TugraCyber keeps an inventory of every script running on your checkout page and alerts you when a script’s content changes silently, which is the signature of Magecart-style card skimming attacks.
This plugin only adds the monitoring agent to your checkout page. The dashboard, alerts and reports live in your TugraCyber account. Setup requires an account and a collector address.
Through the monitoring script (agent) it places on your checkout page, this plugin sends data to the Collector Endpoint address you enter on the settings page. This address is empty by default: the plugin can be installed, but no data is sent anywhere until you enter an address.
For each script loaded on the checkout page, the data sent is:
Page content, customer data, payment information and card numbers are never collected or sent.
If you enter the TugraCyber hosted service at https://tugracyber.com as the Collector Endpoint, data is sent to that service and the following apply:
Alternatively, you can enter the address of a TugraCyber collector instance running on your own server. In that case data goes only to a server under your control and nothing is sent to any third party.