Security
Fraud Prevention
Learn about built-in tools and best practices to detect and prevent fraudulent transactions.
Fraud Prevention
Kuata uses multiple overlapping layers of technology and human review to detect and prevent fraud. This document explains how we protect you, what warning signs to watch for, and what to do if you suspect you have been targeted.
How Kuata Detects Fraud
Transaction Monitoring
Every payment and transfer on Kuata is automatically screened in real time against fraud rules calibrated by our security team. The system looks for patterns such as:
• Unusually high transaction volume in a short period
• Transfers to high-risk destinations or newly created accounts
• Payments that fragment a larger sum to stay below reporting thresholds (structuring)
• Transactions that deviate significantly from your normal spending behaviour
• Account access from unusual locations or devices
When the system detects a suspicious pattern, it generates an alert. Depending on the severity, the transaction may be held for review, you may be asked to confirm your intent with an additional verification step, or the transaction may be blocked pending investigation.
Behavioural Fraud Protection (Pro)
For Pro users, Akili AI builds a behavioural baseline from your own transaction history. It learns your typical timing, amounts, recipients, and frequency. When a transaction deviates significantly from your pattern — even if it passes the standard rules, Akili flags it and asks you to confirm before it proceeds.
Note: Your behavioural model is stored only on Kuata's secure infrastructure and is never shared with third parties. It is used exclusively to protect your account. |
Receipt and Transfer Fraud Detection (Pro)
When you upload a payment receipt to Akili or receive one from another party, Kuata runs a three-signal analysis:
Signal | What it checks |
AI visual analysis | Manipulated text, inconsistent fonts, altered amounts, layout irregularities |
Digital watermark verification | Whether the receipt carries a valid Kuata-issued authenticity mark (SynthID) |
Document metadata analysis | Screenshot dates, editing software traces, device inconsistencies in EXIF data |
Sanctions and Watchlist Screening
Every account opening and every transaction is automatically checked against:
• United Nations Security Council sanctions lists
• Local government-designated terrorist and criminal lists
• EU, US OFAC, and UK HMT sanctions lists
• International Politically Exposed Persons (PEP) databases
Matches are immediately flagged for review. Confirmed matches result in account restriction or transaction blocking pending regulatory guidance.
Common Fraud Tactics to Watch For
Phishing
Security Alert: Kuata will NEVER send you a link by SMS or email asking you to log in, verify your account, or enter your PIN. If you receive such a message, do not click the link. Forward it to security@kuata.app and delete it. |
Phishing attacks impersonate trusted brands to steal your credentials. Red flags include:
• Urgent language: 'Your account will be closed in 24 hours unless you act now'
• Links that look similar to kuata.io but are subtly different (e.g., kuata-secure.com, ku4ta.io)
• Requests to 'verify your identity' outside the Kuata app
• Attachments claiming to be security updates or receipts
Social Engineering
Fraudsters sometimes call or message claiming to be Kuata support, a bank, or a government agency, and ask you to:
• Share your PIN, one-time code, or password
• Move money to a 'safe account'
• Install a remote access app on your phone
• Approve a transaction you did not initiate
Important: Kuata support will never ask for your PIN or one-time codes, and will never ask you to send money to verify your account. Hang up immediately if you receive such a call and report it to security@kuata.io. |
SIM Swap Fraud
A SIM swap occurs when a fraudster convinces your mobile operator to transfer your phone number to a SIM card they control. Once they have your number, they can intercept SMS one-time codes and gain access to accounts that rely on SMS verification.
Signs that you may be a SIM swap victim: your phone suddenly loses signal for no apparent reason; you stop receiving calls and texts; you receive unexpected notifications about a SIM or number change.
If you suspect a SIM swap, contact your mobile operator immediately and then contact Kuata support. We recommend enabling authenticator app-based 2FA (see Account Security document) to reduce reliance on SMS codes.
Fake Marketplace and Investment Scams
• If someone asks you to send money through Kuata as payment for goods you have not yet received, verify the seller independently before paying.
• Kuata does not facilitate cryptocurrency investments. Any offer linking Kuata to crypto returns is fraudulent.
• 'Money mule' requests being asked to receive money and forward it to others are illegal regardless of the explanation given.
What to Do If You Suspect Fraud
1. Block any suspected unauthorised transaction immediately from Payments -> History -> [Transaction] -> Report an issue.
2. Change your PIN immediately: Settings -> Security -> Change PIN.
3. Review your recent login sessions: Settings -> Security -> Active sessions. Sign out of any session you do not recognise.
4. Contact Kuata security: security@kuata.io — mark your message URGENT. Response within 2 hours.
5. Report to your national cybercrime authority or financial regulator if money was lost.
How to Report Suspicious Activity
Type of report | How to report |
Suspected unauthorised access to your account | security@kuata.app — URGENT |
Phishing message or fake Kuata website | security@kuata.app with screenshot or link |
Suspicious transaction on your account | Payments -> History -> Report an issue |
Receipt fraud (Pro) | Tap This is legitimate or This is fraudulent on the Akili alert |
Suspicious activity by another user | security@kuata.app (we cannot share investigation outcomes) |