Descrição
IronPhantom Antifraud brings next-generation AI fraud detection to WooCommerce.
Every online store has a story — some end in growth, others in chargebacks.
IronPhantom changes that story.
Powered by MGFirewallAI, it analyzes every order and login in real time — detecting risky behaviors, stolen credentials, compromised emails, and suspicious IPs before fraud happens.
Each merchant receives a personal dashboard connected to MGFirewall, where transactions, alerts, and live risk scores are displayed in real time.
Requires an API key (free to generate) — every merchant has their own secure key linked to their dashboard for full visibility and control.
IronPhantom works independently, is fully GDPR-compliant, and does not modify WooCommerce or Core files.
Protect your store, your customers, and your reputation — with AI-powered defense that never sleeps.
Key Features
- AI-Powered Fraud Detection – analyzes every order and login in real time using the MGFirewallAI engine.
- Opt-In Privacy Mode – no data is sent unless you explicitly enable fraud checks in the plugin settings.
- Free API Key Integration – each merchant has a personal key linked to their MGFirewall dashboard for live risk insights.
- Real-Time Protection – instant fraud scoring during checkout and login events to stop fraud before it happens.
- GDPR-Compliant Logging – no sensitive or personal data (PII) is stored locally; all signals are pseudonymized.
- Clean Uninstall – safely removes all plugin options and meta keys on deletion.
- WooCommerce HPOS Ready – fully compatible with WooCommerce’s High-Performance Order Storage.
Easy install (recommended)
- In your WordPress admin, go to Plugins Add New.
- In the search box, type IronPhantom Antifraud.
- Click Install Now, then Activate (WooCommerce must be active).
Manual install (ZIP upload)
- Download the plugin ZIP.
- Go to Plugins Add New Upload Plugin, choose the ZIP and click Install Now.
- Click Activate (WooCommerce must be active).
Setup (first-time configuration)
- Go to WooCommerce Settings General.
- Scroll to the IronPhantom Antifraud section.
- Tick Enable data sending (consent) to allow fraud checks.
- Paste your IronPhantom API Key in the field IronPhantom API Key.
- Don’t have a key yet? Request your FREE key by emailing apikey@redflagai.tech.
- Each merchant receives a personal key linked to their MGFirewall dashboard.
- (Optional) Enable Diagnostic logs while testing.
- Place a test order or log in to see the real-time antifraud checks in action.
Privacy
IronPhantom Antifraud connects your WooCommerce store to the MGFirewallAI SaaS platform to analyze potential fraud signals and protect your business from chargebacks and account abuse.
Opt-in only.
No data is ever sent automatically — the plugin works only after you enable the consent option in your WooCommerce settings.
What data is sent (only when enabled):
– Customer billing email (order only)
– Public IP address of the buyer
– Order ID and order total
– Timestamp (server local time)
– Login flow: current URL right after login
– Technical metadata required for fraud analysis (browser, device, user agent)
– Optional “fingerprint” placeholder (for future device profiling)
Never sent:
Passwords, payment card numbers, or sensitive personal data.
Endpoint used for fraud analysis:
POST https://redflagai.tech/api/predict
Headers used:
– Content-Type: application/json
– x-api-key: <your merchant key> (required for authentication)
Stored locally by the plugin:
– On the order: ironphantom_tx_id, ironphantom_risk_level, ironphantom_motivi, ironphantom_sent
– On the user (temporary flag after login): ironphantom_appena_loggato
Uninstall:
Removing the plugin deletes all its settings and the above meta keys from the database.
More information:
– Privacy Policy: https://redflagai.tech/privacy-policy
– Terms of Use: https://redflagai.tech/terms
– Contact: security@redflagai.tech
You can stop all transfers at any time by disabling the consent checkbox in the plugin settings.
Troubleshooting
In the event that IronPhantom is unable to establish a connection with the MGFirewallAI security network, please follow the diagnostic procedure below before contacting support.
-
Navigate to WooCommerce Settings IronPhantom Anti-Fraud and enable the option “Enable Diagnostic Logs”.
This will activate detailed logging for real-time connection and verification events. -
Perform a test order on your store (for example, using a low-value product or sandbox checkout) to generate the diagnostic log.
This step is essential to capture the communication between your store and the MGFirewallAI endpoint. -
Go to WooCommerce Status Logs and select ironphantom-antifraud from the dropdown list.
Review the log entries to identify any connectivity or authentication issues. -
If you are unable to determine the cause, click Download Log and attach the file in your message to our Security Operations team at
📧 security@redflagai.tech
The Security Operations Team will analyze the diagnostic log and provide tailored guidance to restore connectivity.
In most cases, connection issues are related to one of the following:
– API key not yet activated or expired
– Firewall or hosting provider blocking outgoing requests
– Temporary server maintenance or plugin update in progress
For continuous protection and optimal system performance, keep diagnostic logging disabled during normal operations.
Perguntas frequentes
-
Does it block the checkout?
-
No — IronPhantom never blocks WooCommerce’s normal checkout or login flow.
It analyzes each order in real time and records the fraud risk result in the admin panel.
The merchant decides whether to hold, approve, or reject the order based on the AI analysis. -
How do I get my free API key?
-
Every merchant needs a unique API key to connect their store to the MGFirewallAI network.
API keys are completely free and linked to your personal merchant dashboard.
Request your key by emailing apikey@redflagai.tech.
(For plugin support, please use the WordPress.org support forum. For key requests or billing inquiries, use the email above.) -
What happens if the API is temporarily unreachable?
-
Your store continues to operate normally — IronPhantom never interrupts the checkout.
If the API is unreachable, the plugin logs a safe diagnostic note in the admin area (IronPhantom: Last HTTP response) for transparency. -
What information gets logged?
-
When Diagnostic Logs are enabled, IronPhantom records technical events such as response times or risk scores — always using masked or hashed identifiers (no visible emails or IPs).
For production sites, we recommend keeping logging off unless troubleshooting. -
How do I uninstall it completely?
-
Simply deactivate and delete the plugin from Plugins Installed Plugins.
All settings, options, and meta keys (such as risk data and temporary flags) are automatically removed during uninstall — leaving your database clean. -
Is IronPhantom GDPR compliant?
-
Yes. IronPhantom and MGFirewallAI are designed with data minimization and user consent at their core.
No personal information is collected or stored unless you explicitly enable consent in WooCommerce settings.
Avaliações
Contribuidores e programadores
“IronPhantom Antifraud” é software de código aberto. As seguintes pessoas contribuíram para este plugin:
ContribuidoresTraduza o “IronPhantom Antifraud” para o seu idioma.
Interessado no desenvolvimento?
Consulte o código, consulte o repositório SVN, ou subscreva o registo de alterações por RSS.
Registo de alterações
1.0.1
- First public release. Opt-in only; safe logging; HPOS compatibility; WP 6.8 / WC 10.1 tested.