Transfer safety
Safe Beneficiary Verification and Transfer Fraud Prevention
Use independent confirmation, name checks, test payments and business controls before sending money.
Direct answer: Verify a beneficiary through a trusted independent channel, compare account and IFSC details, review the displayed name, and treat changed bank instructions or urgent secrecy as high-risk signals.
Independent call-back
When bank details arrive by email or chat, call a known number already held in your records. Do not use the number provided in the same change request. For organizations, separate the person requesting a vendor change from the person approving it.
Review the bank feedback
Check bank name, branch, beneficiary name and account number. Small spelling differences can occur, but a different person or organization requires investigation. A successful beneficiary registration is not proof that the request itself was genuine.
Test before high value
A small transfer followed by confirmation can reduce entry risk, but it is not a substitute for identity checks. Fraudsters can control a test account too. Use test payments as one layer within a documented process.
Recognize manipulation
Urgency, secrecy, claims that a senior person is unavailable, new “temporary” accounts, remote-access requests and OTP demands are common warning signs. Pause and escalate rather than trying to complete the task quickly.
After suspected fraud
Contact the bank immediately through official channels, preserve messages and transaction references, and follow applicable reporting routes. Do not pay unofficial recovery agents or continue communicating through a compromised account.
Worked example
An email appearing to come from a supplier asks for payment to a new account before noon. The finance employee calls the supplier’s previously stored number and learns that the email account was compromised. No payment is made. The control succeeds because verification used an independent channel rather than the contact details supplied in the suspicious request.
How to use source dates
Routing records, bank controls, payment limits, holiday calendars and postal classifications can change. Read the visible source-checked or reviewed date, then confirm time-sensitive details through the relevant bank, RBI, NPCI or India Post channel. A dated source is evidence of what was checked; it is not a promise that no change occurred afterward.
Practical checklist
- Use current details from an authenticated or independently confirmed source.
- Compare every character and the beneficiary context before authorization.
- Stop when the bank name, branch, account holder or request channel is unexpected.
- Keep the transaction or service reference and avoid duplicate action while status is pending.
- Use official bank, RBI, NPCI or India Post support routes for critical confirmation.
Record keeping and escalation
For important actions, keep the exact identifier, date, source, displayed result and any transaction or complaint reference. Businesses should retain who supplied and who approved changed details. If a result conflicts with current bank or postal information, submit a correction with a source reference; the directory records the review without silently rewriting the original imported row.
Questions people ask
Does beneficiary name confirmation guarantee safety?
No. It is a useful signal but does not prove the instruction came from the intended person.
Is a test transfer enough?
No. Combine it with independent identity and instruction verification.
Should I share an OTP with bank support?
No. Banks do not need your OTP to receive a complaint.
How should a business approve bank changes?
Use documented maker-checker approval and a trusted call-back to an existing contact.
Questions readers often ask
Does beneficiary name confirmation guarantee safety?
No. It is a useful signal but does not prove the instruction came from the intended person.
Is a test transfer enough?
No. Combine it with independent identity and instruction verification.
Should I share an OTP with bank support?
No. Banks do not need your OTP to receive a complaint.
How should a business approve bank changes?
Use documented maker-checker approval and a trusted call-back to an existing contact.
Sources reviewed
- Reserve Bank of India — Limiting liability in unauthorised electronic transactions
- Reserve Bank — Integrated Ombudsman Scheme FAQs
Sources support the general explanation. Confirm current bank-specific details before a transaction.