Force Logout Feature

    Overview

    We’ve introduced a Force Logout feature to strengthen fraud controls, protect customers, and close compliance gaps on the Jumbo Lottery Platform (JLP).

    Previously, banned customer checks were only triggered during sign-up or a full login event (when a customer manually entered their username and password). This created a loophole where:

    • Banned customers could create accounts using false details, then later update their information (e.g., name, date of birth) during withdrawals without triggering a banned check.
    • Fraudsters could stay logged in indefinitely, continuing to transact without ever needing to re-login, even if their account should have been flagged or locked.

    This gap left both compliance and fraud prevention measures vulnerable.

    What’s Changed

    The new Force Logout functionality allows the system and support teams to immediately terminate active sessions when an account should no longer have access.

    Key improvements include:

    1. Automatic Force Logout on Lock or Deactivation

    • When a customer account is locked or deactivated, all active sessions are now instantly terminated.
    • This ensures:
      • No further transactions can occur on the account.
      • Access is cut off in real time, preventing fraudulent activity or continued play by banned customers.
    • Applies to both supporters and admins, closing security gaps around active sessions on lost or compromised devices.

    2. Manual Force Logout via Admin Tools

    • Support teams now have a “Force Logout” action in the admin portal, allowing them to:
      • Manually end a customer’s active session without locking or deactivating the account.
      • Quickly respond to suspicious activity, session issues, or account takeovers.
      • Enforce a fresh login when needed for verification or troubleshooting.
         

    Why This Matters

    • Fraud Prevention:
      Stops bad actors from exploiting long-lived sessions to continue transacting after their account should be blocked.
    • Responsible Gambling Compliance:
      Ensures people at risk who are flagged or banned are immediately removed from the platform, showing proactive control during audits.
    • Security Enhancement:
      Protects against account takeovers and keeps both customers and the platform secure.

    Outcome

    With Force Logout now in place:

    • Support teams have direct control to end sessions when needed.
    • Locked or deactivated accounts are cut off immediately, not just at the next login.
    • The platform now provides a stronger layer of fraud control and responsible gambling enforcement.

       
    Was this article helpful?
    0 out of 0 found this helpful