Most intrusion detection systems position themselves as universal that can work in any environment (Internet, Intranet, Local networks, closed enterprise systems and so on). But each environment has some specific. Even having open-source solutions you need to have in-house security geeks who care about security of your web systems on a regular basis. Intrusion detection systems are very expensive to implement.
Dhound is Intrusion Detection System for Internet facing servers. Dhound has the enormous IP addresses database that allows to define locations (country, city) of users and services quickly. It tracks success security events happening with your web system such as logins to the server, logins to admin panel, SSH login, etc. All of this allows to prevent Data Leakage. GDPR has big penalties for personal data breaches about which you should notify customers and EU official supervisory authority. Much cheaper to protect the system now then to mitigate circumstances in future.
One of Dhound specific is orienting on the protection against legitimate users with malicious intentions. Internet is enough aggressive environment and web systems are always attacking by malicious users. And what about fired admins, remote outsource teams that has access to your servers? Dhound tracks and alerts Success suspicious events, controls output traffic that allows to notify data owners quickly that somebody without any reason accessed the server or your server suddenly started working with unknown services in Internet. The idea was to develop IDS with Internet environment specific, make it simple and affordable. Ordinary technical staff has enough knowledge to support security on your servers because Dhound IDS does not require specific security knowledge to manage.