[WordPress] 外掛分享: IronPhantom Antifraud

前言介紹

  • 這款 WordPress 外掛「IronPhantom Antifraud」是 2025-09-28 上架。
  • 目前尚無安裝啟用數,是個很新的外掛。如有要安裝使用,建議多測試確保功能沒問題!
  • 上一次更新是 2026-02-11,距離現在已有 15 天。
  • 外掛最低要求 WordPress 6.1 以上版本才可以安裝。
  • 外掛要求網站主機運作至少需要 PHP 版本 7.4 以上。
  • 有 2 人給過評分。
  • 還沒有人在論壇上發問,可能目前使用數不多,還沒有什麼大問題。

外掛協作開發者

izioh1979 |

外掛標籤

fraud | checkout | security | antifraud | woocommerce |

內容簡介

總結:IronPhantom Antifraud是一個外掛程式,將WooCommerce連接到IronPhantom / MGFirewallAI SaaS,用於分析風險信號並標記潛在的欺詐訂單和登錄。使用API金鑰運行,不修改WooCommerce/Core文件。提供即時反欺詐檢查,安全記錄,以及清潔的卸載功能。

問題與答案:
- 這個外掛程式的主要功能是什麼?
IronPhantom Antifraud連接WooCommerce到IronPhantom / MGFirewallAI SaaS,用於分析風險信號並標記潛在的欺詐訂單和登錄。

- 何時會傳送數據?
只有在WooCommerce設置中明確啟用選項時,才會傳送數據。

- 這個外掛程式存儲了哪些用戶數據?
在訂單上存儲的數據包括ironphantom_tx_id、ironphantom_risk_level、ironphantom_motivi和ironphantom_sent,在用戶端存儲的數據是ironphantom_appena_loggato(僅在登錄後運行一次)。

- 如何刪除此外掛程式?
刪除此外掛程式將刪除其選項和上述元數鍵。

- 如何停止數據轉移?
您可以在外掛程式設置中禁用同意選框來隨時停止所有數據轉移。

原文外掛簡介

IronPhantom Antifraud brings next-generation AI fraud detection to WooCommerce.
Every online store has a story — some end in growth, others in chargebacks.
IronPhantom changes that story.
Powered by MGFirewallAI, it analyzes every order and login in real time — detecting risky behaviors, stolen credentials, compromised emails, and suspicious IPs before fraud happens.
Each merchant receives a personal dashboard connected to MGFirewall, where transactions, alerts, and live risk scores are displayed in real time.
Requires an API key (free to generate) — every merchant has their own secure key linked to their dashboard for full visibility and control.
IronPhantom works independently, is fully GDPR-compliant, and does not modify WooCommerce or Core files.
Protect your store, your customers, and your reputation — with AI-powered defense that never sleeps.
Key Features

AI-Powered Fraud Detection – analyzes every order and login in real time using the MGFirewallAI engine.
Opt-In Privacy Mode – no data is sent unless you explicitly enable fraud checks in the plugin settings.
Free API Key Integration – each merchant has a personal key linked to their MGFirewall dashboard for live risk insights.
Real-Time Protection – instant fraud scoring during checkout and login events to stop fraud before it happens.
GDPR-Compliant Logging – no sensitive or personal data (PII) is stored locally; all signals are pseudonymized.
Clean Uninstall – safely removes all plugin options and meta keys on deletion.
WooCommerce HPOS Ready – fully compatible with WooCommerce’s High-Performance Order Storage.

Easy install (recommended)

In your WordPress admin, go to Plugins → Add New.
In the search box, type IronPhantom Antifraud.
Click Install Now, then Activate (WooCommerce must be active).

Manual install (ZIP upload)

Download the plugin ZIP.
Go to Plugins → Add New → Upload Plugin, choose the ZIP and click Install Now.
Click Activate (WooCommerce must be active).

Setup (first-time configuration)

Go to WooCommerce → Settings → General.
Scroll to the IronPhantom Antifraud section.
Tick Enable data sending (consent) to allow fraud checks.
Paste your IronPhantom API Key in the field IronPhantom API Key.

Don’t have a key yet? Request your FREE key by emailing [email protected].
Each merchant receives a personal key linked to their MGFirewall dashboard.

(Optional) Enable Diagnostic logs while testing.
Place a test order or log in to see the real-time antifraud checks in action.

Privacy
IronPhantom Antifraud connects your WooCommerce store to the MGFirewallAI SaaS platform to analyze potential fraud signals and protect your business from chargebacks and account abuse.
Opt-in only.
No data is ever sent automatically — the plugin works only after you enable the consent option in your WooCommerce settings.
What data is sent (only when enabled):
– Customer billing email (order only)
– Public IP address of the buyer
– Order ID and order total
– Timestamp (server local time)
– Login flow: current URL right after login
– Technical metadata required for fraud analysis (browser, device, user agent)
– Optional “fingerprint” placeholder (for future device profiling)
Never sent:
Passwords, payment card numbers, or sensitive personal data.
Endpoint used for fraud analysis:
POST https://redflagai.tech/api/predict
Headers used:
– Content-Type: application/json
– x-api-key: (required for authentication)
Stored locally by the plugin:
– On the order: ironphantom_tx_id, ironphantom_risk_level, ironphantom_motivi, ironphantom_sent
– On the user (temporary flag after login): ironphantom_appena_loggato
Uninstall:
Removing the plugin deletes all its settings and the above meta keys from the database.
More information:
– Privacy Policy: https://redflagai.tech/privacy-policy
– Terms of Use: https://redflagai.tech/terms
– Contact: [email protected]
You can stop all transfers at any time by disabling the consent checkbox in the plugin settings.
Troubleshooting
In the event that IronPhantom is unable to establish a connection with the MGFirewallAI security network, please follow the diagnostic procedure below before contacting support.

Navigate to WooCommerce → Settings → IronPhantom Anti-Fraud and enable the option “Enable Diagnostic Logs”.
This will activate detailed logging for real-time connection and verification events.

Perform a test order on your store (for example, using a low-value product or sandbox checkout) to generate the diagnostic log.
This step is essential to capture the communication between your store and the MGFirewallAI endpoint.

Go to WooCommerce → Status → Logs and select ironphantom-antifraud from the dropdown list.
Review the log entries to identify any connectivity or authentication issues.

If you are unable to determine the cause, click Download Log and attach the file in your message to our Security Operations team at
📧 [email protected]

The Security Operations Team will analyze the diagnostic log and provide tailored guidance to restore connectivity.
In most cases, connection issues are related to one of the following:
– API key not yet activated or expired
– Firewall or hosting provider blocking outgoing requests
– Temporary server maintenance or plugin update in progress
For continuous protection and optimal system performance, keep diagnostic logging disabled during normal operations.

各版本下載點

  • 方法一:點下方版本號的連結下載 ZIP 檔案後,登入網站後台左側選單「外掛」的「安裝外掛」,然後選擇上方的「上傳外掛」,把下載回去的 ZIP 外掛打包檔案上傳上去安裝與啟用。
  • 方法二:透過「安裝外掛」的畫面右方搜尋功能,搜尋外掛名稱「IronPhantom Antifraud」來進行安裝。

(建議使用方法二,確保安裝的版本符合當前運作的 WordPress 環境。


1.0.0 | 1.0.6 | 1.0.7 | 1.0.8 | 1.0.9 | trunk | 1.0.10 | 1.0.11 | 1.0.12 |

延伸相關外掛(你可能也想知道)

  • Wordfence Security – Firewall, Malware Scan, and Login Security 》fective way to manage multiple WordPress sites with Wordfence installed from a single location., Monitor security status across all your sites from...。
  • Hostinger Tools 》- Hostinger Onboarding WordPress Plugin 简化和加快了WordPress网站的设置过程。, - 提供了简便和快速的方式来建立WordPress网站。。
  • Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) 》le Plugins include Complianz GDPR, Disable Updates Manager, and Really Simple CAPTCHA., , Really Simple SSL是一個外掛,自動配置你的網站最大程度上使...。
  • Jetpack – WP Security, Backup, Speed, & Growth 》search engines, and grow your traffic with Jetpack. It’s the ultimate toolkit for WordPress professionals and beginners alike., , Customize and des...。
  • Limit Login Attempts Reloaded – Login Security, Brute Force Protection, Firewall 》Limit Login Attempts Reloaded 是一款WordPress外掛,可阻止暴力破解攻擊並透過限制常規登錄、XMLRPC、Woocommerce和自訂登錄頁面的登錄嘗試次數來優化您的...。
  • ManageWP Worker 》, Want to clone or migrate your WordPress website to a new host or domain? No problem! With ManageWP, you can easily clone or migrate your website ...。
  • Security Optimizer – The All-In-One Protection Plugin 》透過精心挑選且易於配置的功能,SiteGround Security 外掛提供了您所需的一切來保護您的網站並預防多種威脅,例如暴力破解攻擊、登錄錯誤、資料外洩等等。, ...。
  • Safe SVG 》Safe SVG 可以讓你安心地在 WordPress 中上傳 SVG 檔案!, 它能夠讓你允許上傳 SVG 檔案的同時,確保它們已經經過消毒以防止 SVG/XML 弱點影響你的網站。此外...。
  • Loginizer 》Loginizer 是一個 WordPress 外掛,可幫助您對抗暴力攻擊,當 IP 地址達到最大重試次數時,該外掛會阻止其登錄。您可以使用 Loginizer 將 IP 地址列入黑名單...。
  • All-In-One Security (AIOS) – Security and Firewall 》vated to your website, All-in-One Security's WAF will detect and block hacking attempts, adding an extra layer of security to your WordPress site. ...。
  • User Role Editor 》「User Role Editor」WordPress 外掛讓您輕鬆更改使用者角色和權限。, 只需打開您希望新增到所選角色的能力核取方塊,然後按「更新」按鈕以保存您的更改。完...。
  • MainWP Child – Securely Connects to the MainWP Dashboard to Manage Multiple Sites 》這是一個針對「MainWP Dashboard」的子外掛程式,可將您的 WordPress 網站連接至 MainWP Dashboard。, MainWP是一個完整的 WordPress 管理解決方案,是自助...。
  • Solid Security – Password, Two Factor Authentication, and Brute Force Protection 》ing iThemes Security Plugin can benefit you:, 保護您的 WordPress 網站的最佳外掛程式, 平均每天有 30,000 個網站遭受駭客攻擊,在網路上每 39 秒就會有一...。
  • Sucuri Security – Auditing, Malware Scanner and Security Hardening 》Sucuri Inc. 是全球公認的網站安全權威,專門為 WordPress 安全提供專業知識。, Sucuri Security WordPress 擴充套件對所有 WordPress 使用者免費提供。它是...。
  • SiteGuard WP Plugin 》版本: 1.6.7, , 您可以在日文網頁和英文網頁上找到文件、常見問題和更詳細的資訊。 , 安裝SiteGuard WP Plugin後,WordPress安全性會得到提高。, 本外掛是一...。

文章
Filter
Apply Filters
Mastodon