Anti-Scam
Scans message images for visual scam patterns — fake Discord login pages, fake Steam giveaways, crypto airdrop screenshots, fake Nitro offers — using AI image analysis. The companion to keyword-based scam detection in Automod → Links.
Security → Anti-Scam, with the monthly scan meter.
Why this exists
Modern Discord scams are increasingly image-based: a "fake official Steam giveaway" screenshot that links out via the image's text, not via a URL in the message. Keyword automod can't catch this. Anti-Scam looks at image attachments and flags suspicious ones.
Settings
| Setting | What it does |
|---|---|
| Enabled | Master switch. |
| Sensitivity | low / medium / high. Controls how suspicious a message has to look before Phantom takes a closer look at its images. Higher = scans more aggressively. |
| Log channel | Where to post detections. Falls back to the Audit Log channel, then the master log channel. |
| Mod role | Pinged on a high-confidence hit. |
| Timeout (minutes) | Applied on a high-confidence detection. 0 disables (downgrade high → delete + log only). |
| DM user | Whether to DM the offending member explaining the removal. |
| Exempt roles | Members holding any of these are never scanned. Useful for trusted staff who legitimately post screenshots. |
| Exempt channels | Channels excluded from scanning entirely (e.g. a crypto-discussion channel where reward screenshots are on-topic). |
How sensitivity works
Phantom uses a quick trust check (account age, message rate, attachment patterns, etc.) to decide which messages warrant a deeper look. The sensitivity setting controls how aggressive that check is:
low— only messages that look very suspicious get a deeper look. Catches fewer false positives.medium— balanced. Most servers should start here.high— almost every image in chat gets a deeper look. Catches the most scams.
Tips
- Medium is the right default for most servers.
- Exempt your art / screenshot channels so legitimate uploads aren't scanned unnecessarily.
- Pair with the mod-role ping if your community can handle the noise — staff seeing "scam screenshot from @user" near-real-time is a powerful signal.
- DMs are user-friendly. A first-time poster getting their image silently removed is confused; a DM explanation prevents repeat-offending.
Cross-Server Sync
Syncable settings (when security sync is on):
- Enabled toggle
- Sensitivity
- Timeout duration
- DM user toggle
The log channel, mod role, exempt roles, and exempt channels stay local per server.
Cost
Anti-Scam is available on every plan. Free servers get a monthly allowance of 250 image scans; Phantom Pro removes the cap — scanning is unlimited.
Permissions
security.view— see detection logsecurity.edit— change settings
Behaviour
- Only image attachments are scanned (not videos, not links to external images).
- A per-message rate limit prevents one spam wave from causing a flood of scans in a few seconds.
- Detection logs are kept for 30 days, then auto-pruned.
When scanning is unavailable
Image scanning is never silently skipped. The page counts every image Phantom wanted to scan and couldn't, and shows a red banner with that number when it happens.
Two different things can be behind it:
- The monthly allowance is used up on a free server. The scan meter at the top of the page shows how many of the 250 are gone and when it resets. Upgrading to Pro removes the cap.
- The scanner isn't running. Images matching scams the network already knows are still blocked, but new ones get through. This one is for whoever runs the Phantom instance, not for you — the banner names the setting that's missing.
Either way, the rest of Anti-Scam keeps working. Known-scam matching, the detection log and the configured actions are unaffected.
Related pages
- Automod → Links — text-based scam URL detection
- Automod → Attachments — block image types entirely
- Auto-Assist — AI ticket helper
- Pricing & Phantom Pro — plans + what Pro unlocks
