Your fraud problem does not need to fit a product category.
Protect the event that matters to your business. SENTR’s modular engine supports custom event types, mapped signals and configurable rules—so we can explore fraud workflows beyond the industries featured here.
Start with the business action—not the industry label.
Some fraud problems sit between categories. A loyalty programme, a hybrid marketplace or an internal transfer
may need different signals and a different response from a card payment.
Loyalty programmeclaims & redemption
Hybrid marketplacebuyer + seller risk
Internal transferinventory & approval
SENTR’s configurable event model gives a practical starting point: the action, the context and the decision your team needs to make.
01
Define the pattern
Name the loss or abuse pattern you want to address.
02
Connect the journey
Link activity before and after the event, using the data you can supply.
03
Agree the response
Decide who acts on the decision and how the outcome returns to the operation.
Start with the action you need to protect.
Work through six practical questions with us. The answers shape the integration, controls and evaluation.
Use the session to clarify ownership, evidence requirements and the boundaries of a workable evaluation.
Your event. The connected SENTR engine.
Define your event types and map the context they need. The shared SENTR decisioning and investigation foundation connects the work.
Custom operation anatomy
01Event inventory (yours)Start with the events and identifiers your systems can supply. We help map that context to a workable protection scope.
02Field mapping & historyUniversal ingestion — REST, webhooks, files, databases or streams — plus backfill when available.
03Decision compositionRules, lists, scoring profiles and action policy on the events that matter to your operation.
04Explain · investigate · improveAttribution at decision time; queues for the uncertain remainder; outcomes into lists and tags — not full autonomy.
What this looks like in practice
An unusual internal transfer needs a closer look
A multi-brand group needs risk on inventory reallocation between sister companies — not card checkout.
Employee login
Warehouse pick
Finance approval
transfer_request
Response
Hold → case when beneficiary and SKU velocity mismatch
Evidence
Rule attribution plus linked prior transfers
Architecture Session scopes ingestion from the ERP feed and whether SENTR.Citadel ownership exists.
This is an illustrative custom workflow, not a packaged ERP integration. Discovery must validate the data, signals and decision handling before it can be offered.
Product status
Custom events are supported; suitability for a new domain depends on its data and workflow. We confirm that scope with you. Automated dispute filing and AML screening are not available today. Qualified Shadow Mode can test an agreed SENTR.Citadel use case read-only.
Inside the workflow · illustrative configurations
From an unfamiliar event to a testable operating workflow.
Custom event types extend the platform’s decision framework. Suitability still depends on the required signals, history and an application that can act on the result.
Illustrative mechanism
Start with an event your business can describe.Read the diagram
An illustrative authentication event includes account, device, session, IP and payment-method identifiers, plus an amount field. They are example mapped fields, not a required schema: include only fields applicable to that event. A custom event still needs usable signals, detection logic and an application that can act on the result.
01Define the action, not just a generic risk score
Connect the context
Identify the event, its source, the relevant entities and the outcome you can observe. Map fields and import usable history rather than assuming a ready-made industry connector.
Configure the response
Compose event-scoped rules, list influence and review/block policies around those mapped signals. A custom event name alone does not create detection logic.
Investigate and learn
Specify what the reviewer must inspect, how cases move and which reasons distinguish confirmed abuse from legitimate activity. Agree success criteria before judging a result.
02Test a new policy without replacing the current operation
Connect the context
Use an agreed feed, baseline and historical context. Establish which business actions must remain under the incumbent’s control.
Configure the response
Test rules and use Monitor for non-impacting evaluation. For qualified SENTR.Citadel comparisons, Shadow Mode is the separate read-only deployment route.
Investigate and learn
Investigate differences and label outcomes. Use the evidence to proceed, refine the scope or stop—without presenting disagreement with the incumbent as automatically better detection.