The rise in fraudulent activities poses significant challenges for e-commerce business owners, such as fake orders and unauthorized purchases made using stolen card information. A study suggests that e-commerce stores all over the world lose over $10 billion to card testing attacks. The prevalence of fraudulent activities has reached a point where safeguarding your store from suspicious behavior is no longer a choice—it is a requirement. These deceitful actions result in revenue losses and erode customer trust.
To combat fake orders and carding attempts, use: Anti-Fraud Shield for WooCommerce. This tool allows you to restrict risky orders by setting limitations based on factors such as IP addresses, unsafe countries, proxies, order duplication, and transaction thresholds. By establishing these parameters, you can create a more secure environment for your online store and protect it from potential threats.
Use Cases – Multiple Ways to Combat Fraudulent Orders & Transactions
- Flag orders based on mismatches between user roles and typical order patterns.
- Detect and hold orders using email addresses from suspicious or temporary domains.
- Verify PayPal emails to ensure payment sources are legitimate and not spoofed.
- Automatically flag orders placed from high-risk or sanctioned countries.
- Compare store and order countries to detect potential cross-border fraud attempts.
- Cross-check billing and shipping countries to identify suspicious shipping behavior.
- Detect use of proxies or VPNs by comparing IP address location with order details.
- Identify and scrutinize first-time customers placing high-risk or unusual orders.
- Prevent duplicate or identical orders placed within a short timeframe.
- Monitor rapid order generation to detect bot attacks or coordinated fraud attempts.
Features
- Protect your e-commerce store with advanced fraud prevention measures
- Define multiple fraud prevention rules tailored to your specific needs
- Assign weight to each risk factor for particular fraud detection
- Restrict or apply fraud prevention rules by user roles, products, and categories
- Select from a variety of risk factors to enhance security and assess risk based on:
- User roles
- Suspicious domains
- Paypal email verification
- High-risk countries
- Store country v/s Order country
- Billing country v/s shipping country
- IP v/s Proxy
- First order check
- Order duplication
- Rapid order generation
- Number of order cancellations
- Subtotal limit (minimum and maximum)
- Order quantity limit (minimum and maximum)
- High price products
- Payment methods
- Suspicious email domains
- Suspicious addresses
- Categorize risk levels (low, medium, high) and define actions accordingly
- Multiple risk level actions such as:
- Do nothing
- Accept order and notify admin
- Accept order and change status
- Reject order automatically
- Display a customizable error message for restricted users
- Block specific email addresses from making transactions.
- Restrict IP addresses using:
- IP range (From-To)
- Comma-separated specific IPs
- Blacklist specific addresses or lists of addresses automatically.
- Customize email notifications to receive fraud risk reports.
- Send separate admin alerts for detected fraudulent activities
- Enhanced checkout protection with:
- Maintain detailed logs of all suspicious activities for review
Provides Ultimate Protection against Fraudulent Activities
The Anti-fraud shield for WooCommerce extension provides ultimate protection against fake orders, chargebacks, and card testing attempts. With over 16+ risk factors and options to block users permanently from placing an order, this extension is the ultimate safeguard against fraudulent order attempts.

Multiple risk factors to choose from
This feature will create dynamic rules to manage all types of risk factors, such as:
Restrict the place order button by IP address, address, and emails
Restrict the “Place Order” button based on various criteria, such as IP address, location (country, city, or street), and specific email addresses with this extension. If any user meets these conditions of restriction, they will be unable to complete the checkout process. When a restricted user clicks the checkout button to place an order, an error message is displayed at the top of the screen, informing them that they are restricted.

Multiple Integrations for Extra Scrutiny
Apart from built-in fraud prevention features, this extension is fully compatible with Google recaptcha for woocommerce for extra checkout protection. In addition to Google recaptcha, this extension contains a built-in image CAPTCHA for additional security.
To prevent fake PayPal transactions, this extension includes PayPal email verification functionality, which informs you in real-time whether the PayPal email is verified or not. For additional IP scrutiny, merchants can utilize the built-in IPQualityScore API, which reports visits and orders associated with suspicious IP addresses. Moreover, the use of the SocialScanner API can help by reviewing a customer’s social media.

Add Captcha to Make Checkout Extra Secure
For an additional layer of security, this extension offers a built-in image-based captcha creator, which provides additional security against bot-based carding attempts. If you wish to use V2 or V3 of Google’s reCaptcha to tackle spam and carding attempts, this extension is fully compatible with Google reCaptcha for WooCommerce.

Customizable Risk Weight for Each Factor
Merchants can configure anti-fraud rules as needed. By assigning weights to each factor, merchants can easily create the order scrutiny process as hard as they see fit. Assign weights from 1 to 10 to each factor; the higher the weight, the riskier the order. The combined weight of all factors equals a total risk score of 100.

Decide actions to prevent fraud based on order risk
It is entirely upto the merchants to decide what percentage of risk is considered low, medium, and high. Once the risk threshold percentages are added, merchants can easily decide what actions are to be taken in case of high and medium-risk orders. These actions are:
Accept the order and notify the admin
Once a medium/high-risk order is placed, the order will be accepted, and the admin will be notified via email of a medium/high-risk order.
Reject order automatically
Automatically rejects medium and high-risk orders; you can reinstate these orders from the order listing page.
Accept order and change order status
If this action is enabled, medium/high-risk orders will be accepted normally, but the order status will change so the admin can take suitable action later.

Get notified of risk reports via email
You can customize the email settings using this extension. It allows you to restrict users from sharing the risk report via email, helping to prevent fraudulent activities and orders. You can also restrict users from sending details of high-risk orders via email, ensuring that only the admin is separately informed.

Comprehensive log to view all flagged users
This feature provides a facility to maintain logs of all flagged users. You can track the details of the flagged user by using the threat date, user ID, order ID, user email, total block score, and the reason for the block, and then take appropriate actions.
