ThreatMetrix Advanced

Overview

The ThreatMetrix (TMX) Advanced Service Offering (SO) is based on our existing TMX verification, but offers more in-depth and refined information from a user and their device. These new assertions are highly recommended for fraud detection and prevention. For more information about what attributes need to be supplied to this SO, please refer to our TMX documentation on the topic.

Assertions

Assertions in TMX are certain conditions that return a pass/fail. A pass means the condition was met, a fail means that TMX detected that the condition was not met. If an attribute required for detection is not configured for a service, the assertion will pass by default.

AssertionDescription
whitelist.localCheckDetectedAllows known trusted entities, reducing friction for legitimate users
blacklist.localCheckDetectedPrevents access for known bad actors, enhancing security
watchlist.localCheckDetectedFlags suspicious entities for closer inspection, improving threat detection
detect.browserAnomalyCheckDetects unusual browser behavior that may indicate bot or fraud activity
detect.attributeAnomalyIdentifies identity inconsistency
detect.entityReputationCheckHelps block access for known malicious actors based on past behavior
detect.emailBehaviorCheckWarns about potential fraudulent emails
detect.trustTagBehaviorDetects risky devices and bot-like behavior
detect.proxyTorVPNDetects use of anonymizing services
detect.proxyGEO/TRUEGEOMismatchDetects geo-location inconsistencies
detect.sessionCloakingUser attempted to hide device or session details
detect.malwareBlocks access from malware-infected devices
test.entityVelocityCheckChecks for automated bot attacks or rapid fraud attempts
test.distanceTraveledCheckLooks to see if the device's location rapidly changes
test.trustedPersona1MTH, test.trustedPersona2MTH, test.trustedPersona3MTHChecks if user has been trusted in the past 1, 2, or 3 months
detect.personaAnomalies3MTHIdentifies potential fraud through excessive persona changes
detect.ATOCheckPrevents account takeovers
detect.botIdentifies bots
detect.jailbreakORRootPrevents jailbroken or rooted devices from authenticating
detect.entityINGlobalBlocklistBlocks access for globally blacklisted entities
detect.entityINGlobalWhitelistReduces friction for globally trusted entities
detect.aggregatorDetects potential aggregator attacks
detect.proxyTorVPNBlocks access through TOR networks