cd /news/ai-safety/ios-27-helps-apps-detect-when-a-user… · home topics ai-safety article
[ARTICLE · art-47120] src=9to5mac.com ↗ pub= topic=ai-safety verified=true sentiment=· neutral

iOS 27 helps apps detect when a user may be getting scammed in real time

Apple introduced a new iOS 27 framework called Trust Insights that helps apps detect and prevent social engineering scams in real time by analyzing behavioral signals on-device. The framework assigns risk levels to transactions such as payments, account changes, and communications, allowing apps to add warnings or delays. Apple emphasizes that Trust Insights does not inspect content of Photos, Messages, or Mail, and users can disable it in Settings, though a cooldown period may apply.

read2 min views1 publishedJul 2, 2026
iOS 27 helps apps detect when a user may be getting scammed in real time
Image: 9To5Mac (auto-discovered)

A new iOS 27 framework will help apps fight back against social engineering scams as they unfold via voice calls, text messages, emails, and more. Here are the details.

Details on the new Trust Insights framework #

With iOS 27, Apple is introducing a framework called Trust Insights that can alert apps when a user may be falling victim to a scam.

As Apple explains, social engineering scams are harder to detect automatically because the user is often the one carrying out the actions, “authenticated and legitimately.”

In recent years, tech support scams, authority impersonation, and family emergency fraud have become increasingly common, particularly as AI deepfakes have grown more accessible.

To counter that, Apple is introducing a framework that runs mostly on-device, analyzing “interaction patterns, timing, context, and basic sensor data.”

If it detects signs that a user may be getting coached through a scam, Trust Insights can assign a medium or high risk level, allowing the app to add warnings, delays, or additional verification steps. Apple stresses that Trust Insights doesn’t inspect the contents of Photos, Messages, or Mail. Instead, it analyzes behavioral signals on-device, immediately discards the underlying data, and sends only a single output value to Apple’s servers.

That value may then be combined with information from the user’s Apple Account and checks for unusual activity before Trust Insights returns its final assessment of the suspected scam.

Apple says that although users can disable Trust Insights in Settings, there may be a cooldown period meant “to protect users who may have themselves been coached into turning it off.”

Initially, Trusts Insights will cover five main operation categories. From the WWDC session:

.payment

: any exchange of assets, content, or money, including in-game purchases..account

: updating account details or security information..resourceUse

: requests to costly or constrained infrastructure, such as AI inference..communication

: sending messages, submitting forms, or signing documents..other

: a fallback for operations that don’t fit the above.

Apple adds that developers should submit feedback through Feedback Assistant if their use case falls under .other

. The company also asks developers to report how Trust Insights affected each transaction and, when possible, flag cases that were later confirmed as fraud to help improve the system.

To learn more about the upcoming Trusts Insights framework, follow this link.

Worth checking out on Amazon

Geoffrey Cain – ‘Steve Jobs in Exile’David Pogue – ’Apple: The First 50 Years’MacBook NeoLogitech MX Master 4AirPods Pro 3AirTag (2nd Generation) – 4 PackApple Watch Series 11Wireless CarPlay adapter

*FTC: We use income earning auto affiliate links.* [More.](https://9to5mac.com/about/#affiliate)

[our homepage](http://9to5mac.com/)for all the latest news, and follow 9to5Mac on

[exclusive stories](https://9to5mac.com/feature/exclusive/),

[reviews](https://9to5mac.com/guides/review/),

[how-tos](https://9to5mac.com/guides/how-to/), and

[subscribe to our YouTube channel](https://www.youtube.com/9to5mac)
── more in #ai-safety 4 stories · sorted by recency
── more on @apple 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/ios-27-helps-apps-de…] indexed:0 read:2min 2026-07-02 ·