Hypothesis
A takeover stopped before the transfer costs a verification; one found afterwards costs the money and the customer.
Desired result: Incremental revenue or retention; lower contact waste; improved conversion with margin guardrails

Fraud, risk, security and digital identity teams
A password reset, a SIM change and a wallet transfer arrive on one account within an hour. Each is ordinary on its own.
No demonstration is configured for this journey yet.
Seen by the customer · SMS, Kiswahili
From the record, not a run: what would reach them, on SMS, App, Call, in Kiswahili, English.
What happened
A password reset, a SIM change and a wallet transfer arrive on one account within an hour.
A password reset, a SIM change and a wallet transfer arrive on one account within an hour. Each is ordinary on its own.
What it reads
Checks before anything is sent
Signal quality, consent, customer verification and the control system's own policy checks pass.
Every option considered, including doing nothing
No action is a valid outcome, and it is recorded with its reason. Nothing is computed on this page: the options are the record's own, and no run has decided anything.
The shape of the record, with no values. A reference appears only after a run is saved.
Hypothesis
A takeover stopped before the transfer costs a verification; one found afterwards costs the money and the customer.
Desired result: Incremental revenue or retention; lower contact waste; improved conversion with margin guardrails
Modelled not observed
No figure is modelled for this journey. The mechanism that could produce the result is stated instead.
Ingest → qualify → score → apply limits/consent → assign control → execute approved action → capture delivery and business outcome → monitor/retrain
Observed
Nothing yet. Measurement begins in a pilot’s validate stage, on your systems, against a comparison agreed first.
Randomised holdout where feasible; intent-to-treat primary view; pre-declared denominator; guardrails for complaints, margin and opt-out
Measured on: Eligible population; treatment rate; conversion; incremental revenue; ARPU; churn; contact rate; margin; opt-out; decision latency
The result wanted.
Incremental revenue or retention; lower contact waste; improved conversion with margin guardrails
The mechanism that could produce it.
Ingest → qualify → score → apply limits/consent → assign control → execute approved action → capture delivery and business outcome → monitor/retrain
The records kept to show it.
Decision log; eligibility snapshot; price/order response; delivery receipt; control assignment; revenue/outcome ledger
The cost, and the ways it can go wrong.
Costs: Setup fee + annual product subscription; optional managed execution fee; optional verified-outcome fee with agreed baseline
If it fails: Fail closed on eligibility/consent/price; queue retryable events; do not duplicate orders; route exception to campaign operations
The measure that shows it helped.
Randomised holdout where feasible; intent-to-treat primary view; pre-declared denominator; guardrails for complaints, margin and opt-out
Measured on: Eligible population; treatment rate; conversion; incremental revenue; ARPU; churn; contact rate; margin; opt-out; decision latency
Nothing has been observed for this product. Every line above is the record's own design intent; measurement begins in a pilot's validate stage, on your systems, with the comparison agreed first.
The business side
| Step | What the customer experiences | What the operator does |
|---|---|---|
| The momentThe moment that started it. | A password reset, a SIM change and a wallet transfer arrive on one account within an hour. | Reads the event sequence and its timing, device, sim and identity verification signals, consent and customer verification history, the control system's own policy. |
| The decisionThe decision to be made. | Nothing reaches the customer yet. | Scores the sequence as a takeover risk with its reasons, and passes the signal to the fraud or transaction-control system. |
| The safeguardsThe conditions that stop it. | Still nothing. No action is sent until every check has passed. | Signal quality, consent, customer verification and the control system's own policy checks pass. |
| The actionThe action that reaches the customer. | The control system steps up, pauses or rejects; the customer is told through a channel the attacker does not hold. Reaches them on SMS, App, Call, in Kiswahili, English. | Recommends. The system that holds the right confirms, charges or provisions. |
| When it goes wrongRefusal, failure and recovery. | A customer who replaced a lost phone and moved money the same day is held, and cannot be reached because the notification goes to the new SIM. | The notification goes to a channel the customer held before the change, the hold is lifted on verification, and the case is kept so the score learns the pattern. |
| The resultThe change it made. | What changed for them is what is counted; nothing else is claimed. | Takeovers stopped before a loss, against legitimate customers wrongly held. |
| The proofThe proof anyone can check. | Can be answered for, later, from the record. | Event sequence, score and reasons, signal passed, control system's decision, customer notification and outcome. |
Operator systems remain authoritative. HeuriTel reads these to propose an action; it does not decide on their behalf.
What goes wrong
A customer who replaced a lost phone and moved money the same day is held, and cannot be reached because the notification goes to the new SIM.
What happens then
The notification goes to a channel the customer held before the change, the hold is lifted on verification, and the case is kept so the score learns the pattern.
Bounded rules and models score SIM, subscription, account-takeover, payment, traffic and roaming fraud, and pass the signal to the authorised fraud or transaction-control system with its reasons.
the network's own SIM-change and device signals the score reads
the wallet the transfer would leave
No demonstration is configured for this journey yet.