返回所有解决方案
专属解决方案

Kasada 解决方案 API

通过一个稳定的 REST 接口将 Kasada 解决方案集成到您的自动化流程中。发送目标信息,即可获得可直接使用的解决方案,无需维护自定义绕过逻辑。

Kasada
任务类型Kasada
平均速度< 6s
每千次价格0,5$ / 1k
工作原理

Kasada, without custom bypass code.

即使 Kasada 更新其防护机制,这个可预测的三步流程也始终保持不变。

Send the PJS script URL from the target's x-kpsdk-v header or <script> tag. Once you already hold a valid x-kpsdk-ct, switch to cd_only to refresh just the proof-of-work x-kpsdk-cd header at 1/10th the price of a full solve.

01

提交目标

在一次 API 请求中发送页面 URL 和挑战特定字段。

02

我们处理挑战

CaptchaSolv 将任务路由到专门的解决方案,并跟踪直至完成。

03

使用解决方案

获取下一次请求所需的令牌、请求头、cookies 或 sensor payload。

API 集成

所有支持的解决方案使用相同的接口和响应格式。

POST /solve
请求
{
  "api_key": "YOUR_API_KEY",
  "type": "Kasada",
  "site_url": "https://example.com/api/data",
  "data": {
    "pjs": "https://example.com/149e9513.../2d206a39.../p.js"}
}
响应200 OK
{
  "errorId": 0,
  "status": "ready",
  "solvtime": 3.42,
  "data": {
    "useragent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64)...",
    "language": "en-US,en;q=0.9",
    "solution": {
      "x-kpsdk-cd": "eyAgImlzQm90IjogZmFsc2U...",
      "x-kpsdk-ct": "0a5b8c3d...",
      "x-kpsdk-st": "1697234567890",
      "x-kpsdk-r": "eyJsYW5ndWFnZSI6ImVu...",
      "x-kpsdk-cr": "eyJob3N0bmFtZSI6..."}
  }
}
任务数据字段

此验证码类型的求解请求中,可在 data 对象内发送的字段。

pjs必填

The Kasada PJS (Primary JavaScript) URL or content, from the x-kpsdk-v header or a <script> tag. Not required when cd_only is used.

endpoint可选

The specific API endpoint URL to solve against. Defaults to site_url if omitted.

kasada_version可选

Override for the x-kpsdk-v version string, e.g. j-1.2.139. Auto-detected if omitted.

cd_only可选

When true, only solves the x-kpsdk-cd proof-of-work header. Requires x-kpsdk-ct. Billed at 1/10th the normal Kasada price.

x-kpsdk-ct可选

Required when cd_only is true - the current x-kpsdk-ct value for your session; cd is cryptographically tied to it.

解决方案字段

任务解决后在 data.solution 中返回的字段。

solution.x-kpsdk-cd必填

Challenge data header - pass this in subsequent requests.

solution.x-kpsdk-ct必填

Client timestamp header.

solution.x-kpsdk-st可选

Session token header.

solution.x-kpsdk-r可选

Response header.

solution.x-kpsdk-cr可选

Challenge response header.

data.useragent必填

The user-agent used during solving - must match on your requests, Kasada binds headers to this fingerprint.

What is Kasada?

Kasada (also referred to as KPSDK) is an anti-bot system that protects websites and APIs from automated traffic. Instead of showing a visible puzzle, it ships a heavily obfuscated JavaScript sensor to the browser and decides in the background whether a request comes from a real user or a bot.

Under the hood the script decrypts a bytecode program and runs it inside its own JavaScript virtual machine. That VM fingerprints the browser and environment - user-agent, screen, WebGL, timezone, plugins and anti-tamper probes - then encrypts the telemetry and posts it to Kasada's collection endpoint (/tl). The server scores that data and hands back the tokens a legitimate client is expected to reuse.

Because those tokens are short-lived and bound to a specific session and browser fingerprint, your requests have to carry the correct Kasada headers and keep the same user-agent throughout. Our solver reproduces this flow and returns the headers ready to drop straight into your requests.

  1. 01

    Obfuscated sensor

    Kasada serves a heavily obfuscated ips.js script instead of a visible challenge.

  2. 02

    Virtual machine

    It decrypts a bytecode program and runs it in its own JS VM to fingerprint the browser.

  3. 03

    Encrypted telemetry

    The collected signals are encrypted and posted to Kasada's /tl endpoint.

  4. 04

    Session tokens

    The server scores the data and returns the short-lived x-kpsdk headers to reuse.

Kasada headers
x-kpsdk-ctKey

Telemetry session token - ties a client to its scored /tl submission and is sent on protected requests.

x-kpsdk-cdKey

Proof-of-work / challenge-data header derived for the session. This is the main header your requests must present.

x-kpsdk-vKey

Kasada SDK version string (e.g. j-1.2.x) - tells the server which script build produced the tokens.

x-kpsdk-st

Session timestamp issued alongside the tokens.

x-kpsdk-r

Response token returned by the challenge flow.

x-kpsdk-cr

Challenge-response value used on some endpoints.

常见问题

关于正确集成此解决方案的常见问题。

Yes - our Kasada solver works on any site protected by Kasada, not just a fixed list of targets. Send the PJS script from the page you're hitting and we solve that specific site's challenge, so new domains work the same way as the ones we already support.

需要帮助?

在绕过 Kasada 时遇到困难?

加入我们的 Discord,我们的团队会帮助您在您的环境中成功解决 Kasada - 提供免费建议,即使挑战随时间变化也能持续应对。

加入我们的 Discord