# Marketplace integrations

An integration is a function, published in [Azion Marketplace](/en/documentation/platform/marketplace/), that you install in your account and then instantiate on an application or a firewall. Each integration runs on one of the two. For how installing and instantiating fit together, refer to [How Marketplace works](/en/documentation/platform/marketplace/how-it-works/).

This page lists each integration, what it does, where it runs, whether it needs an account with a third-party vendor, and the guide that installs it.

---

## Where an integration runs

An integration runs on an application or on a firewall. You create its function instance on that resource, after you turn on the resource's **Functions** module. A Rules Engine rule with the **Run Function** behavior then runs the instance.

| Runs on     | Use for                                                                        | Where you instantiate it                                                                                      |
| ----------- | ------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------- |
| Application | Processing data and running services inside the request path of an application | The application's **Functions Instances** tab                                                                 |
| Firewall    | Network security, authentication, and traffic control                          | The firewall's **Functions Instances** tab, which appears only when the firewall's **Functions** module is on |

For the full procedure, refer to [Install an integration](/en/documentation/guides/application-development/integrations/install-an-integration/).

The tables below group the integrations by use case. The **Third-party account** column says whether the integration needs an account with the vendor that provides it.

---

## Testing and validation

These integrations evaluate the user experience or validate how a system behaves.

| Integration              | What it does                                                                                                              | Runs on     | Third-party account | Guide                                                                                                                       |
| ------------------------ | ------------------------------------------------------------------------------------------------------------------------- | ----------- | ------------------- | --------------------------------------------------------------------------------------------------------------------------- |
| A/B Testing              | Validates addresses, interfaces, or workflows with A/B tests.                                                             | Application | No                  | [Install A/B Testing](/en/documentation/guides/application-development/integrations/ab-testing-marketplace/)                |
| Hello World              | Displays the message `Hello World` in the browser through an application.                                                 | Application | No                  | [Install Hello World](/en/documentation/guides/application-development/integrations/hello-world/)                           |
| Send messages to a queue | Adds messages to the back of a queue. The sender does not wait, and the receiving component processes each message later. | Application | No                  | [Install Send messages to a queue](/en/documentation/guides/application-development/integrations/send-messages-to-a-queue/) |

---

## Content segmentation and personalization

These integrations change which content a user receives and how securely it is delivered.

| Integration                     | What it does                                                          | Runs on     | Third-party account | Guide                                                                                                                     |
| ------------------------------- | --------------------------------------------------------------------- | ----------- | ------------------- | ------------------------------------------------------------------------------------------------------------------------- |
| Content Targeting               | Manipulates cookies and headers to apply your own usage logic.        | Application | No                  | [Install Content Targeting](/en/documentation/guides/application-development/integrations/content-targeting-integration/) |
| Signed Cookies - Hash Validator | Implements signed cookies, which add a layer of security to a cookie. | Application | No                  | [Install Signed Cookies](/en/documentation/guides/application-development/integrations/signed-cookies/)                   |

---

## Bot management

These integrations detect bots and mitigate malicious or unwanted automated traffic.

| Integration             | What it does                                                                                   | Runs on  | Third-party account | Guide                                                                                                                     |
| ----------------------- | ---------------------------------------------------------------------------------------------- | -------- | ------------------- | ------------------------------------------------------------------------------------------------------------------------- |
| Bot Manager Lite        | Analyzes incoming requests and assigns each one a score based on rules and behaviors.          | Firewall | No                  | [Install Bot Manager Lite](/en/documentation/guides/application-development/integrations/bot-manager-lite/)               |
| DataDome Bot Protection | Detects and blocks automated threats, such as credential stuffing, layer 7 DDoS, and scraping. | Firewall | Yes                 | [Install DataDome Bot Protection](/en/documentation/guides/application-development/integrations/datadome-bot-protection/) |
| Radware Bot Manager     | Defends your applications and content against bot attacks.                                     | Firewall | Yes                 | [Install Radware Bot Manager](/en/documentation/guides/application-development/integrations/radware-bot-manager/)         |

---

## Security and access control

These integrations respond to threats, authenticate users, and control access to your applications and content.

| Integration                | What it does                                                                                   | Runs on  | Third-party account | Guide                                                                                                                             |
| -------------------------- | ---------------------------------------------------------------------------------------------- | -------- | ------------------- | --------------------------------------------------------------------------------------------------------------------------------- |
| Cardstream                 | Protects an e-commerce site from fraud with Axur.                                              | Firewall | Yes                 | [Install Cardstream](/en/documentation/guides/application-development/integrations/axur-cardstream/)                              |
| Leakstream                 | Monitors leaked credentials with Axur and protects your users from checker attacks.            | Firewall | Yes                 | [Install Leakstream](/en/documentation/guides/application-development/integrations/axur-leakstream/)                              |
| Send Event to Endpoint     | Sends the request data to an HTTP endpoint you define, with the JavaScript fetch API.          | Firewall | No                  | [Install Send Event to Endpoint](/en/documentation/guides/application-development/integrations/send-event-to-endpoint/)           |
| reCAPTCHA                  | Protects your domains against bots. You monitor the traffic in the Google reCAPTCHA dashboard. | Firewall | Yes                 | [Install reCAPTCHA](/en/documentation/guides/application-development/integrations/recaptcha/)                                     |
| hCaptcha                   | Protects your domains against bots. You monitor the traffic in the hCaptcha dashboard.         | Firewall | Yes                 | [Install hCaptcha](/en/documentation/guides/application-development/integrations/hcaptcha/)                                       |
| JWT                        | Grants and revokes privileges with KIDs and secrets, and sets expiration dates.                | Firewall | No                  | [Install JWT](/en/documentation/guides/application-development/integrations/jwt/)                                                 |
| Secure Token               | Creates token-based URLs that expire after a set time.                                         | Firewall | No                  | [Install Secure Token](/en/documentation/guides/application-development/integrations/secure-token/)                               |
| Scheduled Blocking         | Controls access to your application by a time schedule you define.                             | Firewall | No                  | [Install Scheduled Blocking](/en/documentation/guides/application-development/integrations/scheduled-blocking/)                   |
| IP Address Reputation      | Uses the reputation score that IPQualityScore provides for an IP address.                      | Firewall | Yes                 | [Install IP Address Reputation](/en/documentation/guides/application-development/integrations/ip-address-reputation/)             |
| Phone Validation           | Validates phone numbers and detects fraudulent activity with IPQualityScore.                   | Firewall | Yes                 | [Install Phone Validation](/en/documentation/guides/application-development/integrations/ipqs-phone-validation/)                  |
| URL Validation             | Scans URLs for malware, phishing, and suspicious domains with IPQualityScore.                  | Firewall | Yes                 | [Install URL Validation](/en/documentation/guides/application-development/integrations/ipqs-url-validation/)                      |
| Upstash Rate Limiting      | Controls the rate of incoming traffic to protect your applications.                            | Firewall | Yes                 | [Install Upstash Rate Limiting](/en/documentation/guides/application-development/integrations/upstash-rate-limiting-integration/) |
| Add Request ID             | Adds an HTTP header to the incoming request that assigns a unique identifier to each request.  | Firewall | No                  | [Install Add Request ID](/en/documentation/guides/application-development/integrations/add-request-id-header/)                    |
| Method and Route Validator | Controls access to your application by the request method and path.                            | Firewall | No                  | [Install Method and Route Validator](/en/documentation/guides/application-development/integrations/method-and-route-validator/)   |

---

## Request and payload control

These integrations control the size and shape of incoming requests and prevent resource overload.

| Integration                       | What it does                                                                                                                                                         | Runs on     | Third-party account | Guide                                                                                                                                         |
| --------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------- | ------------------- | --------------------------------------------------------------------------------------------------------------------------------------------- |
| Limit Payload Size                | Evaluates the request data and denies a payload that exceeds a limit you define.                                                                                     | Firewall    | No                  | [Install Limit Payload Size](/en/documentation/guides/application-development/integrations/limit-payload-size/)                               |
| Massive Redirect                  | Handles a large number of domain redirects, such as the redirects of a domain migration.                                                                             | Application | No                  | [Install Massive Redirect](/en/documentation/guides/application-development/integrations/massive-redirect-integration/)                       |
| Process Request Data Into Headers | Stops a request when a field of the request body is empty.                                                                                                           | Firewall    | No                  | [Install Process Request Data Into Headers](/en/documentation/guides/application-development/integrations/process-request-data-into-headers/) |
| Request Variation Controller      | Tracks the arguments a user or the origin sends across requests in a signed cookie. It blocks access to the origin when the variations exceed the maximum you allow. | Application | No                  | [Install Request Variation Controller](/en/documentation/guides/application-development/integrations/request-variation-controller/)           |
| Upstash Waiting Room              | Manages traffic surges with a waiting room, and prevents overload on your websites and applications.                                                                 | Firewall    | Yes                 | [Install Upstash Waiting Room](/en/documentation/guides/application-development/integrations/waiting-room/)                                   |

---

## Integrations without a guide

The Marketplace catalog in Azion Console also lists these integrations, which have no installation guide in this documentation:

| Integration                      | What it does                                                                            |
| -------------------------------- | --------------------------------------------------------------------------------------- |
| Block Fingerprint List           | Controls access to your application by blocking requests from users on a blocking list. |
| Content Targeting - JS (Preview) | Creates several scenarios, each with its own arguments, to target content.              |
| Email Validation                 | Identifies abusive and fraudulent email addresses in real time.                         |
| Fingerprint                      | Generates unique identifiers for the devices that access your applications.             |

---

## Related resources

- [How Marketplace works](/en/documentation/platform/marketplace/how-it-works.md): How an installed integration becomes a function instance that a rule runs.
- [Install an integration](/en/documentation/guides/application-development/integrations/install-an-integration.md): Install an integration from the catalog and run it on an application or a firewall.
- [Marketplace permissions](/en/documentation/platform/marketplace/permissions-marketplace.md): The privileges Marketplace requires on the resource where you install an integration.
- [Marketplace guides and tutorials](/en/documentation/platform/marketplace/guides.md): Every installation guide for a Marketplace integration or template.
