As ML model needs to be trained before providing any meaningfull results, i suggest to provide also learninig / training mode to make this process easier for users.
In this mode, plugin will only send data about all requests to ML model togather with anomaly score and information if request was blocked or not.