Skip to main content
Juan Combariza
Growth Marketer

Juan Combariza

Researching & writing about client side security.

Articles by Juan Combariza

Comparing Solutions for Account Takeover Prevention | 2026

Anti-fraud suites, fingerprinting tools, and MFA compared by what they cover in the ATO attack chain. Find the right stack for your risk profile.

Juan CombarizaJuan Combariza
May 27, 2026

How to Stop AI Agents From Creating Fake Accounts (Guide)

AI agents create fake accounts using real browsers, residential IPs, and generated identities. Here's the detection signal stack to stop them.

Juan CombarizaJuan Combariza
May 20, 2026

How to Block AI-Agent Based Content Scraping Bots (Guide)

AI content scraping bots use real browsers, residential IPs, and LLM-powered extraction to harvest your pricing and content. Here's how to stop them.

Juan CombarizaJuan Combariza
May 19, 2026

4 Tools To Detect AI Agents On Your Website (Fraud Prevention)

Compare cside, HUMAN Security, DataDome, and Cloudflare for AI agent detection. See how each tool handles fraud prevention, pricing, and implementation.

Juan CombarizaJuan Combariza
May 15, 2026

How to Detect AI Agents on Your Website | Full Guide

This guide covers AI agent detection through identity, network, browser, and behavioral signals. See free methods like server log analysis and specialized tools.

Juan CombarizaJuan Combariza
May 13, 2026

Comparing Tools for PCI DSS 6.4.3 & 11.6.1 | Features, Pricing

Compare PCI DSS 6.4.3 and 11.6.1 compliance tools. Features, pricing, and reviews for cside, Feroot, Cloudflare, and Reflectiz side by side.

Juan CombarizaJuan Combariza
May 7, 2026

Comparing account sharing prevention tools (for businesses)

SaaS companies lose revenue to account sharing every day. See a comparison of features, pricing, and reviews of popular tools used by fraud teams.

Juan CombarizaJuan Combariza
Apr 23, 2026

How to prevent account sharing fraud (full guide for businesses)

Account sharing costs organizations billions in revenue loss. This guide covers prevention methods like device and session limits, as well as strategic tips.

Juan CombarizaJuan Combariza
Apr 22, 2026

7 steps to stop account takeover fraud (for Travel businesses)

MFA is bypassed by advanced phishing kits. See the best practices, fingerprint signals, and tools that Travel fraud teams actually use to stop ATO.

Juan CombarizaJuan Combariza
Apr 19, 2026

Quick guide to prevent Account Takeover fraud (crypto businesses)

Crypto accounts are the most valuable ATO target of any industry. See the best practices, fingerprint signals, and tools Crypto teams use to stop ATO.

Juan CombarizaJuan Combariza
Apr 17, 2026

Best methods to prevent account takeover fraud (FinTech)

FinTech accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools FinTech teams use to stop ATO.

Juan CombarizaJuan Combariza
Apr 10, 2026

Best practices to prevent account takeover fraud (eCommerce)

eCommerce accounts are targeted daily by attackers. See the best practices, fingerprint signals, and prevention tools eCom companies use to stop ATO.

Juan CombarizaJuan Combariza
Apr 8, 2026

How to Prevent Account Takeover Fraud | 4 Step Guide for Businesses

MFA helps, but it does not stop account takeover on its own. This guide covers how businesses can prevent ATO early with fingerprinting signals.

Juan CombarizaJuan Combariza
Apr 7, 2026

Meet cside at RSAC 2026

Meet the cside time at RSAC 2026 in San Francisco. Stop by our booth S-0238 on March 24-26 or grab time with us off the floor.

Juan CombarizaJuan Combariza
Mar 23, 2026

How to block AI agents on your website | robots.txt is not enough

Robots.txt won’t stop AI agents from abusing your website. Learn how to block headless browser agents and fraudulent agents with different controls.

Juan CombarizaJuan Combariza
Feb 24, 2026

How to Monitor Cross Border Data Transfer On Your Website | GDPR, CCPA

Your website is likely sending personal data to other countries. Learn how to track cross-border data transfers for GDPR and CCPA requirements.

Juan CombarizaJuan Combariza
Feb 12, 2026

How to Prevent Website Data Breaches (to avoid GDPR & CCPA fines)

1/3rd of breaches involve third parties. Learn how to prevent GDPR and CCPA violations by securing third-party scripts, APIs, and data flows.

Juan CombarizaJuan Combariza
Feb 6, 2026

Comparing Tools for GDPR Compliance (the ones you need in 2026)

GDPR compliance does not live in one tool. Fragmentation confuses teams, so we wrote this guide to help you select the right GDPR tools for you.

Juan CombarizaJuan Combariza
Feb 3, 2026

What is E-skimming | Guide and Prevention Tips

E-skimming steals information from your web visitors before traditional security tools protect them. Learn how web skimming works and how to prevent it.

Juan CombarizaJuan Combariza
Jan 29, 2026

3 Tips - The fastest way to comply with PCI DSS requirements 6.4.3 & 11.6.1

Most teams overcomplicate PCI DSS 6.4.3 & 11.6.1. See the fastest paths to compliance and why QSAs recommend tools over DIY.

Juan CombarizaJuan Combariza
Jan 26, 2026

VCDPA: Guide to Requirements + Website Compliance

Get a clear breakdown of Virginia Consumer Data Protection Act rules, enforcement timelines, and how to manage third-party scripts correctly.

Juan CombarizaJuan Combariza
Jan 22, 2026

Comparing Top Client Side Security Tools (features, reviews, pricing)

This selection guide dives deep into pricing, protection coverage, and more to help you choose a client-side protection tool for your website.

Juan CombarizaJuan Combariza
Jan 20, 2026

CPA (Colorado Privacy Act): Guide to Requirements + Website Compliance

Get a clear breakdown of Colorado Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.

Juan CombarizaJuan Combariza
Jan 16, 2026

Top AI Tools For Website Privacy Compliance in 2026 (GDPR, CPRA)

Website privacy compliance is getting harder. Fortunately these AI-powered tools automate the heavy lifting across GDPR, CCPA, and HIPAA.

Juan CombarizaJuan Combariza
Jan 13, 2026

Does GDPR apply to my U.S. company? (3 step self assessment)

GDPR might apply to your website even if you’re U.S. based. Use this 3 step checklist to see if you're at risk and the potential for financial penalties.

Juan CombarizaJuan Combariza
Jan 8, 2026

10 common GDPR website compliance failures (and how to prevent them)

Common GDPR website compliance failures, why your team doesn't notice them on your website, and how to prevent unlawful data collection.

Juan CombarizaJuan Combariza
Dec 30, 2025

GDPR Penalties Explained (most common fines, large cases, and how regulators decide)

Understand GDPR penalties based on the different violation categories. Look at what went wrong to avoid costly fines for your organization.

Juan CombarizaJuan Combariza
Dec 26, 2025

How to comply with GDPR website requirements (2026 guide)

Regulators don't care about cookie banners. This guide covers what you need to do in 2026 to minimize, document, and secure personal data on your website under GDPR.

Juan CombarizaJuan Combariza
Dec 24, 2025

NJDPA: Guide to Requirements + Website Compliance

Get a clear breakdown of the New Jersey Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts for compliance.

Juan CombarizaJuan Combariza
Dec 23, 2025

What is CSS Security? | Preventing Phishing, Clickjacking from CSS Attacks

CSS controls what users see. Attackers exploit that. This article explores CSS-based client-side vulnerabilities and how to protect against them.

Juan CombarizaJuan Combariza
Dec 23, 2025

Which platform offers the most comprehensive client-side script monitoring?

Technical evaluation of modern client-side security approaches and why layered detections are necessary for comprehensive coverage.

Juan CombarizaJuan Combariza
Dec 20, 2025

TDPSA: Guide to Requirements + Website Compliance

Get a clear breakdown of Texas Data Privacy and Security Act rules, enforcement timelines, and how to manage third-party scripts correctly.

Juan CombarizaJuan Combariza
Dec 18, 2025

What is Magecart: Complete Guide and Prevention Strategy

Magecart attacks steal card data in the browser before traditional tools detect them. Learn how Magecart attacks work and entry points used by attackers.

Juan CombarizaJuan Combariza
Dec 2, 2025

CTDPA: Guide to Requirements + Third-Party Script Compliance

Get a clear breakdown of Connecticut Data Privacy Act rules, enforcement timelines, and how to manage third-party scripts correctly.

Juan CombarizaJuan Combariza
Nov 25, 2025

Expired Domain Risks: A Real Example from Oracle’s Website

An expired domain reference is all an attacker needs to execute phishing under a trusted origin. This blog looks at an example from Oracle’s code.

Juan CombarizaJuan Combariza
Nov 25, 2025

Shady Plugins in WooCommerce: Security Risks & Protection Tips

Your checkout is only as safe as your plugins. Discover how WooCommerce handles plugin HTML, why that matters, and the steps to stop malicious code.

Juan CombarizaJuan Combariza
Nov 19, 2025

How Merchants Can Prevent Chargebacks (tools you need in 2026)

Still have a chargeback stack built for the pre-VAMP era? Here's how leading fraud teams use early dispute blocking to stay ahead of tighter rules in 2026.

Juan CombarizaJuan Combariza
Nov 8, 2025

Device Fingerprinting in CE 3.0 | How to Block More Chargeback Disputes

This is how merchants use device fingerprinting to win more Compelling Evidence cases (VISA), blocking first-party fraud and lowering VAMP ratios.

Juan CombarizaJuan Combariza
Oct 21, 2025

Chargebacks911 and cside Partner to Fight Chargeback Fraud

We're excited to reveal our partnership with Chargebacks911. Merging CB911’s expertise with cside’s client-side intelligence helps merchants fight friendly fraud and win more chargeback disputes.

Juan CombarizaJuan Combariza
Sep 9, 2025

Cside Joins AWS Partner Network and ISV Accelerate

Working alongside AWS helps us bring our solution to the cloud environment our customers already rely on. For us, this is a step towards making client-side security widely accessible.

Juan CombarizaJuan Combariza
Sep 9, 2025

How to comply with PCI 6.4.3 and 11.6.1 | Practical guide for security teams

A practical guide to PCI 6.4.3 for security teams in eCommerce, FinTech, and SaaS. Learn why CSP or Crawlers are not enough to protect your users.

Juan CombarizaJuan Combariza
Aug 19, 2025
Book a demo