One engine that catches the kill chain at the inbox.
Verlane ingests normalized events from your email and accounts, correlates them into plain-English incidents, and drafts response actions that wait for a human. Three capability layers over one engine.
Email / account-takeover defense
The foundation, identical across broker and carrier profiles. From a single Google or Microsoft 365 connection, Verlane detects the early stages of the BEC-to-freight-fraud kill chain on the mailbox side.
Impossible-travel, new-device, or new-location logins
The account's password in a known exposure
Auto-forward / hide / delete rules used to intercept payment threads
Typosquat, homoglyph, lookalike-TLD, or display-name spoofing
A request to change bank or routing details — especially inside a legit thread
Freight-aware, not freight-blind
The context generalist email tools lack. Verlane knows what a freight payment thread looks like, so a banking-change request inside a live load conversation reads as the red flag it is — and at signup, an FMCSA check confirms your own MC/DOT is a real, active, authorized entity.
A payment- or routing-change email inside a legitimate load thread is treated as the classic freight-BEC tell, not ordinary mail
Confirms your MC/DOT is real, active, and authorized when you onboard — a trust check on your own entity.
Compliance posture + insurance
The land layer and door-opener. With no provider connection or incident required, Verlane produces a posture report and an insurance-questionnaire assist from your own answers, mapped to the controls insurers care about.
Self-reported coverage of MFA, mailbox-rule hygiene, credential exposure, and sign-in risk — an advisory assessment, not a verified audit
Pre-filled cyber-insurance answers, each marked stated or derived
We tell you what we can't see — and why.
Google surfaces some detections cheaply through Alert Center. Microsoft gates its richest detection behind higher SKUs, so for those tenants Verlane computes more itself from the unified audit log. When a signal isn't available on your plan, we surface the gap as an advisory — an honest disclosure, not a silent blind spot.
"On your current plan we monitor sign-ins and mailbox rules; leaked-credential detection needs a license upgrade."
Every event carries its source — was it the provider's own detection (vendor_alert) or did Verlane compute it (computed)? That distinction drives both your advisory and your upgrade path.
Start with the paperwork your insurer already wants — free.
Get a security posture report and a pre-filled cyber-insurance questionnaire in plain English. No provider connection required, no incident needed to prove value.