Base URL and authentication
Defraudo API base URL, response envelope, secret and publishable API keys, sandbox and live projects, and key scopes.
Events
Send payment, login, registration, deposit and payout events to the Defraudo API: fields, idempotency, sync and async scoring, and the result.
Device fingerprint
Add the Defraudo browser fingerprint collector, get a server-issued fp_id and link devices to accounts in scored events.
Errors and rate limits
Defraudo API error codes, HTTP status codes, retry guidance and rate limits.
Webhooks
Receive Defraudo decision and case webhooks, retries and deduplication, and verify the HMAC-SHA256 signature in Node.js, Python or PHP.
PII and card data
How Defraudo handles PII and card data: no card numbers, hashed email and phone, masked link signals and GDPR erasure.