Subscription includes
Support
Not every order comes from a genuine customer. Fraudulent buyers, repeat offenders, and bad-faith shoppers cost you time, money, and inventory. Left unchecked, they lead to chargebacks, wasted fulfillment costs, and unnecessary strain on your support team. Blacklist for WooCommerce gives you a proactive way to stop these users before they ever reach checkout, without disrupting the experience for your legitimate customers.
Block customers using a wide range of conditions, including name, email, phone number, IP address, full billing or shipping address, and order total range. Build simple rules in seconds with Quick Blacklist, or create detailed, multi-condition rules with Advanced Blacklist using match types like contains, starts with, or wildcard. Choose exactly what happens when a match is detected: prevent the order, cancel it automatically, or block the customer from registering, and decide whether the ban is permanent or expires after a set period.
Beyond manual rules, the plugin can blacklist repeat offenders automatically based on failed, cancelled, or refunded orders, exempt trusted customers with a dedicated whitelist, and enforce your rules across checkout, registration, login, comments, and the REST API, all from one dashboard with full activity logging.
Fraudulent buyers and bad-faith shoppers cost you time, money, and inventory. Blacklist for WooCommerce lets you stop them before they reach checkout, blocking by name, email, phone, IP address, address, or order total, without disrupting the experience for your legitimate customers.

Every fraud case is different. Sometimes you need to stop a specific person, and other times you need to restrict entire regions or address patterns. Blacklist and Block for WooCommerce lets you define precise blocking rules using one or more of the following criteria.
Target individuals by first name, last name, or a combination of both for more precise matching. Choose how closely a name has to match: exact, contains, starts with, ends with, or wildcard, so you can catch variations while reducing false positives that could catch legitimate customers with similar names.

Some buyers swap emails and names but reuse the same phone number. Add specific numbers to your blocklist to catch these cases and stop suspicious orders before they go through.

Prevent the same source from making repeated purchase attempts. Blocking by IP is particularly effective against automated bots, scripted attacks, and users who create multiple accounts to bypass other restrictions.

Go beyond country-level rules and block by address line, city, state or county, and postcode, for both billing and shipping addresses. Each field supports the same flexible match types: exact, contains, starts with, ends with, or wildcard, so you can target a specific address or a broader pattern.

Restrict orders originating from, or shipping to, high-risk or unsupported regions. Ideal for merchants who have identified specific countries as consistent sources of chargebacks, fraudulent activity, or logistics limitations.

Catch a common fraud signal automatically: when a customer’s IP-detected country doesn’t match the billing country they’ve entered. Restrict by IP-detected country on its own, or flag any order where the two don’t line up.

Set a minimum and maximum order total to block orders that fall outside your accepted range automatically. This is particularly useful for flagging unusually large orders that may indicate fraud, or suspiciously small orders that could be testing stolen payment details.

Add a list of emails, names, phone numbers, IP addresses, or countries separated by commas or one per line, pick a single default action, and you’re done. Quick Blacklist uses OR logic, meaning if any one value matches, the action is applied immediately, making it the fastest way to block a known list of bad actors.

Build precise rules that combine multiple conditions at once: name, email, phone, IP, address, country, and order total, each with its own match type. Give every rule a name, a priority, a status toggle, and its own custom customer-facing error message. Advanced rules are evaluated first and override any Quick Blacklist matches, so you stay in control when the two overlap.

Not every block needs to be forever. Choose a permanent ban, or set an automatic expiry of 7 days, 30 days, 90 days, 1 year, or a custom date, so a customer’s restriction lifts on its own once the ban period ends.

Stop chasing repeat problem customers by hand. Set thresholds for failed orders, cancelled orders, refunded orders, or blocked attempts from the same IP within a chosen time window, and the plugin writes a blacklist rule automatically once a customer crosses that threshold. Choose which identifier to block on, email, phone, or IP, along with the action and ban duration for each trigger. Whitelisted customers are never caught by automatic rules. 7 days, 30 days, 90 days, 1 year, or a custom date, so a customer’s restriction lifts on its own once the ban period ends.

Exempt customers you trust from your blacklist rules entirely. Add entries by email address, email domain, phone number, IP address or IP range, user role, payment method, or user ID, with an optional note and expiry date for temporary exemptions. Choose whether your whitelist overrides every rule action, or only exempts customers from having their order prevented, while still allowing cancel and registration-block rules to apply.

Decide exactly which parts of your store your rules apply to. Every entry point shares the same rules, Quick Blacklist, and whitelist, so there’s nothing extra to configure per location. Cover classic and block checkout, WooCommerce and WordPress registration, login attempts, comments and product reviews, and orders created through the REST API. Anything beyond checkout starts switched off, so extending enforcement further is always a deliberate choice, and store managers are never locked out of their own site by their own rules.

Stay informed the moment a rule fires. Enable admin email notifications and customize the subject line and body using placeholders for the customer’s email, name, IP, the action taken, the matched rule, order number, and more, so every alert tells you exactly what happened and why.

Get a real-time overview of every blocked action from a single dashboard. Track total blocked actions, active rules, blocked emails, and blocked IPs at a glance. Dig deeper with a detailed activity log that records the date, name, email, action type, matched rule, and IP address for every blocked event, with search, filters, and bulk actions to quickly spot repeat offenders and refine your blocking strategy over time.

Yes. Bans can be set as permanent or temporary, with expiry options from 7 days up to a year, or a custom date, so the restriction lifts automatically once the ban period ends.
It can do both. Automatic Blacklisting lets you set thresholds for failed, cancelled, or refunded orders, or repeated blocked attempts from the same IP, and writes a blacklist rule automatically once a customer crosses that threshold.
Yes. Every rule lets you choose the action triggered on a match: prevent the order, cancel it, or block registration entirely.
Yes. Add trusted customers to the whitelist by email, phone, IP, IP range, user role, payment method, or user ID, and they'll be exempt from your blacklist rules.
You control that. Checkout and registration are covered from the start, and you can optionally extend enforcement to login attempts, comments, product reviews, and orders created through the REST API.
Yes. The plugin can flag or block orders where the country detected from a customer's IP address doesn't match the billing country they entered, a common fraud signal.
Categories
Extension information
Countries