Real-Time · Multi-Signal · BSA-AML + Reg E · Architecture v2.1

Stop Fraud
Before the
Reg E Clock
Starts

Five AI agents. Five signal streams. One 45-minute analyst workflow.

CAIBots Fraud Detection plugs into your existing Actimize, Verafin, or Fiserv stack as the fraud intelligence layer — running real-time transaction scoring, behavioral biometrics, account state analysis, and regulatory documentation before a case reaches your fraud analyst's queue.

5
Sub-Agents
Parallel
5
Source Tools
Equal Authority
45
Min Avg
Analyst Time
$0.03
Cost Per
SAR Filed
4+
Fraud Types
+ Live AI
BSA / AML Compliant Reg E · 12 C.F.R. §1005.11 FFIEC Fraud Guidance CFPB Supervision Ready SAR 30-Day Clock Reg E 5-Day Provisional Credit OFAC Block Report 10 Days CTR 15-Day Filing Account Takeover Detection Business Email Compromise Synthetic Identity Fraud Mule Account Network XGBoost · Graph Neural Net BioCatch · ThreatMetrix · Sardine FIS · Fiserv 36-Month History Mandatory HITL Gate NICE Actimize Integration Real-Time · Not Batch BSA / AML Compliant Reg E · 12 C.F.R. §1005.11 FFIEC Fraud Guidance SAR 30-Day Clock Account Takeover Detection XGBoost · Graph Neural Net Mandatory HITL Gate Real-Time · Not Batch
30
SAR Filing
Calendar Days from Suspicion · 31 U.S.C. §5318(g)
5
Reg E Provisional Credit
Business Days · 12 C.F.R. §1005.11
15
CTR Filing
Calendar Days · Cash >$10K · 31 CFR §1010.311
10
OFAC Block Report
Business Days After SDN Hit · 31 CFR §501.603
ROI Calculator

Your Numbers, Not Ours

Build Your Business Case

Model fraud loss avoided, chargeback savings, false positive recovery, labor savings, and regulatory exposure across 10 fraud typologies — with full solution cost shown. No hidden denominators.

L1 Labor Savings L2 Fraud Loss Avoided L3 Chargeback Savings L4 False Positive Recovery L5 Regulatory Exposure EV
10
Fraud Types
5
ROI Levers
Live
Calc
Build Your ROI Case →
10 fraud types · Sensitivity analysis · Full cost shown

Signal to Decision
in Real Time

Unlike batch-processing fraud systems that catch fraud after the fact, CAIBots runs an 8-stage parallel pipeline on every triggering event — from signal ingestion through regulatory filing — before your analyst opens the case.

Key Principle — Correlation, Not Threshold

A single large wire transfer is noise. The same transfer combined with a credential change 4 hours prior, a new device fingerprint, and a behavioral anomaly score of 94 is a confirmed ATO. CAIBots synthesizes all five signal streams simultaneously before any alert reaches an analyst.

Signal IngestionWire transfers, Zelle, ACH, credential events, device fingerprints, login anomalies
OrchestratorNormalizes event, classifies fraud type, dispatches all 5 agents simultaneously
5 Source Tools ⬡ML Inference · Account History · Behavioral Biometrics · Reg Rules · Case Queue — all parallel
5 Agents ⬡Transaction Risk · Account State · Behavioral · Regulatory · Case Management — all parallel
CorrelationGraph-based signal fusion, weighted evidence synthesis, confidence scoring
LLM ReasoningFraud narrative, SAR draft, Reg E determination, complete evidence chain assembly
HITL Gate 🔒Fraud Analyst reviews, approves Reg E determination, authorizes SAR filing
Reg FilingSAR via FinCEN BSA E-Filing, CTR, Reg E provisional credit, OFAC block report

5 Sub-Agents Running
in Parallel

When a trigger fires, the orchestrator dispatches all five sub-agents simultaneously — not sequentially — against a normalized fraud event record. Each agent owns a distinct signal domain.

TXN-RISK
Transaction Risk Scorer
XGBoost · Graph Neural Net · Real-Time Inference
Scores the triggering transaction 0–100 using ensemble ML. XGBoost handles tabular features (amount, velocity, counterparty); GNN traverses account relationship topology to detect mule networks and bust-out rings. Sub-200ms inference.
ACCT-STATE
Account State Analyzer
FIS · Fiserv Core · 36-Month Transaction History
Reconstructs full account behavioral baseline from 36 months of transaction history. Detects deviations: new payee + high amount, velocity change, dormancy-then-spike, geographic anomaly. Computes account risk trajectory and ATO indicators.
BIO-BEHAV
Behavioral Biometrics
BioCatch · ThreatMetrix · Sardine
Analyzes session-layer behavioral signals: keystroke dynamics, mouse trajectory, swipe patterns, device fingerprint consistency, session metadata. Detects credential stuffing, remote desktop fraud, RAT sessions, and bot-assisted human overlay attacks.
REG-COMP
Regulatory Compliance Agent
BSA-AML · Reg E · FFIEC · CFPB Rules
Determines applicable regulatory obligations given fraud type and confirmed signals. Calculates Reg E provisional credit eligibility, SAR filing obligation, CTR threshold, and OFAC blocking requirements. Tracks and surfaces all regulatory deadlines in every HITL packet.
CASE-MGT
Case Management Agent
NICE Actimize · Verafin · SAR Pre-fill · HITL Queue
Assembles the complete case file: fraud narrative, evidence exhibits, SAR narrative draft (FinCEN-compliant), Reg E determination memo, and HITL decision packet. Routes to analyst queue with priority classification and all regulatory deadlines surfaced.
LIVE-AI
Live Custom AI
Claude API · Any Entity · Any Fraud Type
Scenario 05 connects live to Claude Sonnet. Input any institution name, account holder, transaction details, or fraud type. The full 5-agent pipeline executes on real AI reasoning — not synthetic data. Demonstrates true production capability on novel scenarios.

Numbers That Move a
CFO from Interested to Committed

Analyst Time · Before: 6 hrs
45min
↓ 87% reduction
Fraud Case Review Time
Cost per SAR · Before: ~$2.50
$0.03
↓ 99% cost reduction
Cost Per SAR Filed
Reg E Compliance · Before: Manual
100%
5-day clock tracked
Reg E Clock Compliance
Mule Detection · Before: Days
<2s
graph traversal
Mule Network Detection

4 Production Fraud Types
+ Live Custom AI

Each scenario is based on documented fraud typologies with realistic account profiles, transaction patterns, and regulatory implications. Scenarios 01–04 use synthetic data. Scenario 05 connects to the live Claude API.

01P0 · Critical
Account Takeover (ATO)
Marcus Reeves · Wire $47,500 · Unauthorized
Credential compromise followed by beneficiary change and outbound wire. Behavioral biometrics detect session anomaly (BioCatch score 94). Reg E provisional credit obligation triggered within 5 business days. Expected outcome: Wire recall, SAR filed, account locked.
02P0 · Critical
Business Email Compromise
Apex Manufacturing LLC · Wire $185,000 · Fraudulent
CFO impersonation via spoofed domain, authorizes vendor wire to mule account. GNN detects first-time payee + account age <30 days + wire amount 4× baseline. SAR obligation under 31 U.S.C. §5318(g). FBI IC3 referral protocol triggered.
03P1 · High
Synthetic Identity Fraud
Alex J. Mercer · Bust-Out Pattern · $18,000
SSN belongs to minor, identity assembled from breached PII. 8-month account seasoning then rapid credit utilization (bust-out pattern). Account State Analyzer detects velocity anomaly. Transaction Risk Scorer flags synthetic identity probability 0.89.
04P1 · High
Mule Account Network
Zelle Cluster · 7 Accounts · $47,200 Total
Structured Zelle payments through 7 connected accounts with common device fingerprints and overlapping IP ranges. GNN identifies full mule topology in <2 seconds. All 7 accounts flagged simultaneously. Network SAR with all participants named.
05Live AI
Live Custom AI — Claude API
Any Entity · Any Transaction · Real AI Reasoning · ~$0.02–$0.05 per run
Enter any institution, account holder, and transaction details. The full 5-agent pipeline executes on live Claude Sonnet reasoning — not synthetic data. Demonstrates true production capability on novel scenarios, your institution's specific product set, or edge cases from your actual case backlog. Requires API key entry in the demo interface.

5 Peer Source Tools —
No Hierarchy · Parallel Execution

All five execute simultaneously on every triggering event. No source has authority over another. Conflicting signals are resolved through weighted synthesis and confidence scoring.

[ML-INFERENCE]
Transaction Risk ML
XGBoost Ensemble
Graph Neural Net
Real-Time <200ms
[ACCT-HISTORY]
Account Intelligence
FIS · Fiserv Core
36-Month Tx History
Behavioral Baseline
[BIOMETRICS]
Behavioral Signals
BioCatch · ThreatMetrix
Sardine · Device Intel
Session Analysis
[REG-RULES]
Regulatory Engine
BSA-AML · Reg E
FFIEC · CFPB Rules
Deadline Calculator
[CASE-QUEUE]
Case Management
NICE Actimize
Verafin · SAR Pre-fill
HITL Workflow Queue

Mandatory
Human-in-the-Loop

Every material fraud decision is hardcoded behind a mandatory HITL gate. The agent prepares the evidence. The Fraud Analyst decides. These gates cannot be bypassed under any configuration.

🔒
Agent Assembles — Analyst Decides
All 5 agents assemble every exhibit, score every signal, and draft every document. The Fraud Analyst reviews the complete evidence package and makes the final determination. The system cannot override human judgment.
Regulatory Clocks Surfaced — Not Hidden
Every HITL packet displays the applicable regulatory deadlines: SAR 30-day, Reg E provisional credit 5 business days, CTR 15 calendar days, OFAC block report 10 business days. No analyst ever misses a filing deadline.
🧾
Complete Audit Trail — Examination-Ready
Every agent determination, signal weight, regulatory citation, and analyst action is immutably logged. Reproducible on demand within 24 hours of CFPB or FinCEN examiner request.
Mandatory HITL Gates All Required for Production
Required
Reg E Provisional Credit Decision
Analyst approves or denies within 5 business days. System cannot auto-credit or auto-deny.
Required
SAR Filing Authorization
Fraud Analyst reviews narrative, approves, and submits via FinCEN BSA E-Filing. Agent never submits.
Required
Wire Recall / Account Freeze
Analyst authorizes real-time wire recall or account freeze. Irreversible actions require human approval.
Required
Fraud Loss Reimbursement
Final reimbursement decision after investigation. Governed by Reg E determination and bank policy.
Reg E
OFAC Block Report
10 business-day reporting obligation. Analyst confirms blocking and submits OFAC report.

Everything You Need to
Evaluate and Deploy

Six enterprise-grade resources covering every dimension — from demo runbook to production deployment, SR 11-7 model governance, and a live agent pipeline demo.

📋
Pre-Meeting Brief
Demonstration Brief
Architecture v2.1 technical brief for CRO/CFO meetings. 5 scenario scripts, 20-minute runbook, static vs. live AI mode, Reg E and SAR workflow overview.
View Brief →
Technical Reference
Platform Capability Matrix
Complete capability coverage table with Covered / Phase 2 / Out of Scope status. All 5 agent technology stacks, fraud typology coverage, and regulatory framework mapping.
View Matrix →
🗓
Commercial Terms
90-Day Pilot Structure
5-phase 13-week timeline with deliverables and success gates. 10 UAT scenarios. Reg E compliance validation. Go-live requirements. No lock-in, no penalty to exit.
View Pilot Terms →
📖
Technical Manual
Production Implementation Guide
13-section deployment manual covering system integration, agent calibration, fraud analyst workflow, SR 11-7 model risk, PII/GDPR architecture, and exam readiness.
View Guide →
🏗
Technical Visual
System Architecture Diagram
Full production diagram: signal ingestion layers, orchestrator, 5 parallel agents, 5 peer source tools, correlation engine, LLM reasoning, HITL gate, and regulatory filing outputs.
View Architecture →
📊
Financial Model
ROI Calculator
Full business case model across 5 benefit layers (labor, fraud loss, chargebacks, false positives, regulatory) with IRR, 3-year NPV, sensitivity analysis, baseline detection, and preventability factor. Built for CFO conversations.
Build Business Case →
Live Interactive Demo
Run the Agent Pipeline
Live 5-agent fraud investigation pipeline with 4 pre-built scenarios plus live AI mode. Account takeover, BEC, synthetic identity, mule networks. Connects to Claude API for novel scenarios.
Run Demo ↗

Ready to Scope the Pilot?

In a 30-minute architecture session we map this pipeline to your fraud platform, data infrastructure, and analyst workflow. A scoped 90-day production pilot can begin within two weeks of that session.

Schedule the Live Demo → View 90-Day Pilot Terms
+1 (609) 721-2815  ·  contact​@caibots​.com  ·  caibots.com  ·  Princeton, NJ