Blacklist Manager Premium / Advanced Protection August 3, 2026

Set Up Device Identity and Device Cleanup

Set up Blacklist Manager device identity, review linked emails and phones, inspect device details, and clean old device records.

Applies to Core 2.2.11 / Premium 2.6.4+ Stable Verified August 3, 2026

Device Identity helps Blacklist Manager recognize the same customer device across orders, even when the customer changes their email, phone, name, or address.

Why Device Identity Matters

Fraudulent customers often reuse the same browser or device while changing visible customer details. Device Identity gives the plugin another signal to detect this pattern.

How the Device ID Works

When enabled, the plugin collects a device payload during checkout and stores a device ID with the order. The device ID is not meant for customers to read. It is an internal identifier used to link behavior across orders.

The plugin can also store supporting signals such as browser ID, session ID, fingerprint hash, confidence, payload validity, and validation reasons. These are used to decide whether the device signal is reliable.

A device record can be linked to multiple identities over time:

  • Email addresses.
  • Phone numbers.
  • IP addresses.
  • User accounts.
  • Orders.

If one device becomes linked to too many different identities, that can be a strong fraud signal. Use Device identity spread rules to detect this behavior automatically.

Device Details on an Order

On the edit order page, a valid device can show a Device details link. Open it to see first seen, last seen, order count, user count, email count, phone count, IP count, last order, last IP, confidence, payload validity, blocked status, and validation reasons.

Device Cleanup

Device data can grow over time. Use device cleanup settings to remove old or low-value device records.

Typical cleanup settings include:

  • How many days to retain device records.
  • How long to keep order links.
  • How many records to process per cleanup batch.
  1. Enable Device Identity.
  2. Place a test order and confirm the order has a device record.
  3. Enable device-related automation rules only after the base capture is working.
  4. Use Device vs Email/Phone and Device vs Address first.
  5. Add Device identity spread after you understand normal customer behavior on your store.
  6. Enable cleanup so old device data does not grow forever.

What Not to Do

Do not block every device mismatch automatically at first. Start by adding suspicious devices to Suspects or treating the result as score. Move to automatic block only after you are confident the rule is accurate for your store.

Related Guides

Continue from Blacklist Manager Premium documentation to the complete product workflow.

Evaluate product scope on the money page, use the pillar Guide for decisions and trade-offs, and return here for exact configuration.

Need support?

Still stuck?

Open a support request and include this article title, your plugin version, and what you already tried.

Open Support