ScanScam Integrity · 3-minute demo
The agent is allowed to pay.The bank account changed.
ScanScam is an independent checkpoint between an autonomous agent and a consequential action. It looks for changed facts, broken mandates, missing verification, and binding consequences before the action crosses the boundary.
Current moment
1 · Principal mandate
The agent is allowed to pay routine invoices.
ACME is an established supplier. Payments under CAD 2,500 may be handled automatically when identity and payment instructions are unchanged.
Trusted baseline
vendor: ACME
bank: RBC-1111
amount: CAD 300
Proposed action
vendor: ACME
bank: RBC-1111
amount: CAD 300
Principal mandate
Pay established suppliers automatically below CAD 2,500 when identity and payment instructions are unchanged. Require independent verification when a payment destination changes.
20/20
external-agent benchmark decisions
0
dangerous false ALLOWs in that sample
8/8
ALLOW paths committed exactly
What happens
Audit trail
A paper trail machines can verify.
Observation
—
Baseline
—
Challenge
—
Evidence
—
Authorization
—
Commit
—
The point
ScanScam does not need to be the buying agent.
Any agent can call ScanScam immediately before a payment, purchase, publication, permission change, contract, or other consequential action. Guardian is the independent preflight layer.
Discover
Agent finds ScanScam through an MCP registry or direct configuration.
Preflight
Agent sends the independently observed action to Guardian.
Decide
ALLOW · CHALLENGE · APPROVAL_REQUIRED · DENY.
Commit
Only an exact ALLOW action can settle with an execution receipt.