The Blocklist is a persistent list of IPs, emails, and email domains that are blocked from placing orders. Blocked entries are checked before payment is processed — the customer’s card is never charged.
Adding entries
Use the form at the top of the Blocklist tab to add a new entry:
- Select the Type: IP Address, Email, or Email Domain
- Enter the Value (e.g., 1.2.3.4, [email protected], or example.com)
- Optionally enter a Reason (e.g., “Repeat fraud attempt”). Reasons are searchable in the blocklist
- Set an Expiration: Permanent, 1 day, 7 days, 30 days, 90 days, or a custom date
- Click Add to Blocklist
Blocking an email domain blocks all email addresses at that domain. For example, blocking “fakeinbox.com” blocks any order from an @fakeinbox.com address.
Quick-blocking from orders
When viewing a flagged order in WooCommerce, the Fraud Guard meta box on the order screen includes quick-block links:
- Block IP — Adds the order IP address to the blocklist
- Block Email — Adds the order email address to the blocklist
If the IP or email is already blocklisted, the link shows “already blocked” instead.
Auto-blocking
Enable auto-blocking in Settings to automatically add flagged entries to the blocklist. Configure what gets blocked (IP, email, or both) and when auto-blocking triggers (any flag, hold or higher, or cancel only).
Searching and filtering
Search the blocklist by value or reason. Filter by:
- Type — IP, Email, or Domain
- Source — Manual (added by a user) or Auto (added by auto-block rules)
Blocklist table columns
- Type — Badge showing IP, Email, or Domain
- Value — The blocked IP, email, or domain
- Reason — Why the entry was added
- Source — Manual or Auto
- Source Order — If auto-blocked, the order that triggered it (linked)
- Expires — Expiration date or “Permanent”
- Created — When the entry was added
Removing entries
Click Remove next to any entry to delete it after confirmation. Use the checkboxes to select multiple entries and bulk remove them.
Expiration
Entries with an expiration date are automatically cleaned up daily. Expired entries stop blocking immediately and are removed in the next cleanup cycle. Permanent entries never expire.