status labels continue to show access differences.
The dashboard greeting uses the workspace display name supplied by sign-in. If that claim is unavailable, Dralvia turns the workspace identifier into a readable workspace name instead of showing the generic My Workspace label.
Dashboard values come from current workspace or guest service data. If an API has no supported records, the chart or panel stays in place and shows an empty state. Example values shown in product images are not used as account data.
Use the dashboard time-range menu to switch the data window between Last 24 hours, Last 7 days, and Last 30 days. The selection reloads scan KPIs, scan history, contract reviews, threat charts, country activity, radar campaigns, and signed-in security activity from their existing services. The 24-hour Threat Trend uses hourly buckets; the 7-day and 30-day views use daily buckets. Reports generated remains the workspace report-history total because that service does not expose the same time-window contract.
In the expanded Global Scan Activity map, select a country marker or campaign bubble to open its details. Campaign details show the reported risk, country, related-site count, up to ten site names, and available shared threat signals such as brand, redirect host, registrar, IP, or favicon evidence supplied by the radar API. Select a site name to open the URL & Phishing Scanner with that site filled in. Country details show the scan count and top sites when the country service supplies them. If an API reports an aggregate without site names, the details panel says that the names are unavailable instead of inventing them.
Detailed investigation pages remain available from the dashboard. Redirect Chain Timeline opens redirect evidence, Threat Relationships opens the relationship graph, Deception Signals opens deception events when available, and Scan Queue & History opens the scanner workflow.
Security Activity is also available from the hamburger menu under Workspace
Security Operations. A scan View action opens the supported URL & Phishing
Scanner with the selected website filled in. Relationship-graph domain and scan
nodes use the same handoff; old #/scan bookmarks remain compatible.
Status labels
- Active: Your plan includes the module and it is ready to open.
- Limited evaluation: You can try a reduced evaluation flow. Workspace history and team workflows may not be available.
- Setup required: Your plan includes the module, but you must connect or configure it first.
- Locked: Your current plan does not include the module. The card shows the next plan or contact path.
- On the roadmap: The module is not available for normal live use.
Guest access
Guests can preview public URL, website, and smart contract checks and browse the complete module catalog. Guest cards do not claim workspace history, API keys, team workflow, or activation of locked modules. Locked cards say that a free account or eligible workspace plan is required. Create a free account when you want signed-in evaluation continuity.
Usage and activity
Module cards do not invent findings or usage. When Dralvia has no supported activity value for a card, it says No recent activity yet. Open the module to review its full supported history and limits.
While plan access is loading, the catalog remains visible and says Checking plan access. If live plan details cannot be loaded, the dashboard says so and shows the standard module view for the signed-in plan. Module routes still enforce workspace access.
Improve coverage
For signed-in paid workspaces, Module Center checks existing mailbox and browser setup status. When an included module is not configured, Improve coverage shows one next action. The action opens the existing setup page. It does not create a second setup form.
- Connect a mailbox opens Email Protection.
- Set up browser protection opens Browser Protection, but only when the current plan includes it.
- Coverage setup is complete means the connected modules checked by Module Center are configured.
- Setup status is temporarily unavailable means Dralvia could not confirm the connection state. Open the module to check it directly.
- Some setup status is temporarily unavailable means only part of the connection state could be checked. Any setup suggestion uses confirmed state only, and Dralvia does not claim coverage is complete.
Repository scans and cloud posture are input-driven workflows. Module Center does not label them unconfigured when there is no persistent connection to check.
Plan changes
Free Evaluation and paid workspaces see the modules included in their current plan. Starter and Pro can open pricing for higher-plan features. Enterprise access and limits may be managed by contract, so Enterprise cards use the support path instead of normal checkout.
Limitations
The Module Center is an access and navigation view. It does not replace module result pages, change security verdicts, or change scoring. A module action may still require the correct workspace plan, role, or completed setup; its status and action state this before navigation.
Continue an investigation
Supported URL, smart-contract, and repository results show an Investigation follow-up area. It only displays actions backed by the current result:
- Open EvidencePack appears when the result provides an EvidencePack link.
- Inspect related signals appears when the relationship graph supports the result's stable asset identifier.
- Create security case appears for an authenticated workspace when the result supports the existing case workflow.
- After a case is created, View case replaces the create action so the same result is not submitted twice in that session.
The handoff keeps the source asset and result context. It does not recalculate the verdict or copy the finding into a separate findings store. Repository graph links are not shown because repository identifiers are not yet supported by the relationship graph. Browser event EvidencePack and escalation actions remain on their event rows. Email analysis keeps its current EvidencePack controls; a general case action is not shown until a supported cross-surface case route is available.
If case creation fails, the result shows the service error and leaves the action available for retry. Workspace permissions and plan access are still enforced by the destination service.
Module health and freshness
Module Center shows live connection health only when a module already provides a reliable health contract:
- Browser Protection can show Connected, Connected in observe mode, Sync lagging, Extension not detected, Needs attention, or Setup required.
- Connected Mailboxes and Safe-link / Click-time Verdicts can show Connected, Needs attention, or Setup required.
- Temporarily unavailable means Dralvia could not check the live connection state. It does not mean the module is healthy or disconnected.
- Health not reported means configuration exists but the source did not return enough evidence for a current health claim.
When available, the card shows the last successful refresh in your displayed timezone. If the source provides no timestamp, the card says Last successful refresh not reported.
Browser freshness follows the browser service's existing thresholds: a detected extension becomes Sync lagging after more than 24 hours without a fresh event, while an extension absent from the current 7-day detection window is Extension not detected. Mailbox providers do not share one reliable stale threshold, so Dralvia shows the provider's last success without inventing a stale label.
For degraded or stale connections, choose Review connection:
- Open the module and review its current safe error or connection state.
- Confirm the extension or mailbox authorization is still active.
- Run one supported test or refresh action.
- Confirm a later successful timestamp before treating the connection as recovered.
Other module cards continue to say No recent activity yet when no supported health signal exists. That wording is deliberate: scan activity alone does not prove a module or integration is healthy.
Guest account actions and dashboard preferences
Guests see explicit Create free account and Sign in actions in the top bar. A signed-in workspace sees its account name and avatar instead. Dralvia does not use an unexplained initial and status dot as the only authentication control.
Signed-in workspaces can select Customize dashboard to hide or restore individual dashboard widgets. The preference is stored for that workspace in the current browser. It changes presentation only: hiding a widget does not disable its service, delete data, or change plan access. Guest dashboards stay fixed so the public evaluation has a predictable layout.
Seven-day module trials
When a workspace and module are eligible, open the module details and choose Start 7-day trial. Dralvia shows a confirmation before access changes.
- The trial lasts exactly 168 hours from activation.
- No card is required, no Stripe subscription is created, and there is no automatic charge or conversion.
- A provisioning-gated module begins its seven days only after setup is marked ready. Requesting the trial does not start the clock.
- A customer trial can be used once for the same workspace and module. Closing or refreshing the page does not create another grant.
- The module card shows remaining days while the trial is active. At expiry, access returns to the base plan automatically.
- Buy separately appears only for a module with supported self-serve recurring pricing. Contract-managed controls use the sales path.
Plan and module trials are controlled by rollout availability. If the trial service cannot be checked, Module Center says so and retains the normal plan state; it does not guess that a trial is available.