Skip to main content
    Back to Resources
    Guides9 min read

    Last verified:

    Scam-Proof Your Family: The Four-Minute Setup That Beats a Cloned Voice

    AI can fake a familiar voice on the phone from a few seconds of audio. The thing that stops it takes four minutes and costs nothing. Here is the full setup.

    Get the full guide as a PDF

    Free

    Save it, print it, read it offline. It's yours.

    A woman got a call from her daughter. She was crying, saying she'd been taken, that someone had her, and that they wanted money. It was her daughter's voice, the exact voice she'd heard every day for twenty years. She paid five thousand dollars. Then she found out her daughter had been sitting at work the whole time. The voice on the phone was a clone.

    The plan · 4 steps

    1. 1The Safe Word (Start Here)
    2. 2The Callback Rule
    3. 3The Scam-Checker Prompt
    4. 4The Exposure Prompt

    Here's the part that changes everything: cloning a voice takes a few seconds of audio. A voicemail. A video you posted. A story you told at a wedding. Anything with you talking in it is enough.

    You do not need to become a security expert. You do not need to delete everything and hide. A four-minute setup, done once with your family, beats this whole category of attack, even when the voice is perfect.

    Why This Works Now (And Didn't Two Years Ago)

    Two years ago, faking someone's voice took a studio, expensive software, and real skill. Today it takes a short clip off social media and a free website. That's the whole shift. The people doing this are not geniuses. They just have tools that didn't exist before.

    The same thing happened to scam emails. They used to be easy to spot because of the clumsy spelling and broken grammar. AI writes them now, so they read perfectly, in your language, in the right tone. The old "just look for bad spelling" advice is dead.

    A U.S. Senate report found that in a single year Americans lost more than 893 million dollars to AI-powered scams across over 22,000 complaints, and that more than 82% of phishing emails are now written with AI. That report was American, but the scam absolutely is not. Voice cloning and AI-written scam messages work in every country and every language.

    1

    The Safe Word (Start Here)

    This is the heart of the whole guide. A safe word is a private word your family agrees on. If someone calls sounding like you and asking for money or help, the other person asks for the word. A scammer with a perfect clone of your voice still does not know it. That's the whole trick, and it works no matter how real the voice sounds.

    How to pick one

    Pick a word or short phrase nobody could guess and that you have never posted anywhere. Not a pet's name. Not a street you've lived on. Not a kid's birthday. Something random and a little odd is best, two unrelated words stuck together works great (like "purple lighthouse"). Easy for your family to remember, impossible for a stranger to know.

    Who needs to know it

    Anyone who would actually send money or rush to help if they thought you were in trouble. Your parents. Your adult kids. Your spouse. A close sibling. A business partner. Keep the circle to people you truly trust, that's the point.

    How to set it up without it being weird

    One group text. One sentence. Done. Send this to your trusted family group and agree on the word together:

    Prompt 1 · Copy & paste
    Quick family thing, takes 10 seconds. AI can now fake people's voices on the phone. So we're setting up a family safe word. If any of us ever calls in a panic asking for money or help, the other person asks for the word. No word = it's not really us, hang up and call back. Let's use: [OUR WORD]. Keep it between us and never post it anywhere.

    Tip: If you'd rather not put the actual word in writing, send the message without it and just say the word out loud on a quick call or in person. Either way, the whole setup takes about four minutes.

    When to use it

    Any call asking for money or pushing you to act fast. No exceptions. Even if the voice is perfect. Especially if the voice is perfect and the story is scary, that urgency is the scammer's main tool. A real loved one in real trouble will not mind you taking ten seconds to ask for the word. A scammer cannot answer it.

    If someone fails the check: hang up. Don't argue, don't explain, don't let them talk you out of it. Then call the real person back yourself on the number you already have saved for them.

    Teach it to the kids and the grandparents too. The people most likely to be targeted are older relatives and younger kids. Make sure they know the word and, more importantly, know that it is completely okay to ask for it even if the person on the phone gets upset. Getting upset is what a scammer does. Your real family will understand.

    2

    The Callback Rule

    If the safe word is your shield, this is your sword. It is one sentence, and it beats almost every phone and message scam there is:

    Hang up, and call the person or company back on a number you already have saved, never the number that just called you, and never a number they give you on the call.

    A cloned voice, a scary story, a fake caller ID, none of it can survive you hanging up and ringing the real person. If it's really your daughter, she answers and she's fine. If it's really your bank, the number on the back of your card gets you the real bank. The scammer only has power while they control the call.

    Scammers will say "call us back on this official line" or send a text with a number. Never use it. Always use a number you already had, from your contacts, your bank card, or the company's real website you typed in yourself.

    3

    The Scam-Checker Prompt

    Got a message and not sure? Don't guess, and don't ask the person who sent it. Paste it into a free AI and let it tell you. Copy this exactly:

    Prompt 2 · Copy & paste
    Here's a message I just received. Tell me honestly whether this looks like a scam, and walk me through exactly which parts give it away. Then tell me the safest next step, and the one thing I should absolutely not do in response.

    Then paste the message in exactly as you got it, including who it's from. This works in ChatGPT or Claude, on the free plans, no payment needed. The AI will point out the red flags you might have missed, and it stays calm when you're rattled, which is exactly when scams work best.

    Tip: It's free and it takes seconds, so use it any time something feels even slightly off. A surprise invoice, a "your package is held" text, a message from your bank, a too-good job offer. When in doubt, paste it in.

    4

    The Exposure Prompt

    Scammers need raw material: your voice, your face, your family's names, where you work. This prompt has an AI look at what's publicly visible about you and tell you what a scammer could actually use.

    Prompt 3 · Copy & paste
    Search for me online and tell me honestly what someone could realistically use to target me or my family. Focus on what's publicly visible: photos, any video with my voice in it, family members' names, where I work, anything that hints at my routine. Then tell me what I should take down first. My name is [YOUR NAME] and I live in [YOUR CITY].

    Seeing it laid out, your voice in that video, your kids' names, your workplace, your daily routine, is a little unnerving. That's the point. That's exactly what a scammer sees.

    Worth removing: videos where your voice is clear and easy to grab, posts that name your family members alongside you, anything that shows your regular routine or location, and old accounts you don't use anymore. Setting your main profiles to private does a lot on its own.

    Not worth the stress: a photo here and there, a normal amount of being online. You can't and shouldn't erase yourself. The goal is to make yourself a harder target, not an invisible one.

    The Five Scams to Know Right Now

    1. The cloned-voice emergency call. A panicked call in a loved one's real voice, saying they're in trouble and need money now. The tell: urgency plus a money request. Ask for the safe word, or hang up and call them back.

    2. The fake boss or family member. A text or email from "your boss" or a relative asking you to buy gift cards, send a payment, or move money quietly and quickly. The tell: an unusual money or gift card request, plus "don't tell anyone" or "I'm in a meeting, just do it."

    3. The AI-written bank phishing email. A perfect-looking email from "your bank" about a problem with your account, with a link to fix it. The tell: it wants you to click a link or log in right now. Go to your bank the way you normally do, or call the number on your card.

    4. The deepfaked celebrity or expert. A video of a famous person or doctor promoting an investment, crypto, or a miracle health product. The face and voice are faked. The tell: a public figure personally promising you easy money or a cure.

    5. The bot romance or friendship. A warm, attentive new online friend or love interest who, over time, needs money for an emergency, travel, or an investment. The tell: they never video call or meet in person, and eventually money comes up.

    How to Check If Something Is AI

    Let's be honest up front: there is no tool that reliably catches AI fakes every time. The technology to make them is ahead of the technology to detect them. Treat these as helpful extra checks, not a guarantee.

    Ask the Gemini app. You can upload an image, video, or audio clip into the free Gemini app and ask if it was made with AI. It's best at spotting content made by Google's own AI tools, which leave a hidden watermark, so it will catch some fakes and miss others.

    Check the file at contentcredentials.org/verify. Some photos and videos carry Content Credentials, a kind of digital label showing how they were made. Upload a file and it'll show that label if there is one. No label doesn't prove anything either way, but a label can help.

    The real defence is the habit, not the tool. If a message or call makes you furious, scared, or is asking for money, that is the exact moment to stop and verify another way, with the safe word or a callback. Strong emotion and urgency are the scam.

    The One-Page Family Setup Checklist

    1. Pick a family safe word nobody could guess.
    2. Send the group text to your trusted people.
    3. Agree everyone can ask for the word, even if the caller gets upset.
    4. Save the callback rule: hang up, call back on a number you already have.
    5. Save the scam-checker prompt somewhere easy to reach.
    6. Run the exposure prompt on yourself, take down the worst items.
    7. Set your main social profiles to private.
    8. Send this guide to the family member most likely to be targeted.

    The one rule that covers almost everything: if a call or message is scary, urgent, and about money, stop. Ask for the safe word or call back on a saved number.

    Your Action Plan Tonight

    Don't file this away to do later. Pick your family safe word right now. Send the group text to your trusted people. Run the exposure prompt on yourself and take down the worst one or two things. Then send this guide to the one person in your family most likely to fall for a scam. That last one might be the most important thing you do all week.

    Four minutes of setup against a very sophisticated attack, and the four minutes win. You don't have to be scared of this. You just have to be set up for it.

    Want the complete version?

    This is a summary. The full guide goes deeper with more examples, frameworks, and prompts you can copy and paste.

    Download Full PDF (Free)

    Keep reading