SKOOR Risk Money movement. Skoored by AI.

Alert · reviewed · open

The entity's first transfer, $799.13, above the program median, came 0.0 hours after verification.

Detector
rapid_onboarding
Severity
medium
Program
Harbor Marketplace Payouts (simulated)
Subject
transfer acht_sim_harb_1p3uffzs3zn
Transfer
acht_sim_harb_1p3uffzs3zn · $799.13 · ach outgoing
Skoor at alert
null unscored
Hard signal
no
Policy
policy-v1
Opened
2026-09-17 19:30Z
Closed
Decision clock
none · due — no clock
Escalated

Draft narrative

What happened. An alert fired under the rapid_onboarding detector for entity Cedar Services 114 (program Harbor Marketplace Payouts). The subject transfer, acht_sim_harb_1p3uffzs3zn, is a $799.13 outgoing ACH credit that settled and was the entity's first transfer, occurring 0.0 hours after verification, above the detector's 24-hour threshold for what counts as 'rapid.' What the evidence shows. The transfer amount ($799.13) is above the program median of $352.26 but not extreme relative to a $4,000,000.00 declared monthly volume. The transfer has already SETTLED with no return code, so there is no held transaction to hold or release. The transfer-level score is unscored (n=0, confidence null), meaning there is no behavioral history to compare against. The entity is a VERIFIED US business, not flagged high risk, not PEP, with no review reasons on file and a screening date of 2026-06-23. There are no prior dispositions for this entity or transfer. What was checked. Detector fields (typology, threshold, hoursSinceVerification, medianCents), transfer status and return code, program declared volume and rails, entity verification status, risk flags, PEP status, review reasons, and prior disposition history. All fields present were reviewed; no external data beyond the provided context was used. What is recommended. Close the alert. The transfer has settled with no return code, the entity is verified with no risk flags or PEP status, and the single data point (first transfer amount and timing) does not by itself indicate a pattern requiring escalation. The unscored status reflects insufficient history rather than a specific risk signal. A person should still note the thin scoring data (n=0) if future alerts arise on this entity, but nothing in the current evidence requires holding funds already settled or escalating beyond this alert.
Recommendation
close
Confidence
0.62
Model
claude-sonnet-5
Drafted
2026-09-17 19:30Z
Rationale
  • Transfer status is SETTLED with no return code; there is no held transfer to act on, so hold/release do not apply.
  • Entity is VERIFIED, not high risk, not PEP, with no review reasons, reducing concern about the immediate onboarding pattern.
  • Transfer score is unscored (n=0, confidence null), indicating no behavioral baseline exists yet, not a specific risk finding.
  • Amount $799.13 exceeds program median $352.26 but is small relative to declared program volume ($4,000,000.00/month), limiting materiality.
  • No prior dispositions exist for this entity or transfer, so there is no evidence of a broader pattern warranting escalation.
  • Evidence is limited to a single alert with one transfer; confidence is capped accordingly given the thinness of scoring data.

Evidence

{
  "n": 0,
  "band": "unscored",
  "skoor": null,
  "typology": "rapid_onboarding",
  "confidence": null,
  "thresholds": {
    "hours": 24
  },
  "medianCents": "35226",
  "routeReason": "detector not auto-closable",
  "hoursSinceVerification": 0
}

Decision

Sign in as an operator to decide. Operator sign-in →

Dispositions

No disposition yet.

Actions

Freeze, request to program, and suspend need a second, distinct approver. Clear hold, cancel, and pause execute on the requester's approval. Executed through the bank's own API with the tenant's sandbox key; a dry run when there is none.

No actions requested.