With this latest release, you now have the ability to use CAPTCHA on the WooCommerce classic guest checkout page. Once activated, this significantly reduces the risk of fraudulent orders being placed by bots and ensures that genuine human guests are checking out.
This feature extends our existing suite of CAPTCHA options for WooCommerce, giving you even more protection from malicious bots.
WooCommerce guest checkout CAPTCHA
To enable the guest checkout CAPTCHA option:
- Go to WP Security >> Brute Force >> CAPTCHA settings >> WooCommerce forms CAPTCHA settings.
- Scroll down and click the Enable CAPTCHA on the WooCommerce checkout page button.
- Click the Save settings button.
Note: For this option to appear, WooCommerce should be installed and activated. In addition, please ensure you have selected a CAPTCHA from the Default CAPTCHA dropdown list.
Other improvements
We fixed a display issue with Cloudflare’s Turnstile CAPTCHA which caused it to display twice on WooCommerce login and registration forms.
For a full list of changes please review our changelog below.
Changelog:
* FEATURE: Added CAPTCHA option for WooCommerce classic guest checkout page.
* FIX: Fixed responsive layout issues with dashboard notice logo on mobile devices.
* FIX: Turnstile captcha widget showing multiple times.
* FIX: Solved memory issue for reading larger host system log file.
* FIX: Removed .htaccess options from the Settings menu on Nginx, IIS and unsupported web servers.
* FIX: Resolved UX popup issue and firewall allowlist sanitization.
* FIX: Resolved an issue where bulk table actions were still executed even if the confirmation dialog was cancelled.
* FIX: Added a null check to prevent PHP warnings in firewall rules.
* TWEAK: Ajaxified the actions in the settings, filesystem security, spam prevention and user security menu.
* TWEAK: Added Ajax support to list tables and the audit log.
* TWEAK: Added CAPTCHA field to MemberPress forgot password and registration forms.
* TWEAK: Excluded .htaccess tabs from settings if the server is not supported.
* TWEAK: Updated the firewall rules UI and malware scanner description.
* TWEAK: Tweaked the .htaccess backup method to generate the random filename.
* TWEAK: Removed ‘prevent access to default WP files’ from .htaccess and added ‘license.txt’ to deletion list.
Get peace of mind, install AIOS premium
The hard work you’ve put into your website deserves the best protection. AIOS Premium monitors your site for trojan horses, adware, worms, spyware and other malicious code that could have devastating consequences for your WordPress investment.
AIOS Premium customers also benefit from personalised, ticketed support from a team of security experts. Advanced two-factor authentication, a country blocking tool and smart 404 error blocking give your website the protection it deserves.