Skip to content
Verlane
Product · how it works

One engine that catches the kill chain at the inbox.

Verlane ingests normalized events from your email and accounts, correlates them into plain-English incidents, and drafts response actions that wait for a human. Three capability layers over one engine.

Layer 1

Email / account-takeover defense

The foundation, identical across broker and carrier profiles. From a single Google or Microsoft 365 connection, Verlane detects the early stages of the BEC-to-freight-fraud kill chain on the mailbox side.

suspicious_signin

Impossible-travel, new-device, or new-location logins

leaked_credential

The account's password in a known exposure

mailbox_rule_changed

Auto-forward / hide / delete rules used to intercept payment threads

lookalike_sender

Typosquat, homoglyph, lookalike-TLD, or display-name spoofing

banking_change_request

A request to change bank or routing details — especially inside a legit thread

Layer 2

Freight-aware, not freight-blind

The context generalist email tools lack. Verlane knows what a freight payment thread looks like, so a banking-change request inside a live load conversation reads as the red flag it is — and at signup, an FMCSA check confirms your own MC/DOT is a real, active, authorized entity.

freight-context scoring

A payment- or routing-change email inside a legitimate load thread is treated as the classic freight-BEC tell, not ordinary mail

FMCSA authority check · at signup

Confirms your MC/DOT is real, active, and authorized when you onboard — a trust check on your own entity.

Layer 3

Compliance posture + insurance

The land layer and door-opener. With no provider connection or incident required, Verlane produces a posture report and an insurance-questionnaire assist from your own answers, mapped to the controls insurers care about.

posture report

Self-reported coverage of MFA, mailbox-rule hygiene, credential exposure, and sign-in risk — an advisory assessment, not a verified audit

insurance assist

Pre-filled cyber-insurance answers, each marked stated or derived

Honest about coverage

We tell you what we can't see — and why.

Google surfaces some detections cheaply through Alert Center. Microsoft gates its richest detection behind higher SKUs, so for those tenants Verlane computes more itself from the unified audit log. When a signal isn't available on your plan, we surface the gap as an advisory — an honest disclosure, not a silent blind spot.

Upgrade

"On your current plan we monitor sign-ins and mailbox rules; leaked-credential detection needs a license upgrade."

Every event carries its source — was it the provider's own detection (vendor_alert) or did Verlane compute it (computed)? That distinction drives both your advisory and your upgrade path.

Start with the paperwork your insurer already wants — free.

Get a security posture report and a pre-filled cyber-insurance questionnaire in plain English. No provider connection required, no incident needed to prove value.

Free security posture report

Get yours free →