# ShieldLabs > Fraud detection and prevention docs for ShieldLabs: users, devices, visitors and IPs, the Risk Score, risk signals, High-Risk Events, webhooks and the Server API. - [Fraud detection and prevention docs](https://docs.shieldlabs.ai/index.md): Detect risky users, devices and IPs under any masking, and stop multi-accounting, account sharing and takeovers. - [How ShieldLabs works](https://docs.shieldlabs.ai/overview.md): How ShieldLabs finds risky users, devices and IPs and stops multi-accounting, account sharing and takeovers. - [Quick Start](https://docs.shieldlabs.ai/quickstart.md): Install a browser SDK, identify a visitor and retrieve the result with a server SDK. - [Build with AI](https://docs.shieldlabs.ai/build-with-ai.md): Use AI coding assistants to integrate ShieldLabs faster. - [Where to integrate](https://docs.shieldlabs.ai/setup/planning.md): Where to add ShieldLabs checks in your product, and what to store to act on the result. - [JavaScript](https://docs.shieldlabs.ai/sdks/javascript.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [React](https://docs.shieldlabs.ai/sdks/react.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [Next.js](https://docs.shieldlabs.ai/sdks/nextjs.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [Vue](https://docs.shieldlabs.ai/sdks/vue.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [Angular](https://docs.shieldlabs.ai/sdks/angular.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [Svelte](https://docs.shieldlabs.ai/sdks/svelte.md): Identify a visitor, send a Request ID with your application action and verify the result on your server. - [Node.js](https://docs.shieldlabs.ai/sdks/node.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [PHP](https://docs.shieldlabs.ai/sdks/php.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [C#/.NET](https://docs.shieldlabs.ai/sdks/dotnet.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [Go](https://docs.shieldlabs.ai/sdks/go.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [Java](https://docs.shieldlabs.ai/sdks/java.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [Python](https://docs.shieldlabs.ai/sdks/python.md): Read and evaluate a stored identification, then verify raw-body webhook signatures in your backend. - [Users, devices, visitors and IPs](https://docs.shieldlabs.ai/concepts/entities.md): How ShieldLabs links every identification to a user, a device, a visitor and IP addresses, each with its own risk. - [Accounts and identifications](https://docs.shieldlabs.ai/concepts/accounts-and-identifications.md): How the account behind many identifications and the identification in front of you work together in each decision. - [Identifiers](https://docs.shieldlabs.ai/features/identification.md): Which identifiers each identification carries and how they tie to your users, devices, visitors and IP addresses. - [Identification and risk signal detection accuracy](https://docs.shieldlabs.ai/features/accuracy.md): How ShieldLabs measures its 99.9% identification accuracy and 99.9% risk signal detection accuracy. - [High-Risk Events](https://docs.shieldlabs.ai/features/high-risk-events.md): How ShieldLabs detects multi-accounting, account sharing, impossible travel and account takeover on your users. - [Risk Scoring](https://docs.shieldlabs.ai/features/risk-scoring.md): How ShieldLabs scores each identification from 0 to 100 and how users, devices, visitors and IP addresses take a risk band. - [Risk Signals](https://docs.shieldlabs.ai/features/risk-signals.md): Which risk signals ShieldLabs detects, from masking to bots and automation, and what each one means. - [Acting on results](https://docs.shieldlabs.ai/guides/acting-on-risk-score.md): How to choose an action for each user and each identification from the Risk Score, its risk signals and High-Risk Events. - [Traffic Analytics](https://docs.shieldlabs.ai/features/traffic-analytics.md): How ShieldLabs scores traffic quality by channel, referrer and campaign, and which sources bring risky users. - [Overview](https://docs.shieldlabs.ai/dashboard/overview.md): See how clean your traffic is, how many of your users are risky or have a High-Risk Event, and where risk comes from. - [Analytics](https://docs.shieldlabs.ai/dashboard/analytics.md): Find the users, devices, visitors and IP addresses behind your risky traffic, filter them and export the identifications. - [User, device, visitor and IP cards](https://docs.shieldlabs.ai/dashboard/entity-card.md): Review one user, device, visitor or IP address: its band, its High-Risk Events, what it is linked to and the identifications behind it. - [Identification card](https://docs.shieldlabs.ai/dashboard/identification-card.md): See why one identification scored what it did and which user, device, visitor and IP address it belongs to. - [AI Copilot](https://docs.shieldlabs.ai/dashboard/ai-copilot.md): Ask about your traffic in plain language and get answers from your own numbers, with evidence you can open. - [Integration](https://docs.shieldlabs.ai/dashboard/integration.md): Install the snippet, manage your domains, keys and webhook endpoints, and check that each site is reporting. - [Usage and plan](https://docs.shieldlabs.ai/dashboard/usage.md): Track the identifications you used this billing cycle, see when usage resets, change plan and manage billing. - [Setup](https://docs.shieldlabs.ai/setup.md): Everything you wire up to identify your users and act on their risk, in the order you do it. - [Install the JS Snippet](https://docs.shieldlabs.ai/setup/snippet.md): Install the JavaScript snippet and start identifying your users and visitors. - [Content Security Policy](https://docs.shieldlabs.ai/setup/csp.md): The Content-Security-Policy directives the ShieldLabs snippet needs to load and report. - [API keys](https://docs.shieldlabs.ai/setup/keys.md): What each ShieldLabs key authenticates and where it belongs. - [Webhook setup](https://docs.shieldlabs.ai/setup/webhooks.md): Receive the Risk Score and risk signals of every identification the moment it is scored. - [Domains](https://docs.shieldlabs.ai/setup/domains.md): Add the sites you protect as domains and manage each one's keys, webhook endpoints and status. - [Environments](https://docs.shieldlabs.ai/setup/environments.md): Keep development and production traffic apart with a separate ShieldLabs domain and key set for each environment. - [Billing & Plans](https://docs.shieldlabs.ai/billing.md): How plans and included identifications work for your ShieldLabs account. - [Optimize usage and cost](https://docs.shieldlabs.ai/setup/optimizing-usage.md): Place identification calls for full account coverage at a predictable cost, and trace a usage spike. - [Rate limits](https://docs.shieldlabs.ai/rate-limits.md): The limits ShieldLabs applies to identification and API traffic, and how to stay within them. - [Security](https://docs.shieldlabs.ai/security.md): Protect your ShieldLabs keys, webhooks and data in transit. - [Privacy & data handling](https://docs.shieldlabs.ai/privacy.md): What ShieldLabs collects, how it is handled, and the controls you have over the data. - [Troubleshooting](https://docs.shieldlabs.ai/troubleshooting.md): Fixes for the issues you are most likely to hit while integrating ShieldLabs. - [Errors](https://docs.shieldlabs.ai/errors.md): Every HTTP status code ShieldLabs returns, by API, and what to do. - [FAQ](https://docs.shieldlabs.ai/faq.md): Short answers to the questions developers ask most about ShieldLabs. - [Glossary](https://docs.shieldlabs.ai/glossary.md): Definitions of the terms used across the ShieldLabs docs. - [Browser support](https://docs.shieldlabs.ai/browser-support.md): Which browsers and devices ShieldLabs supports. - [Changelog](https://docs.shieldlabs.ai/changelog.md): Product and documentation changes to ShieldLabs, newest first. - [Support](https://docs.shieldlabs.ai/support.md): Get help from ShieldLabs by chat and email, on every plan including Free. - [Terms of Service](https://docs.shieldlabs.ai/legal/terms.md): The terms governing use of the ShieldLabs service and API. - [Privacy Policy](https://docs.shieldlabs.ai/legal/privacy-policy.md): How ShieldLabs processes technical and personal data, as processor and as controller. - [Cookie & Tracking Policy](https://docs.shieldlabs.ai/legal/cookie-policy.md): The identifiers ShieldLabs uses, why, and how to manage them. - [Use Case Tutorials](https://docs.shieldlabs.ai/use-case.md): End-to-end tutorials that detect and stop fraud and abuse on your users and accounts, from signup and login to checkout. - [Investigate a risky user](https://docs.shieldlabs.ai/use-case/investigate-a-user.md): Find a risky user in the analytics dashboard, see what it is linked to and why, and act on it in your backend. - [Multi-Accounting](https://docs.shieldlabs.ai/use-case/multi-accounting.md): Learn how to detect and prevent multi-accounting by linking the accounts one person runs through the devices and network they share. - [Account Sharing](https://docs.shieldlabs.ai/use-case/account-sharing.md): Learn how to detect and prevent account sharing by seeing how many devices and countries each account is used from, and enforce your sharing policy. - [Account Takeover](https://docs.shieldlabs.ai/use-case/account-takeover.md): Learn how to detect and prevent account takeover by checking each login against the devices and countries the account has used before. - [New Account Fraud (Fake Signups)](https://docs.shieldlabs.ai/use-case/new-account-fraud.md): Learn how to detect and prevent new account fraud and fake signups by linking each new account to the device and the accounts behind it. - [Ban Evasion (Ban Enforcement)](https://docs.shieldlabs.ai/use-case/ban-evasion.md): Learn how to detect and prevent ban evasion by banning every device a banned account used, so a cleared cookie or a fresh account cannot get them back in. - [Credential Stuffing](https://docs.shieldlabs.ai/use-case/credential-stuffing.md): Learn how to detect and slow down credential stuffing by throttling logins on the durable Device ID and adding friction on bots and masked logins. - [Step-up authentication (risk-based 2FA)](https://docs.shieldlabs.ai/use-case/step-up-authentication.md): Learn how to trigger step-up authentication (risk-based 2FA) only when a login or the account behind it is risky. - [SMS Pumping](https://docs.shieldlabs.ai/use-case/sms-pumping.md): Learn how to detect and prevent SMS pumping and OTP toll fraud by capping verification codes per device and local IP, with bots and masked requests held back. - [Promo Abuse](https://docs.shieldlabs.ai/use-case/promo-abuse.md): Stop one person from claiming a once-per-customer reward through many accounts. - [Bonus Abuse](https://docs.shieldlabs.ai/use-case/bonus-abuse.md): Stop duplicate accounts from claiming the same signup or deposit bonus. - [Free Trial Abuse](https://docs.shieldlabs.ai/use-case/free-trial-abuse.md): Stop one person from restarting your free trial with new accounts. - [Loyalty Fraud](https://docs.shieldlabs.ai/use-case/loyalty-fraud.md): Stop points, tiers and member perks from being farmed or drained through linked or taken-over accounts. - [Affiliate Fraud (Click & Lead Inflation)](https://docs.shieldlabs.ai/use-case/affiliate-fraud.md): Pay affiliates for real users and hold payouts on leads from risky accounts, devices and sources. - [Sybil Attack](https://docs.shieldlabs.ai/use-case/sybil-attack.md): Tie many wallets or accounts back to one person before an airdrop, vote or quota pays out. - [Coupon Abuse](https://docs.shieldlabs.ai/use-case/coupon-abuse.md): Hold one-per-customer and single-use discount codes to one account, device and network. - [Payment Fraud at Checkout](https://docs.shieldlabs.ai/use-case/payment-fraud.md): Check the buyer's account, device and payment moment before you charge, and step up or hold risky orders. - [Chargeback Fraud and Disputes](https://docs.shieldlabs.ai/use-case/chargeback-fraud.md): Build dispute evidence from the account and device history behind a charged order. - [Paywall Bypass](https://docs.shieldlabs.ai/use-case/paywall.md): Meter free articles on a Device ID that holds through cleared cookies and private windows. - [Regional Pricing Abuse](https://docs.shieldlabs.ai/use-case/regional-pricing.md): Honor a regional price only when the buyer's network and account history match the region they claim. - [Card Testing](https://docs.shieldlabs.ai/use-case/card-testing.md): Recognize the device, network and account behind a run of card-testing attempts and add friction before the charge. - [Traffic Quality by Source](https://docs.shieldlabs.ai/use-case/traffic-quality.md): Rank channels, referrers and campaigns by the risky users, devices and traffic they bring. - [Returning Visitor Recognition](https://docs.shieldlabs.ai/use-case/returning-visitor.md): Remove friction for a known customer returning on a clean, familiar device. - [API Overview](https://docs.shieldlabs.ai/api/overview.md): How the snippet, webhooks and the Server API fit together, and which key each one uses. - [Identification Flow](https://docs.shieldlabs.ai/api/identification-flow.md): How an identification is scored and reaches your backend by webhook and through the History API. - [Webhook reference](https://docs.shieldlabs.ai/api/webhooks.md): Receive each identification's Risk Score and risk signals on your server as soon as it is scored. - [Server API](https://docs.shieldlabs.ai/api/server-api.md): Read any identification, or every identification of one account, device, visitor or public IP, from your backend. - [SDKs](https://docs.shieldlabs.ai/api/sdks.md): Install the browser and server SDKs and understand their public API contract. - [Data Models](https://docs.shieldlabs.ai/api/models.md): Every object the webhook and the Server API return, and the user, device, visitor or IP each identifier belongs to. ## OpenAPI Specs - [openapi](/references/openapi.json) - [openapi](/references/openapi.yaml) This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.