Checkout fraud

See the network behind every checkout attempt

Card testing shows up as many small checkout attempts and payment failures from networks real shoppers rarely use. FindIP Shield records checkout views, payment attempts and payment failures with the network signals behind each one, so you can see the pattern before your payment processor does.

Free Preview · 10,000 events per site per day · No credit card · Terms apply

Hosting / datacenter Proxy Tor Malicious IP Payment failures by network IP rotation in session
The problem

Your processor sees the card. It does not see the connection.

A card-testing run is dozens of small checkouts in minutes, most of them failing, from hosting providers and proxy networks. Each one looks like a single shopper to your checkout page. The chargebacks and the processor warnings arrive later.

Fraud tools that score the transaction need the order. By then the attempt has already consumed a payment authorisation. Network context is available earlier: at checkout_view, at payment_attempt, at payment_failed.

Shield puts that context on the checkout flow itself, without ever seeing card data, cart contents or customer fields.

What Shield shows you

The evidence, then the response you choose

Checkout and payment events with network reasons

checkout_view, payment_attempt and payment_failed events carry the risk score and reasons such as datacenter, proxy or malicious-IP. For WooCommerce, cart, checkout, payment-failure and order-received context comes from the plugin.

Failures clustered by network

Repeated payment failures from the same hosting range or proxy pool stand out in the session view, where a single declined card would not.

Friction on the checkout form, when you choose

On a snippet or WordPress install, give the checkout form a response: slow down, a Turnstile check, or stop for the highest scores. Verify the session server-side before capturing payment.

Setup

Install on WooCommerce in three steps

For WooCommerce stores, the WordPress plugin adds cart, checkout, payment-failure and order-received context automatically. Custom checkouts use the snippet.

Install the plugin

In WordPress go to Plugins, Add New, search for FindIP Shield and activate it. The plugin loads nothing until a site key is saved.

Paste your site key

Create a Shield site for your domain at findip.net and paste the public site key into the plugin settings. Choose strict, balanced or advanced privacy mode and the consent behaviour you need.

Open the dashboard

Visits, sessions and form activity start arriving. With WooCommerce active you also see cart, checkout, payment-failure and order-received context.

Prefer another route? On Shopify? The FindIP Shield app reports storefront visits and sessions from the App Store, with no theme edits.

Boundaries

What a risk score is, and what it is not

An assessment, not proof. A VPN, a hosting network or a changing IP is common for privacy-conscious and corporate users too. Shield explains the reasons so you can decide; it does not pass judgement on a person.
Friction, not a security boundary. Anything decided in the browser can be bypassed by someone who controls it. For decisions that matter, verify the session from your server with your secret key.
Unknown is never safe. Where no intelligence was available the status is unknown. Shield fails open: if a decision does not arrive, the form submits as normal.
Questions

Frequently asked

Never. Card data, payment fields, cart contents, prices, product identifiers and customer fields are not sent. Shield sees the event, the network it came from, and limited session context depending on the privacy mode.

No. Shield does not talk to your payment processor. On a form you configure it can slow down, challenge or stop the submit in the browser; the authoritative decision is yours, made on your server with the verify endpoint before capture.

On Shopify the app runs as a Web Pixel inside the Shopify sandbox. It reports consented storefront visits and sessions with network signals; it cannot see or act on the checkout form. See the Shopify page for exactly what it covers.

It is a network-signal layer, not a transaction-scoring product. It tells you where a checkout came from and why that is unusual. Pair it with your processor's fraud tools and your own order context for decisions.

Start by watching one real flow.

Create a free Shield site, install it, and look at the first real event before you decide on any response.

Try Shield on my store

Free Preview · Informational risk signals · You control enforcement