Product Icon

Anti-Fraud for WooCommerce

Protect Your WooCommerce Checkout from Card Testing, Fake Orders and High-Risk Transactions
Choose a billing option
$139
Save 20%
$278 $222.40

Subscription includes

  • Product updates and improvements
  • Customer support
  • 30-day money-back guarantee

Anti-Fraud for WooCommerce helps you identify suspicious orders, reduce card testing activity, and decide how your store responds to potential fraud.

Combine configurable WooCommerce fraud rules, checkout protection, customer controls, and optional risk intelligence in a workflow that fits your business.

  • Help reduce card testing and repeated payment attempts
  • Identify suspicious orders using configurable fraud rules
  • Stop selected high-risk checkouts before payment
  • Review, hold, or cancel orders according to your risk settings
  • Create targeted exceptions for trusted customers and restrictions for known threats
Start with built-in WooCommerce fraud rules and risk scoring. MaxMind minFraud is optional, so you can add external fraud intelligence when it provides value for your store.

Feature comparison of Anti-Fraud for WooCommerce and typical fraud plugins

Whether you are dealing with card attacks, suspicious checkout activity, or orders that need a closer look, choose the protection and review process that suits your customers, products, and payment methods.

Protect your store from card testing attacks

Card testing uses repeated checkout attempts to test payment credentials. It can leave your store handling failed payments and suspicious orders while you try to keep checkout available for genuine customers.

Anti-Fraud combines order and payment attempt controls with fraud rules and Checkout CAPTCHA to help you respond to this activity.

  • Set limits on repeated order attempts
  • Limit failed payment attempts against the same order
  • Add Cloudflare Turnstile or Google reCAPTCHA v2 Checkbox to checkout
  • Use Advanced counting to include additional payment and checkout signals
  • Combine attempt limits with your payment gateway’s fraud protection

Identify repeated attacks when checkout details change

Attackers may change email addresses, IP addresses, or other checkout details between attempts. When Advanced counting is enabled, Anti-Fraud can combine customer identifiers with failed payment activity, checkout sessions, and related cart patterns.

This provides additional ways to identify persistent attack behavior beyond a single IP address or email address. In Advanced counting, overall store volume is not used as a standalone reason to block a customer.

Why use Anti-Fraud for WooCommerce?

Use multiple protection layers, not just one risk signal

A suspicious order and an automated card attack do not necessarily look the same. Anti-Fraud brings together controls for both, with configurable WooCommerce rules at the center of the workflow.

Use built-in scoring, checkout attempt limits, allow and block lists, and automated order actions. Add Checkout CAPTCHA, PayPal protection, MaxMind, identity verification, or AI-assisted review where they fit your store.

Compare individual checks with layered protection

Different fraud controls solve different problems. This comparison shows what each control contributes on its own and how Anti-Fraud lets you combine it with additional protection.

Protection layer What it contributes on its own How Anti-Fraud for WooCommerce adds to it
External fraud scoring Transaction intelligence from a separate scoring service Built-in WooCommerce rules and scoring, with MaxMind available as an optional additional signal
IP attempt limits Detection of repeated activity from the same IP address Additional customer identifiers, with payment, session, and related checkout signals available through Advanced counting
Checkout CAPTCHA Human verification to help reduce automated checkout activity Cloudflare Turnstile or Google reCAPTCHA v2 alongside order attempt limits, payment attempt limits, and fraud scoring
Customer exception lists Rules for customer details that are already trusted or known to be risky Allow and block lists across multiple customer attributes, plus optional automatic blocking of high-risk email addresses and IP addresses
Pre-payment checks A decision about whether a checkout should proceed to payment Configurable pre-payment checks alongside order review, administrator alerts, and automatic hold or cancellation actions
PayPal payment protection Controls focused on activity through a PayPal payment flow Dedicated attempt limits and optional PayPal email verification alongside the store’s broader fraud rules

Individual products and services may combine these controls differently. Anti-Fraud gives you the flexibility to build a layered workflow inside WooCommerce without requiring MaxMind for its built-in fraud scoring.

Built-in controls for suspicious orders

Different stores have different risk tolerances. Choose the rules that matter to your business, adjust their weights, and decide how much risk warrants a closer review.

  • Set risk thresholds and individual rule weights
  • Use allow lists for trusted customers and order sources
  • Use block lists for known high-risk customer details
  • Choose manual review, automatic order actions, or pre-payment blocking

You can leave order statuses unchanged while your team reviews risk information, place suspicious orders on hold, or apply more restrictive actions when appropriate.

Configure protection around your store

Protection presets provide a starting point. Settings are organized around essential protection, card testing, order review and alerts, trusted and blocked customers, extra protection tools, and advanced controls.

Use settings search to find the controls you need. Then adjust your configuration using real order results rather than enabling every restriction at once.

Performance depends on your hosting, order volume, enabled checks, and connected services. Choose the controls relevant to your store and test your normal checkout and payment flows after making changes.

Best practices for effective fraud protection

Use several relevant fraud indicators together, review higher-risk orders before fulfillment, and combine Anti-Fraud with your payment gateway’s security controls.

Start conservatively. Review which rules contribute to genuine and suspicious orders, then tune those rules rather than making broad changes that could affect every customer.

Is Anti-Fraud for WooCommerce right for your store?

Anti-Fraud helps with

  • Identifying suspicious WooCommerce orders
  • Reducing card testing and repeated checkout abuse
  • Creating configurable fraud rules and customer exceptions
  • Automating order review, alerts, holds, and cancellations

Understand the limits

No fraud prevention system can identify every fraudulent transaction. Anti-Fraud does not replace your payment gateway’s security controls, manage chargeback disputes for you, or replace general WordPress security.

For website access and WordPress security controls, see Security for WooCommerce. Anti-Fraud focuses on checkout activity, fraud risk, and suspicious orders.

Why merchants trust OPMC

OPMC has been developing WooCommerce extensions since 2014 and supports merchants around the world.

We maintain our extensions and provide support from the team that builds the software. Contact support when you need help understanding your configuration or investigating a reproducible issue.

Analytics dashboard

See recent fraud activity and order risk in one place, so your team can focus on the transactions that need attention.

Anti-Fraud analytics dashboard showing order risk and recent fraud activity

  • Compare the mix of low, medium, and high-risk orders
  • Review recent order volume and higher-risk activity
  • See high-risk orders placed on hold or canceled
  • Review revenue alongside the value of higher-risk orders
  • Monitor blocked email activity and applicable PayPal verification activity
  • Check whether fraud assessments are waiting or processing normally

Handle suspicious orders automatically

Reduce repetitive review work without treating every suspicious order the same way. Decide what should happen when an order reaches your chosen risk level.

  • Place suspicious orders on hold for manual review
  • Cancel orders that reach a higher risk threshold
  • Send administrator alerts at a selected risk score
  • Stop applicable high-risk checkouts before payment
  • Automatically add high-risk email addresses and IP addresses to the block list when enabled

Manual review remains useful for orders that need additional context. You can increase automation as you become familiar with your store’s fraud patterns.

Score orders using signals that matter to your business

Anti-Fraud combines enabled order and customer checks into an overall risk score. Assign each rule a weight according to how useful that signal is for your store.

  • First-time buyers: Add risk when the customer or email address has no previous completed orders.
  • Unusually large orders: Flag orders that exceed a chosen amount or are unusually large compared with your order history.
  • Billing and shipping differences: Identify mismatched billing and delivery information.
  • Phone and country inconsistencies: Compare phone country information with the billing country.
  • IP and geolocation checks: Compare available location signals with billing information.
  • Proxy and VPN signals: Add relevant network risk information through supported checks and integrations.
  • Repeated IP activity: Identify multiple orders using different delivery details from the same IP address.
  • International orders: Apply the rules you choose for international orders and selected countries.
  • Suspicious email domains: Flag selected domains or add optional automated domain checks.

Anti-Fraud rule settings showing configurable risk weights

Increase the weight of useful signals, reduce the influence of weaker ones, or disable rules that do not apply to your customers. Some checks need a connected external service.

Stop high-risk checkouts before payment

Enable the pre-payment fraud check to assess applicable checkouts before the payment transaction proceeds. When the calculated risk reaches your configured high-risk threshold, Anti-Fraud can stop checkout and display your chosen message.

  • Assess risk before payment on supported checkout paths
  • Choose the high-risk threshold used to stop checkout
  • Customize the message shown when checkout is blocked
  • Help reduce clearly high-risk attempts reaching your payment provider

Anti-Fraud core protection settings including pre-payment fraud checks

Test your checkout and payment methods after enabling restrictive controls. Aggressive thresholds can block legitimate customers. Start with moderate settings, review order results, and adjust individual rules before increasing restrictions.

Understand why an order was flagged

A risk score is more useful when you can see what contributed to it. Review Anti-Fraud information directly on the WooCommerce order screen.

  • See the overall risk score and risk level
  • Review the rules that contributed to the score
  • Understand why individual rules matched
  • Inspect relevant customer, order, IP, phone, and location information used by supported checks
  • Use available actions to add suspicious details to the block list

WooCommerce order review showing Anti-Fraud risk information and purchased products

Scan risk across your order list

Spot low, medium, and high-risk orders while reviewing daily transactions, without opening every order individually.

WooCommerce order list displaying different Anti-Fraud risk levels

Keep trusted customers moving

Create targeted exceptions for customers and order sources you already trust. Allow-list entries can exclude supported identifiers from applicable fraud checks or automated actions.

Use information such as email addresses, IP addresses, phone numbers, user roles, payment methods, names, locations, and selected REST API keys.

Anti-Fraud allow-list settings for trusted customers and order sources

Keep exceptions narrow. Allowing an entire payment method, role, or location can bypass useful checks for more customers than intended.

Block known high-risk customer details

Use information from previous suspicious activity to help prevent repeat abuse. The block list supports customer and checkout identifiers including:

  • Email addresses and IP addresses
  • Phone numbers
  • Countries and customer names
  • Address keywords
  • Cities, states or regions, and postal codes

You can also enable automatic additions of email addresses and IP addresses associated with high-risk orders.

Anti-Fraud block-list settings for customer and checkout identifiers

Add MaxMind minFraud for deeper risk intelligence

MaxMind is optional. Anti-Fraud includes built-in WooCommerce rules and risk scoring. Connect MaxMind minFraud when you want additional transaction intelligence.

Choose a supported service level and configure its risk threshold and rule weight. The result can contribute to your overall Anti-Fraud assessment alongside the other rules you enable.

Anti-Fraud MaxMind minFraud Score configuration settings

Add advanced IP signals with supported MaxMind plans

Supported Insights or Factors services can provide additional information to help you review suspicious transactions.

  • Anonymous VPN detection
  • Public proxy detection
  • Tor exit-node detection
  • Hosting and datacenter IP detection
  • Distance between IP location and the billing address

Anti-Fraud MaxMind advanced signal rules for network and location risk

Available signals depend on the MaxMind service level connected to your store. A separate account and service charges may apply.

Add identity verification for selected high-risk orders

Some orders need an additional check rather than an immediate rejection. The optional Trust Swiftly integration lets you request identity verification when a customer reaches your chosen risk threshold.

  • Choose a verification template from your Trust Swiftly account
  • Set the risk level that triggers verification
  • Configure when verification occurs
  • Reserve additional checks for the orders that need them

Anti-Fraud Trust Swiftly identity verification settings

Add AI-assisted context to order reviews

Anti-Fraud can optionally send supported order information to OpenAI and display an AI-generated risk note for administrators reviewing an order.

Connect your own API credentials and choose a supported model. Treat the result as additional context alongside your fraud rules and manual review, not as a guarantee or the sole reason to accept or reject an order.

Anti-Fraud optional AI fraud signal configuration

API usage, provider terms, and data handling are separate from your extension subscription. Review them before enabling the integration.

Add extra protection to PayPal and checkout

Use dedicated PayPal controls alongside your broader fraud rules when supported PayPal payment flows are being targeted by repeated attempts.

  • Set a rolling time window for PayPal payment attempts
  • Configure limits within that window and an additional hourly limit
  • Use applicable checkout protection alongside order and payment attempt controls
  • Optionally require PayPal account email verification
  • Hold downloads until required PayPal verification is completed

PayPal account verification and card testing protection serve different purposes. Account email verification applies to customers paying with a PayPal account, not guest card payments.

Anti-Fraud PayPal and Checkout CAPTCHA settings

Add Checkout CAPTCHA

Choose Cloudflare Turnstile or Google reCAPTCHA v2 Checkbox for supported checkout protection. Use human verification alongside attempt limits and fraud rules rather than relying on CAPTCHA alone.

The available protection depends on your checkout and payment configuration. Test your chosen payment methods and avoid adding duplicate CAPTCHA challenges through multiple extensions.

Extend protection across checkout and external services

Alongside Checkout CAPTCHA, PayPal protection, MaxMind, Trust Swiftly, and optional AI-assisted review, additional integrations can support specific fraud checks:

  • QuickEmailVerification: Add automated checks for suspicious or disposable email domains.
  • BigDataCloud: Add IP-to-region information for supported billing and geolocation comparison rules.
  • FraudLabs Pro: Add optional SMS verification for supported classic checkout workflows.
Optional integrations may require a separate account, API key, or paid service. Check the provider’s terms, data handling, and usage charges, and enable only the integrations that fit your store’s fraud risks and checkout workflow.

For setup guidance, supported configurations, and troubleshooting, visit the Anti-Fraud for WooCommerce documentation.


Frequently asked questions

Why did a fraudulent order receive a Safe rating?

Fraud scoring is based on available risk indicators and no automated system can identify every fraudulent transaction. We recommend combining scoring with custom rules, MaxMind and manual review for high-value orders.

Can Anti-Fraud conflict with other security plugins?

While Anti-Fraud is compatible with most WooCommerce extensions, some security, checkout or CAPTCHA plugins may require additional configuration. Our support team can help identify and resolve conflicts.

Will Anti-Fraud block legitimate customers?

Fraud rules that are configured too aggressively can increase false positives. Anti-Fraud provides configurable risk thresholds, allow lists, and manual review workflows to help you balance fraud protection with a smooth checkout experience.

Can I customize how Anti-Fraud handles suspicious orders?

Yes. OPMC Anti-Fraud gives you complete control over how your store responds to potential fraud. Create custom rules based on customer details, IP address, country, order value, products, payment method, and more. Depending on the risk, you can automatically approve, hold for review, cancel, or block orders to match your business's risk tolerance.

Does Anti-Fraud work alongside my payment gateway's fraud protection?

Absolutely. OPMC Anti-Fraud is designed to complement—not replace—the fraud detection provided by payment gateways such as PayPal Payments and Stripe. By combining gateway protections with customizable WooCommerce fraud rules, AI-assisted analysis, and MaxMind integration, you create multiple layers of defence against evolving fraud tactics.

How long does it take to configure Anti-Fraud?

Most merchants can have Anti-Fraud protecting their store in just a few minutes. The plugin includes sensible default settings, allowing you to start with basic protection immediately. As your business grows, you can fine-tune advanced rules, integrations, and automation to match your specific fraud prevention strategy.

Will Anti-Fraud slow down my WooCommerce store?

Anti-Fraud is designed to minimize checkout overhead and support stores of different sizes. Recent releases also reduce memory usage in scheduled Anti-Fraud processing on larger stores. Performance can vary depending on order volume, enabled integrations and hosting resources.

What support is available if I need help?

Our support team works directly with the developers who build the plugin, ensuring complex technical questions and bug reports are resolved as quickly as possible.

Does OPMC Anti-Fraud protect my website from hackers, malware, or unauthorized access?

No. OPMC Anti-Fraud is designed to protect your checkout and payment process by identifying suspicious orders, preventing card testing attacks, detecting high-risk transactions, and helping reduce fraudulent purchases.

If you're looking to protect your WordPress website and WooCommerce store from unauthorized access, malware, VPN and proxy users, country-based threats, or to secure downloadable products and sensitive areas of your site, we recommend Security for WooCommerce.

Many merchants use both plugins together—Anti-Fraud to protect against payment fraud and Security for WooCommerce to strengthen the overall security of their website. Together, they provide comprehensive protection for both your store and your customers.

Extension information

  • PHP version required: 7.4
  • Tested with WordPress: 7.1
  • Tested with WooCommerce: 11.1.0
  • Requires at least WordPress: 6.6
  • Requires at least WooCommerce: 2.6

Countries

  • Worldwide

Customer reviews

Average rating 3.7

69 reviews from verified users

5 stars, 51% of reviews
4 stars, 10% of reviews
3 stars, 10% of reviews
2 stars, 12% of reviews
1 star, 17% of reviews
  • Rated 4 out of 5
    Holly NelsonUnited States (US)Sep 18, 2026
    It's very important to understand what a plugin like this can and cannot do, so expectations are set correctly. For us, it added an automatic layer of security across a number of typical vulnerabilities.
  • Rated 3 out of 5
    MattUnited States (US)Sep 17, 2026
    This product is good at blocking stolen credit card hacks. But unfortunately, it also interferes with real customer attempts to buy product. The setup is not straight forward. If you are a developer, maybe it does. But I deactivated it so I don't lose business. So that is $150 down the toilet.
  • Rated 1 out of 5
    leedstoneUnited States (US)Aug 24, 2026
    Buggy vibe coded mess with broken UX/UI. I would not reccomend, we've had nothing but problems. Incompatible with the High Preformance Order tables update, bogs down when dealing with high order volumes. Maybe hire a developer or two instead transforming your plugin into AI slop.
  • Rated 3 out of 5
    SkinnerUnited States (US)Aug 1, 2026
    Lost Settings, Poor Customer Service, Missing Features I've used this for several years and it wasn't great in the beginning. Too many bugs, a lack of features, and poor support. Some of this has changed. The support has become more timely, friendlier and more focused on resolving problems. The features are better, but there's a lot of room for improvement. There's too much overlap in the settings, causing false positives. Some features cannot be used because they block nearly all orders.
  • Rated 5 out of 5
    Erich BoileauUnited States (US)Jul 29, 2026
    Solid plugin — well maintained with responsive customers support!

Related Products

Price $279 annually
Rated 3.6 out of 5 stars
Price $29 annually
Rated 3.7 out of 5 stars
Price $119 annually
Rated 3.5 out of 5 stars
Price $109 annually
Rated 4.6 out of 5 stars
Price $79 annually
Rated 4.2 out of 5 stars
Price $49 annually
Rated 3.9 out of 5 stars
Price $79 annually
Rated 4 out of 5 stars
Price $49 annually
Rated 3.6 out of 5 stars
Price $109 annually
Rated 3.7 out of 5 stars
Use of your personal data
We and our partners process your personal data (such as browsing data, IP Addresses, cookie information, and other unique identifiers) based on your consent and/or our legitimate interest to optimize our website, marketing activities, and your user experience.