Reporting and Analytics Portal User Guide

Overview

The customer reporting portal provides stats on scoring, risk types, and trends. With interactive charts and data analysis, it is easy to identify and track high risk areas and bad actor data. In addition, the portal provides feedback loops and the ability to add incidents to the community database.


Portal Menu and Tabs

To navigate through the portal, just click on the tabs in the left navigation (or the top menu minimized on phones and tablets).

If you have access to multiple accounts, the Accounts select menu is available at the top of the page. Type in the name of the account you want to view and click Go. Admins can also select the All Accounts rollup view.


Dashboard Tab

The Dashboard provides stats on risk types, risk areas, average scores, and how risk items are trending. The Total pie shows the percentages of risk types, and total leads over the last thirty days. Click any area to see all leads in the scoring range.


On the dashboard you can also view total risk scores, the percent of risk levels per day, and totals by risk type. In addition, score distribution, risk trends, and risk score ranges are shown and these charts are also available on all risk area tabs. Click on any data point on the charts to see the data linked to the chart areas.

Risks per Day
Risk Type by Day
Score Distribution
Risk Trends


Risk Areas

The portal navigation lists all your available risk area reports such as IP, Email, Phone, Location, Geo, Activity, Device, and Community. Selecting the IP tab will show all risk hits including issues such as proxy, bots, blacklists, spam history, and the top 150 highest risk and most active IPs. The area report will show counts of risk hits and trends in your data. Simply click on any data point to drill-down and view details with specific risks.

Chart Drill Down
Click on any data point in the portal charts and quickly view all matching data during the selected time period.

Top Lists
Quickly view the highest risk items such as IPs, email, and domains as well as the items sorted by highest activity. These lists are updated every six hours.

Reporting and Filters
Filter by time, risk score, or risk hits. Just add filters and search item to view report. Click on any row to view details.


Activity Report

The Activity Report lists all incidents created by our activity monitor during the last thirty days. To the right of each incident are buttons: Correct to verify the incident as a Repeat Sign-up, False to mark as incorrect (remove from scoring), and Hold to not score until marked correct or false. This report should be checked often because many times the first items in the incident are marked as low risk (no bad pattern yet), and the later ones are marked as high risk. If the incident is Correct, then make sure to take action on all items in the incident.


Device Fingerprints

The Fingerprint tab allows you to search all device fingerprints, quickly ban fraudsters devices, view fingerprint activity, and mange your device fingerprint risks. Each fingerprint also links to the details page so you can quickly view all leads associated with a specific device. The table lists each fingerprint, totals processed with the fingerprint, average risk scores, status, and created and last seen timestamps.

Tag fingerprints bad, good, do not score or score normally. Fingerprints with a link icon connect previous data for the same device.


Campaign and Lead Performance

Real-time tracking of campaigns and lead source performance, so you know which lead sources and campaigns are providing you with the best results.


Tags

Quickly view and manage all the tagged items for your account. Tags are used to customize score results on specific items including email, emaildomain, domain, TLD, IP, CIDR, phone, name, and device fingerprints. In addition, scoring for Good and Bad can be customized in the Configure Score area.

Bad adds negative scoring
Good adds positive scoring
Do Not Score sets item score to zero

To illustrate how tagging works, if you send IP = 10.1.1.1, it will hit "Private or no geo IP" risk and score -10 for IP area. Adding tags of:

Bad will add -130 to the IP score area, and the IP will now score -140
Good will add +130 to the IP scoring area, and the IP will now score +120
Do Not Score will set the IP scoring to 0

Learn about the Tag API

Alerts

Alerts are designed to notify you when recent leads have an increase in risk. If data is added to a blacklist that matches your data, E-HAWK will automatically send an email so you can quickly review the user, test them if you wish, and take any necessary actions. View the Alerts information page.


Search, Filters, and Details

The Data tab allows you to search for any lead or signup, quickly view details of risks, easily tag items good or bad and add user data to the community database. Just click on the Data tab, enter search data such as an IP, email, domain, username, or fingerprint. Then click on a row of the result set to view details. Items that have multiple data points will show a badge with a count to the right. For example, an IP with 20 means that twenty total leads have used this same IP. Clicking on the IP refreshes the Data tab with all items using that IP.


My Account

To manage your account information and/or change your password, select Account Profile from the menu. You can update your email, information, and change your password.

Manage Users

If you are an administrator, you can easily add and remove users from your portal accounts. Select Users from the menu. Click Add User to add an employee to the portal, complete the form and save.

Customize Scoring

Portal Admins can adjust scoring values for hundreds of risk hits. Because each organization views risk differently, you can quickly increase or decease the score for all major risk hits. Just select Custom Scoring from the menu. Click on an area and change scoring.