Skip to content
HeuriTel
Sign in

Fraud, risk, security and digital identity teams

Stop an account takeover before the transfer, and let the fraud system decide

A password reset, a SIM change and a wallet transfer arrive on one account within an hour. Each is ordinary on its own.

No demonstration is configured for this journey yet.

Seen by the customer · SMS, Kiswahili

From the record, not a run: what would reach them, on SMS, App, Call, in Kiswahili, English.

The case

Annotated from the record

What happened

A password reset, a SIM change and a wallet transfer arrive on one account within an hour.

A password reset, a SIM change and a wallet transfer arrive on one account within an hour. Each is ordinary on its own.

What it reads

  • The event sequence and its timing
  • Device, SIM and identity verification signals
  • Consent and customer verification history
  • The control system's own policy

Checks before anything is sent

Signal quality, consent, customer verification and the control system's own policy checks pass.

Every option considered, including doing nothing

  1. Pass a high-risk signal with its reasons to the transaction-control systemConsidered
  2. Refer the account for human follow-upConsidered
  3. Suppress the signal, where the customer verified through a held channelConsidered
  4. No action, where the sequence has a known causeConsidered

No action is a valid outcome, and it is recorded with its reason. Nothing is computed on this page: the options are the record's own, and no run has decided anything.

Evidence record

Preview
Reference
Issued when a run is saved. An evaluation that was never saved has none.
Decision
One of the options, including no action, with the reason.
Checks
Signal quality, consent, customer verification and the control system's own policy checks pass.
Evidence kept
  • Event sequence
  • score
  • reasons
  • signal passed
  • control system's decision
  • customer notification
  • outcome
The measures
Takeovers stopped before a loss, against legitimate customers wrongly held.
Connection
Stated on every record. In the demonstration no operator system is connected, and each record carries that state.

The shape of the record, with no values. A reference appears only after a run is saved.

The improvement, and how it is measured

Hypothesis

A takeover stopped before the transfer costs a verification; one found afterwards costs the money and the customer.

Desired result: Incremental revenue or retention; lower contact waste; improved conversion with margin guardrails

Modelled not observed

No figure is modelled for this journey. The mechanism that could produce the result is stated instead.

Ingest → qualify → score → apply limits/consent → assign control → execute approved action → capture delivery and business outcome → monitor/retrain

Observed

Nothing yet. Measurement begins in a pilot’s validate stage, on your systems, against a comparison agreed first.

Randomised holdout where feasible; intent-to-treat primary view; pre-declared denominator; guardrails for complaints, margin and opt-out

Measured on: Eligible population; treatment rate; conversion; incremental revenue; ARPU; churn; contact rate; margin; opt-out; decision latency

Assumptions, costs and the record’s five answers
  1. 01
    Desired result

    The result wanted.

    Incremental revenue or retention; lower contact waste; improved conversion with margin guardrails

  2. 02
    Mechanism

    The mechanism that could produce it.

    Ingest → qualify → score → apply limits/consent → assign control → execute approved action → capture delivery and business outcome → monitor/retrain

  3. 03
    Evidence required

    The records kept to show it.

    Decision log; eligibility snapshot; price/order response; delivery receipt; control assignment; revenue/outcome ledger

  4. 04
    Costs and risks

    The cost, and the ways it can go wrong.

    Costs: Setup fee + annual product subscription; optional managed execution fee; optional verified-outcome fee with agreed baseline

    If it fails: Fail closed on eligibility/consent/price; queue retryable events; do not duplicate orders; route exception to campaign operations

  5. 05
    Measurement approach

    The measure that shows it helped.

    Randomised holdout where feasible; intent-to-treat primary view; pre-declared denominator; guardrails for complaints, margin and opt-out

    Measured on: Eligible population; treatment rate; conversion; incremental revenue; ARPU; churn; contact rate; margin; opt-out; decision latency

Nothing has been observed for this product. Every line above is the record's own design intent; measurement begins in a pilot's validate stage, on your systems, with the comparison agreed first.

The business side

The change
Takeovers stopped before a loss, against legitimate customers wrongly held.
Running cost
Setup fee + annual product subscription; optional managed execution fee; optional verified-outcome fee with agreed baseline
What evidence supports it
Event sequence, score and reasons, signal passed, control system's decision, customer notification and outcome.

The journey in detail

Step by step, from both sides
StepWhat the customer experiencesWhat the operator does
The momentThe moment that started it.A password reset, a SIM change and a wallet transfer arrive on one account within an hour.Reads the event sequence and its timing, device, sim and identity verification signals, consent and customer verification history, the control system's own policy.
The decisionThe decision to be made.Nothing reaches the customer yet.Scores the sequence as a takeover risk with its reasons, and passes the signal to the fraud or transaction-control system.
The safeguardsThe conditions that stop it.Still nothing. No action is sent until every check has passed.Signal quality, consent, customer verification and the control system's own policy checks pass.
The actionThe action that reaches the customer.The control system steps up, pauses or rejects; the customer is told through a channel the attacker does not hold. Reaches them on SMS, App, Call, in Kiswahili, English.Recommends. The system that holds the right confirms, charges or provisions.
When it goes wrongRefusal, failure and recovery.A customer who replaced a lost phone and moved money the same day is held, and cannot be reached because the notification goes to the new SIM.The notification goes to a channel the customer held before the change, the hold is lifted on verification, and the case is kept so the score learns the pattern.
The resultThe change it made.What changed for them is what is counted; nothing else is claimed.Takeovers stopped before a loss, against legitimate customers wrongly held.
The proofThe proof anyone can check.Can be answered for, later, from the record.Event sequence, score and reasons, signal passed, control system's decision, customer notification and outcome.

Operator systems remain authoritative. HeuriTel reads these to propose an action; it does not decide on their behalf.

Refusal, failure and recovery

What goes wrong

A customer who replaced a lost phone and moved money the same day is held, and cannot be reached because the notification goes to the new SIM.

What happens then

The notification goes to a channel the customer held before the change, the hold is lifted on verification, and the case is kept so the score learns the pattern.

The products in this journey

Available to see today

No demonstration is configured for this journey yet.

See HeuriTel configured for your organisation

Verify your work email to open a demonstration configured for your organisation.