{
 "slug": "payee-authorization-claims",
 "topic_id": "TOPIC-187",
 "cluster": "Insurance Carriers, Health Payers & Beneficiary Identity",
 "tier": "Tier B",
 "title": "First notice of loss to payout: claimant identity across the claims lifecycle",
 "summary": "Claims payments are directed to details captured during a phone call or portal session, often by temporary catastrophe staff, and paid quickly by design. Speed is a competitive feature and an attack surface.",
 "lede": "A carrier's brand promise after a hurricane is that money moves fast. That promise is genuine, it is the right one, and it is also the reason the payee field is the least protected part of the claims process.",
 "date": "2024-01-14",
 "category": "Vertical",
 "author_id": "desmond-okafor-hale",
 "tags": [
  "claims fraud",
  "catastrophe claims",
  "payee verification",
  "property casualty",
  "digital payments",
  "first notice of loss"
 ],
 "image_title": "Payee Authorization Claims",
 "schema": "Article",
 "key_takeaways": [
  "Identity verification, where it occurs, happens at first notice of loss. Payment details are captured later and are not bound to it.",
  "Catastrophe surge staffing means the person capturing payment details may have been hired three weeks earlier.",
  "Any control must function under degraded conditions — displaced claimants, lost documents, poor connectivity — or it will be bypassed in exactly the event it was built for."
 ],
 "body": [
  {
   "type": "h2",
   "text": "The fraud that is not about fabricated losses"
  },
  {
   "type": "diagram",
   "kind": "flow",
   "alt": "Two events, months apart, one weak link",
   "caption": "The claim number is the credential, and it is printed on everything.",
   "nodes": [
    {
     "label": "First notice of loss",
     "note": "identity loosely checked"
    },
    {
     "label": "Claim number issued",
     "note": "appears on all correspondence",
     "bad": true
    },
    {
     "label": "Months of adjustment",
     "note": "many parties see the number"
    },
    {
     "label": "Payment instruction accepted",
     "note": "on the claim number",
     "bad": true
    }
   ]
  },
  {
   "type": "p",
   "html": "Claims fraud discourse concentrates on invented or inflated losses, and that is where the analytics investment goes. This article is about a different thing: a real loss, a real policyholder, a real entitlement, and a payment that goes somewhere else."
  },
  {
   "type": "p",
   "html": "It attracts less attention because it does not show up in loss ratio analysis as fraud. It shows up as a payment that was made, followed weeks later by a policyholder saying they never received it."
  },
  {
   "type": "h2",
   "text": "Where the gap opens"
  },
  {
   "type": "table",
   "head": [
    "Stage",
    "Identity assurance",
    "Payment detail captured?"
   ],
   "rows": [
    [
     "First notice of loss",
     "Policy number, policyholder details, sometimes verification questions",
     "No"
    ],
    [
     "Adjuster assignment",
     "None — internal",
     "No"
    ],
    [
     "Inspection or documentation",
     "Physical presence, sometimes",
     "No"
    ],
    [
     "Settlement agreement",
     "Policyholder acceptance",
     "Sometimes"
    ],
    [
     "<strong style=\"font-weight:600\">Payment setup</strong>",
     "<strong style=\"font-weight:600\">Claim number plus personal details</strong>",
     "<strong style=\"font-weight:600\">Yes</strong>"
    ]
   ]
  },
  {
   "type": "p",
   "html": "Whatever verification occurred at the first row is not carried to the last. They are separate interactions, frequently with different staff, days or weeks apart."
  },
  {
   "type": "h2",
   "text": "Why catastrophe conditions make it worse"
  },
  {
   "type": "p",
   "html": "After a major event a carrier's claims volume can rise by an order of magnitude within days. The response is surge staffing: contractors, temporary licences where permitted, independent adjusters, and call centre capacity stood up quickly."
  },
  {
   "type": "p",
   "html": "Those people are competent and they are new. They do not know the book, they are working to throughput targets, and the organisational memory that would flag an unusual request does not exist yet."
  },
  {
   "type": "p",
   "html": "Simultaneously, the legitimate claimants are at their least verifiable: displaced, without documents, on borrowed phones, reachable at addresses that no longer exist."
  },
  {
   "type": "h2",
   "text": "The design constraint that governs everything"
  },
  {
   "type": "p",
   "html": "A control that fails under catastrophe conditions is worse than no control, because it will be suspended — formally or informally — in exactly the event where exposure peaks."
  },
  {
   "type": "p",
   "html": "So the requirements are unusual:"
  },
  {
   "type": "ul",
   "items": [
    "Must work on a borrowed or replacement device.",
    "Must work with degraded connectivity, including offline verification.",
    "Must not require the claimant to possess documents.",
    "Must have an assisted path staffed at surge volume.",
    "Must not delay payment for claimants who satisfy it."
   ]
  },
  {
   "type": "h2",
   "text": "Binding FNOL to payment"
  },
  {
   "type": "p",
   "html": "The design is to move enrolment earlier and use it later."
  },
  {
   "type": "ol",
   "items": [
    "At first notice of loss, while the claimant is engaged and motivated, enrol a credential. This takes under a minute and can be done on any device.",
    "When payment details are captured, the claimant signs a canonical statement rendering the full destination details and the settlement amount.",
    "Payment executes against a verified instruction rather than against a claim number."
   ]
  },
  {
   "type": "p",
   "html": "The critical scheduling point is that enrolment happens at FNOL, not at payment. At FNOL the claimant is talking to you and wants something. At payment, weeks later, an enrolment request produces abandonment and support volume."
  },
  {
   "type": "h2",
   "text": "What to measure"
  },
  {
   "type": "p",
   "html": "Carriers do not publish payee-redirection losses, and this record is graded accordingly. Internally the numbers exist:"
  },
  {
   "type": "ol",
   "items": [
    "Re-issued payments with a fraud or misdirection disposition, as a rate per 10,000 payments.",
    "The same rate during catastrophe response versus steady state. The ratio is the finding.",
    "Share of payments directed to details captured after FNOL.",
    "Support contacts about non-receipt, which is the leading indicator before a disposition is assigned."
   ]
  },
  {
   "type": "h2",
   "text": "The competing pressure, acknowledged"
  },
  {
   "type": "p",
   "html": "Every claims leader reading this is weighing it against cycle time, and they should. Speed of payment after a catastrophe is not a marketing nicety — it determines whether a family can secure temporary housing."
  },
  {
   "type": "p",
   "html": "The honest framing is that this control should add zero time for claimants who enrolled at FNOL, and that the assisted path must be resourced at surge volume rather than being a queue. A design that trades claimant hardship for fraud reduction has failed regardless of its numbers."
  },
  {
   "type": "h2",
   "text": "Who has seen the claim number by payout"
  },
  {
   "type": "table",
   "caption": "The distribution list of a claim reference",
   "head": [
    "Party",
    "Has the number"
   ],
   "rows": [
    [
     "Claimant",
     "Yes"
    ],
    [
     "Adjuster and carrier staff",
     "Yes"
    ],
    [
     "Repairer, contractor or provider",
     "Yes"
    ],
    [
     "Broker or agent",
     "Yes"
    ],
    [
     "Anyone who received forwarded correspondence",
     "<strong style=\"font-weight:600\">Yes</strong>"
    ]
   ]
  },
  {
   "type": "p",
   "html": "A reference that everyone in a months-long process has seen is a poor authenticator for the single irreversible step at the end of it."
  },
  {
   "type": "h2",
   "text": "Objections and honest limits"
  },
  {
   "type": "p",
   "html": "<strong style=\"font-weight:600\">“We verify the claimant at first notice.”</strong> Loosely, and correctly — a claimant in distress should not face a heavy check. The error is treating that early check as covering the payout months later."
  },
  {
   "type": "p",
   "html": "<strong style=\"font-weight:600\">“Payouts go to the account on file.”</strong> Which is exactly the field an attacker changes, usually shortly before payout and through the same correspondence channel."
  }
 ],
 "faq": [
  {
   "q": "What about claimants who lost their phone in the event?",
   "a": "The assisted path handles them, and it must be staffed for surge. Enrolment on a replacement or borrowed device is also possible and takes under a minute."
  },
  {
   "q": "Does this slow catastrophe payments?",
   "a": "Not for enrolled claimants. The design's central constraint is that it must not add time, and any implementation that does should be changed rather than defended."
  },
  {
   "q": "Is payee redirection common?",
   "a": "It is not publicly quantified, which is why this record is graded conservatively. Carriers can measure it internally from re-issuance dispositions."
  },
  {
   "q": "Does this apply to third-party payees like contractors?",
   "a": "Those need their own treatment, including assignment of benefits arrangements, which carry a distinct and larger set of problems."
  },
  {
   "q": "Why is the claim number a weak authenticator?",
   "a": "By payout it has been seen by the claimant, the carrier, adjusters, contractors, brokers and anyone forwarded the correspondence."
  },
  {
   "q": "Should identity be checked harder at first notice?",
   "a": "No. A claimant in distress should face a light check. The error is treating that check as covering the payout months later."
  },
  {
   "q": "What is the highest-risk pattern?",
   "a": "A destination account changed during the life of the claim, shortly before payout."
  }
 ],
 "sources": [
  {
   "t": "NAIC — model laws, regulations and guidelines",
   "u": "https://content.naic.org/cipr-topics"
  },
  {
   "t": "FCC — protecting consumers from SIM swap and port-out fraud",
   "u": "https://www.fcc.gov/sim-swap-port-out-fraud"
  }
 ],
 "related": [
  {
   "slug": "provider-banking-change-control",
   "title": "Provider payment diversion",
   "category": "Vertical"
  },
  {
   "slug": "claimant-authorization",
   "title": "Settlement disbursement",
   "category": "Compliance"
  },
  {
   "slug": "tiered-emergency-authorization",
   "title": "Emergency and disaster assistance",
   "category": "Comparison"
  }
 ],
 "image": "https://cdn.twc.sh/images/igcache/Payee%20Authorization%20Claims/1200_630/blog.jpg",
 "wordcount": 940,
 "url": "/blog/payee-authorization-claims.html",
 "reading_time": "4 min read",
 "seo_title": "Claimant identity across the claims lifecycle",
 "meta_description": "Claims payments are directed to details captured during a phone call or portal session, often by temporary catastrophe staff, and paid quickly by design.",
 "hub": {
  "slug": "topics/payer-identity",
  "title": "Insurance and payer identity"
 },
 "answer": "Between the first notice of loss and the payout, which are separate events months apart. The payment instruction is accepted on the strength of a claim number that appears on correspondence anyone in the chain has seen, and the claimant is not asked to confirm where the money goes.",
 "answer_q": "Where does claimant identity actually break?",
 "glossary": [
  {
   "term": "First notice of loss",
   "def": "The claimant's initial report, where identity is checked lightly and correctly so."
  },
  {
   "term": "Claim reference",
   "def": "The identifier tying correspondence together, widely distributed and frequently used as a de facto authenticator."
  },
  {
   "term": "Assignment of benefits",
   "def": "Directing payment to a third party such as a contractor, which legitimately complicates the destination field."
  }
 ],
 "checklist": {
  "title": "Binding the payout",
  "id": "payout",
  "desc": "Four steps.",
  "steps": [
   {
    "name": "Separate the payout instruction from the claim reference.",
    "text": "The reference is not a credential."
   },
   {
    "name": "Enrol the claimant at first notice, lightly.",
    "text": "One gesture, so there is something to re-assert later."
   },
   {
    "name": "Require that credential at payout.",
    "text": "And on any change to the destination."
   },
   {
    "name": "Hold payouts to a destination changed within the claim.",
    "text": "A short delay on the highest-risk pattern."
   }
  ]
 },
 "cta": {
  "title": "Where this fits in Manav",
  "html": "Manav binds the authorising person to the exact change or payout instruction, and produces a receipt a carrier, a beneficiary or a court can verify without calling the issuer.",
  "href": "../docs.html",
  "label": "See authorisation receipts"
 }
}