How to check a suspicious email safely
A practical seven step process for checking a suspicious email before you click, reply, pay or sign in, written so anyone can follow it without help.
Choose the explanation that suits you. Both versions cover the same topic.
Pause before doing anything
Do not open the attachment, scan the code or follow the link yet. Urgency is a reason to slow down, not a reason to skip checking.
Ask what they want
Is the message asking for money, a password, a security code or a change to bank details? These requests deserve an independent check, even when the message looks familiar.
Check with someone you already trust
Open the company app yourself or call a number you already have. Do not use a number or link supplied only in the worrying email.
Let Jatzo explain the evidence
Upload the original email file. Read the warning, why it matters and the suggested next step. Low risk means few warning signs were found; it is not permission to trust the message.
Be careful with links and QR codes
A QR code can hide a web address. Personal and above can decode supported image attachments without opening the destination. An HTTP warning means the link is unencrypted; avoid entering private information on an HTTP page.
Save the right reference
Paid plans can download a PDF named after the Case ID. That reference helps you find the same case later. Email delivery, where enabled, goes only to your registered account address.
