Security & WAF Protection

WHASOLS provides built-in WAF security including bot protection, SQL injection, XSS, CSRF protection, brute force defense, CAPTCHA, 2FA, IP & browser verification, and blacklist management for secure hosting.

WAF & Fraud Shield

Protect your infrastructure with WHASOLS built-in security system featuring WAF, bot protection, SQL/XSS/RFI defense, CSRF protection, blacklist management, 2FA, and advanced user verification layers

Methods Validation like get,post or else allowed or not.
Headers Validation in Depth using (Size, Useragent, Protocol,HTTP/1.1 and Cache behavior mismatch, Obsolete params)
HTTPS/SSL Check and Forces the website to use secure connection
Hijacking prevention with auto generated token validation
SQL Injection, IP & URL based attacks preventation

WAF Snapshots

order form 0
order form 1
order form 2
order form 3
order form 4
order form 5
order form 6
order form 7

Security Features

Security is our first priority and WHASOLS is protected by strong layers of security

Bot and Spam Protection
Bot and Spam Protection
Malicious attacks on any form fields are blocked by the Botshield firewall. The Botshield automatically engages and enforces the Captcha verification.
Blacklist Management
Blacklist Management
WHASOLS has an advanced blacklist database, which blocks the fraud customers and also allows you to add the user to the blacklist.
Two-Factor Verification
Two-Factor Verification
Allows staff and users to setup 2FA Verification for higher security, preventing any kind of unauthorized access.
Database Access Protection
Database Access Protection
The database access information is automatically encrypted with a special and powerful encryption key on the software, preventing the unauthorized access to the data.
Sensitive User Data
Sensitive User Data
Sensitive data, such as a user password, is automatically encrypted with a special and powerful encryption key in a database, preventing the unauthorized access to the data.
Location, IP & Browser Verification
Location, IP & Browser Verification
During user and admin login, if the user's location / IP / browser data is different, the account is automatically locked and the verification is required.
Proxy/VPN Security
Proxy/VPN Security
Security Features allow you to disable the customers from placing an order through any kinds of proxy or VPN.
SQL Injection Security
SQL Injection Security
All controls and tests related to the SQL Injection deficit have been carefully provided by our security experts. In addition, the WHASOLS uses the PDO-MYSQL structure.
XSS & CSRF Security
XSS & CSRF Security
In terms of Reflected XSS, Stored/Persistent XSS, Dom XSS & CSRF vulnerabilities, the system has been passed all necessary checks and tested by our security experts and Prevents security weaknesses with specially produced CSRF Token.
Captcha Security
Captcha Security
You can show Captcha validation as mandatory for all form fields specified on the system. So the robots won't stand a chance. You can enable/disable captcha verification from configurations.

Ready to automate your business?

Start your 90-day free trial — no credit card required.

Start free trial