SIM Swap API

In the digital age, where identity and transactions are increasingly authenticated via mobile phone, protecting the integrity of your customers' SIM cards is essential. Plusmo's SIM Swap API is your essential tool for real-time identity verification, acting as a protective shield against one of the most sophisticated and difficult-to-detect fraud techniques: SIM Swapping.
More information

Inform and verify: Plusmo's SIM Swap API

Our API not only informs you but also directly and instantly verifies the recent history of the SIM card for any mobile phone number.

This real-time verification action is the key to thwarting a SIM Swapping attack right at the moment it is being executed.
What key data does our API provide?
Plusmo's SIM Swap API executes a direct and secure query with mobile operators, providing a concise and decisive response that integrates immediately into your validation flow. The three critical pieces of information you receive are:
Inform
 Reports if the SIM card associated with that number has been changed or replaced in the last 90 days. If a recent change is detected, it is a maximum alert signal.
Portability
 Confirms if the customer has changed mobile operators (ported) within the same period. While this is a legitimate operation, its combination with other risk factors may indicate suspicious activity.
Validity
Verifies if the queried mobile phone number is valid and active on the network.
*The API provides this information instantly.
More information

How real-time validation works?

The integration of Plusmo's SIM Swap API is fluid and runs silently on the backend of your application or platform, without creating friction in the legitimate user experience.

Attack and defense scenario:
1
High-risk operation initiation
The scammer successfully logs into the bank's application (e.g., using stolen credentials) and attempts to perform a critical operation such as a bank transfer or a change of access key.
2
Validation activation
The moment the scammer clicks "Confirm," your system triggers a query to the Plusmo SIM Swap API, sending the customer's phone number associated with the account.
3
Query to mobile operators
The API connects with the mobile operators' systems to obtain the latest information on the SIM card history for that number.
4
Instant response
The Plusmo API returns the response. If the response indicates a SIM Swap detected in the last 90 days, the red flag is raised.
5
Fraud denial
Your system, upon receiving the risk signal, denies the operation (even if the scammer tries to enter an intercepted OTP code) and marks it as fraudulent, protecting your customer's funds.
Why Integrate Plusmo: Key Business Benefits
Reduction of fraud losses
Minimize financial losses associated with Account Takeover (ATO) fraud.
Improvement of the detection rate
Identifies SIM Swapping attacks that traditional 2FA validations fail to detect.
Regulatory compliance
Strengthens your security protocols and compliance with anti-fraud regulations.
Better customer experience
Protect your users without introducing cumbersome verification steps or additional CAPTCHAs.
FAQ’S

Frequently Asked Questions

What exactly does the SIM Swap API do?
Why 90 days? Is the period configurable?
Does the API require my customer to install anything or grant any permission?
Is it compatible with all mobile operators?
How does the SIM Swap API differ from traditional 2FA authentication?
What happens if the customer legitimately changed their SIM card?
Contact Us
Please fill out the form and send us your message. We will contact you as soon as possible.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
info@plusmo.protect
Response in minutes, support and partnerships.
+1 (305) 555 - 0183
Monday to Friday · 9:00 AM - 6:00 PM EST
Offices
Buenos Aires - París