A self-hosted, rule-based fraud screening engine for Magento 2 / Adobe Commerce that scores orders on IP geolocation, AVS, velocity and blacklist signals — then auto-holds the risky ones before they capture payment. Built, installed and supported by ECOSIRE. Built to order by ECOSIRE for Magento 2 / Adobe Commerce (build-to-order) — indicative price from $199.00 USD; request a quote for a scoped proposal.
示意预览A self-hosted, rule-based fraud screening engine for Magento 2 / Adobe Commerce that scores orders on IP
geolocation, AVS, velocity and blacklist signals — then auto-holds the risky ones before they capture payment. Built, installed and supported by ECOSIRE.
无需自行搭建——由 ECOSIRE 构建、安装并提供支持的可用应用。
以一次性构建价格开始。我们在启动时与您共同确定范围。
ECOSIRE 在您的 Magento 2 上构建、配置并安装。
约 2–4 周内上线,并提供上线后的支持期。
Advanced Fraud Prevention & Chargeback Defender is a custom Magento 2 module that gives SMB merchants their own fraud-screening layer — no per-transaction SaaS fees, no shipping your order data to a third party. It installs under app/code/Ecosire/FraudDefender as a standard composer-installable module and hooks into the native checkout and order lifecycle through observers on sales_order_place_after and a plugin (interceptor) on the payment authorization flow, so screening runs before the gateway captures funds.
The engine evaluates each order against a configurable rule set: IP geolocation & proxy/VPN detection, AVS and email/phone/address validation, velocity rules (orders per email, per IP, per card BIN, per shipping address within a time window), and blacklist/whitelist lists. Each rule contributes to a weighted risk score; orders crossing your threshold are automatically moved to Hold (order->hold()) and flagged for manual review in the admin grid, instead of silently fulfilling.
Everything is honest build-to-order. ECOSIRE builds it against your Magento version (Open Source or Adobe Commerce), wires it to whatever geo/IP data source you choose, and installs it on your store. You get a versioned module, full source, admin ACL-gated configuration under Stores → Configuration, a cron job for list maintenance and score recalculation, and service contracts plus optional REST/GraphQL endpoints so you can read risk scores from a headless front end or sync blacklists from another system.
This is not a one-click Adobe Commerce Marketplace download. It is a scoped engagement: we confirm requirements, build, install on staging, validate against real order patterns, then deploy to production — with a clear lead time and post-launch support.
Runs Magento Open Source on their own VPS or cloud host, has seen a spike in chargebacks, and wants automated fraud control they own outright — without paying a percentage of every transaction to a fraud-scoring SaaS.
Manually reviews suspicious orders today and wants them auto-held and surfaced in one admin grid with a clear reason, so the team stops chasing fraud after the gateway has already captured payment.
Runs a PWA or custom front end and needs fraud risk exposed via GraphQL/REST and rule data importable from existing systems, while keeping all customer and order data inside their own Magento install for compliance.
| 标准 | 伊科西尔 | 定制建造 | 竞争对手 | Magento 2 原生 |
|---|---|---|---|---|
| Runs fully self-hosted — order data never leaves your Magento install | 包含 | 包含 | 部分支持 | 包含 |
| Rule-based scoring (IP geo, AVS, velocity, blacklist) out of the engagement | 包含 | 部分支持 | 包含 | 不包括在内 |
| Auto-hold suspicious orders before payment capture | 包含 | 部分支持 | 包含 | 不包括在内 |
| Tuned to your specific order patterns during build | 包含 | 包含 | 不包括在内 | 不包括在内 |
| No per-transaction or percentage-of-revenue fees | 包含 | 包含 | 不包括在内 | 包含 |
| Instant availability / one-click install with no build wait | 不包括在内 | 不包括在内 | 包含 | 包含 |
| Full unobfuscated source you own and can maintain | 包含 | 包含 | 部分支持 | 包含 |
| Machine-learning / global fraud network signals | 不包括在内 | 不包括在内 | 部分支持 | 部分支持 |
Typical lead time is about 2 to 4 weeks from a confirmed scope, depending on how many rules and integrations you need and your Magento version. After a short requirements call we build the module, install it on your staging environment for you to validate against real order patterns, then schedule the production cutover. We give you a firm date once scope is locked — there is no instant download because the module is compiled and tuned against your specific store.
Yes. Every build includes a defined post-deployment support window for bug fixes, and a documented upgrade path for future Magento minor and patch releases. We can also agree an ongoing maintenance arrangement to keep the module compatible across major Magento/Adobe Commerce upgrades and to add new rules as your fraud patterns evolve. Because you receive full, unobfuscated source, your own developers can also maintain it.
Yes. The module is built against standard Magento 2 framework APIs — service contracts, plugins, observers and the admin configuration system — so it runs on both Magento Open Source and Adobe Commerce. We target your exact version line and PHP version at build time and validate on your staging instance. On Adobe Commerce we coexist with its native Signifyd integration rather than conflict with it; you can run this as your primary screen or as a complementary self-hosted rule layer.
Yes. We hook into the order placement and payment authorization flow using an observer on sales_order_place_after and a plugin on the authorization step, so the risk score is calculated and the auto-hold decision is made before funds are captured. Held orders move to Magento's Hold status and appear in the review grid; nothing is auto-cancelled, so your team always has the final call to release or void.
You choose the data source. We can integrate a local MaxMind GeoIP2 database (no external calls, fully self-hosted) or a geolocation/proxy-detection API if you prefer live lookups. Order and customer data stays inside your Magento database — the module does not ship your orders to a third-party scoring service. If you opt for a live IP-reputation API, only the IP address is sent to that provider; everything else stays on your infrastructure.
A self-hosted, rule-based fraud screening engine for Magento 2 / Adobe Commerce that scores orders on IP geolocation, AVS, velocity and blacklist signals — then auto-holds the risky ones before they capture payment. Built, installed and supported by ECOSIRE.