A recorded path through an illustrative case.
Observed path
Get payment
Get baseline
Get device
Check beneficiary
3 more recorded steps in the full record.
Committed the contracted outcome
Fraud · Example
Cadre name · Tripwire
Routes a payment to allow, step-up, hold, or block using distinct fraud and scam risks.
Operating dossier
Mandate
Evaluates payments on the authorization path and returns allow / step-up / hold / block, separating third-party fraud from authorized-push-payment scam risk.
Operating logic
Case and record
Supplied case
Case key normal-recurring
{
"paymentId": "PAY1"
}Recorded path and outcome
A recorded path through an illustrative case.
Observed path
Get payment
Get baseline
Get device
Check beneficiary
3 more recorded steps in the full record.
Committed the contracted outcome
Evaluation and limits
Published evaluation map
These cases show what the pack is asked to decide, when it should stop, and which plausible errors the evaluation is meant to expose. They are not a reliability score or independent validation.
Routine judgments, close calls, and named stopping points.
allow.
Case key
normal-recurringblock.
Case key
account-takeoverhold + customer-facing intervention.
Case key
app-investment-scama large completion-funds payment to a known solicitor from a recognized device, with no scam signal. The payment is genuine; allow is the disciplined call, and a block here is the costly error.
Case key
legit-unusual-known-payeean ordinary-looking marketplace payment whose beneficiary is reused across 17 customers with a high mule score. The shared destination outweighs the clean memo and device; hold or refer is the disciplined call.
Case key
mule-network-reuseOperating fit
Operating pattern
Give the pack a short list of permitted decisions and require referral when the evidence cannot support one.
Wider workflows
Institution-specific validation
These questions shape how the example fits an institution.
Related examples
Related examples