Spammers: Difference between revisions

From Freegle Wiki
Jump to navigationJump to search
No edit summary
No edit summary
 
(13 intermediate revisions by 4 users not shown)
Line 8: Line 8:
Instructions about how to treat these, and the legal framework are visible on the page, or if not, can be seen by clicking the Show help button.
Instructions about how to treat these, and the legal framework are visible on the page, or if not, can be seen by clicking the Show help button.


Suspect email addresses can be reported in mod tools, using the Spammer button.


Suspect email addresses can be reported in mod tools, using the Spammer button
Fuller details about possible SPAM Posts and people SPAMMING are below.<br>
See also https://discourse.ilovefreegle.org/t/spam-run/5438/10 for an explanation about the different treatment for spam messages and spammers.




Fuller details about possible SPAM Posts and people SPAMMING are below.




== Possible SPAM Posts and people SPAMMING ==
=== Modtools Main Menu ===
=== Modtools Main Menu ===
==== Options when posts are displayed ====
==== Options when posts are displayed ====
===== Submitting Spammer reports =====
This is available for pending posts, approved posts and approved members.
You may get a post from a new member offering one of the known scammer items. Also you may identify something from Chat or by some other source that the circumstances are highly suspect. e.g. “I have now moved to some_distant_location but courier fess to send it to you would not be expensive”. In that case you would submit a Spammer report using the white button that is part of the Modtools page.
*
*
[[ File:spam1.jpg ]]
[[ File:newspam1.jpg ]]
*
Your report should include as much helpful evidence as possible.
===== Pending =====
That report would then be reviewed and if it is considered that the person is a real scammer they would be added to the Confirmed Spammer List. Then they would be banned from all Freegle groups and warning messages sent to anyone who has had correspondence with the scammer.
*
If new facts come to light which show it to be a false alarm then the person can be removed from the Confirmed Spammer List, but they would then have to re-join a Freegle group.
[[ File:newspam2.jpg ]]
===== Dealing with less suspicious posts =====
*
Circumstances to use these buttons:
===== Approved =====
*
*
[[ File:spam2.jpg ]] or  [[ File:spam3.jpg ]]
[[ File:newspam3.jpg ]]
*
*
The coloured Spam button at the bottom of a post is NOT to be used to report a spammer. You may also see a Spam Message button.  Again repeated Spam clicks for a member may result in the member being reported as a spammer. They are purely an option to deal with a doubtful post. Make your own decision depending on the content of the post as it may be a perfectly valid post.
Make your own judgement about whether this is a genuine and valid post. If you feel it is not then clicking the red Spam button will delete the post, and that information is used, behind the scenes, to train our spam filters.
If a member has sent a SPAM post to your group, possibly because their account has been hacked, then you can separately advise them then delete the post using the standard SPAM button above which should be in every group’s Modtools modconfig.
==== Warnings contained in the main Modtools menu at the left ====
===== SpamAssassin Flagging a possible SPAM post =====
This would show in the main Modtools menu at the left:
*
*
[[ File:menu1.jpg ]]


Example of a post trapped by SpamAssassin:
===== Review =====
*
*
[[ File:warning.jpg ]]
[[ File:newspam4.jpg ]]
*
*
[[ File:spam6a.jpg ]] [[ File:spam6b.jpg ]] [[ File:spam6c.jpg ]]
Automated system checks may result in a message being shown under Message Review. The reason a post has been flagged for review will be shown.
Again make your own judgement about whether this is a genuine and valid post. If you feel it is not then clicking the red Spam button will simply delete the post, and provide information for our spam filters. Clicking the Not spam button will approve the post, or send it to Pending if the member is on moderation.
To submit a Spammer report see topic [[https://wiki.ilovefreegle.org/Spammers#SPAM_checking_before_submission| SPAM checking before submission]]
*
*
Click “Not a spammer” if it is a valid post and the post will be moved to Pending.<br/>
“Report as a spammer” should not be used for isolated incidents on your group. If the post or member is a serious threat nationally then use this button and on the following screen give full reasons for your report. This will then be sent to a team who will review it for validity.
If a trusted member has sent a SPAM post to your group, possibly because their account has been hacked or spoofed, then you can separately advise them then delete the post using the standard SPAM button which should be in every group’s Modtools modconfig.


===== System Flagging a possible SPAM post =====
==== Options when members are displayed ====
Example of a post trapped due to worrying words:
*
[[ File:newspam5.jpg ]]
*
===== Approved Review button options available =====
*
[[ File:newspam6.jpg ]]
*
===== Member Review button options available =====
*
*
[[ File:spam13.jpg ]]
[[ File:newspam7.jpg ]]
*
*
Click “Spam” if it clearly contains spam. The post will just be deleted.<br/>
Automated system checks may spot something unusual resulting in a person being shown under Member Review.
Click “Not Spam” if some wording has been used innocently. The post will be moved to Pending or Approved depending on the settings for that member.
The Remove and Ban buttons only apply to your community.
If after reviewing their posting and chat history they seem OK then you can click Ignore.
If you are certain after thorough checking that the person is a spammer then, on their details under Members>Approved, use the Spammer button to submit a report for review. See topic [[SPAM checking before submission]] for guidance.
If you think they are fine, then please add a mod Note so that other moderators will see why.
The Whitelist button must only be used for people who have legitimate reasons to join many communities. An application for whitelisting would then be reviewed.


===== System Flagging a possible SPAMMING member =====
There is no national rule about how many communities it is acceptable for one person to join, that is up to each community's discretion. 
This would show in the main Modtools menu at the left:
*
*
[[ File:menu2.jpg ]]


You will have these three options:  
===== Chat Review =====
*
Example:
*
*
[[ File:spam6a.jpg ]] [[ File:spam6b.jpg ]] [[ File:spam6c.jpg ]]
[[ File:newspam8.jpg ]]
*
*
Make your own decision depending whether the person is known on your group as it may be a genuine member. The person may already have been reported for being a spammer, then this fact will be shown on the information that the system displays.<br/>
Chat Review button options available:
Clicking “Report as a spammer” should not be used for isolated incidents on your group. If the post or member is a serious threat nationally then use this button and on the following screen give full reasons for your report. This will then be sent to a team who will review it for validity.<br/>
Clicking “Not a spammer” moves them back into Pending or Approved as appropriate.<br/>
Click Whitelist if you are certain that the person is not a spammer. You will then be required to state the reason why this person should be whitelisted – i.e. they will no longer be highlighted as a possible spammer.
===== Possible SPAM Chat Reported by System =====
This will show in the Modtools menu at the left.
*
*
[[ File:menu5.jpg ]]
[[ File:newspam9.jpg ]]
*
*
[[ File:spam9.jpg ]]
 
Click on View Chat to see why the system has highlighted this chat.
A member may have included a telephone number, an email address or a website link for illustration which is fine. An offer to pay petrol money for an item to be taken to them is not suspicious and is a local community decision. In such instances you can approve the chat.
If you would rather the intended recipient does not see the chat then click Delete. If the chat is definitely spam then click Spam.
Use of the Approve and Whitelist button is as for the Whitelist button on Approved members.
 
We are legally allowed to do this (we have confirmed this with the regulator) for the purposes of detecting spam/scam.  If we happen to find other violations of our rules, then we are allowed to act on them.
 
You will see chat messages here for review if the recipient is a member of one of your communities.  You might see some where the conversation is about a post on another community, because it's not possible for the system to tell reliably whether a message relates to a specific post, multiple posts, or no post at all.  It's fine to act on the message if you see it.
 
Communities can opt in (through ModTools Settings) to "Quicker Chat Review", in which case held messages are also displayed to volunteers on other communities for review. If the message is fine, they can release it promptly; otherwise, it is held for the local volunteers to act on it.
 
If there are multiple messages for review, you may see a "Delete All" button at the end. This was introduced to deal with mass spam, and will stop all the displayed messages from being sent out. However, in the case of messages seen by other communities' volunteers in "Quicker Chat Review", this button does nothing.
 
==== Spammer details held by the system ====
Accessed via Modtools menu at the left:
*
*
Actual SPAM messages will be easy to identify e.g. there may only be a link to a website. However there may be some content, such as a phone number or email address, in Chat between members which the system could highlight as suspicious. Look at the conversation then decide what action to take.
[[ File:newspam10.jpg ]]
Clicking on the Spam button above will let the system learn what constitutes SPAM. It will not issue a report about the sender in the way that the standard SPAM button in every group’s Modtools modconfig does.<br/>
"Not spam" means you don't think they are a spammer.  If they join more groups you may see them again, so that if they actually are a spammer we'll get a chance to spot that, rather than lose the chance because early on someone thought they were OK.<br/>
"Release and whitelist" - the member is just whitelisted in the system so the post is OK to be sent out if they include the same information again.<br/>
The other buttons are self-explanatory.<br/>
If you suddenly get a lot of spam chat messages then they do not have to be flagged as Spam individually. They can all be deleted with the button at the bottom of them all.
*
*
[[ File:spam10.jpg ]]
This shows the options:
==== Spammer details held by the system ====
 
Again in the Modtools menu at the left:
*
*
[[ File:menu3.jpg ]]
[[ File:newspam11.jpg ]]
*
*
Confirmed - These are members who have been reported as spammers. These reports are reviewed before a member appears on this list.
Confirmed Spammers - These are members who have been confirmed as spammers. These reports are reviewed before a member appears on this list. Once someone is on this list, they then would be banned from all Freegle communities and warning messages sent to anyone who has had correspondence with the scammer. <br/>
Once someone is on this list, they will automatically be removed from groups.
If you are certain that the person is not a spammer then submit a request for removal at https://discourse.ilovefreegle.org/c/tech/3. You must provide good reasons why this person should not be a Confirmed Spammer. Your request will be reviewed. <br/>
If you think someone is on this list wrongly, you can request that they be removed using the button below.
Pending Add – These are members who have reported as spammers by a moderator. These reports will be reviewed to decide whether to add them to the spammer list. Please remember that people may not be spammers even if they are reported. For example: <br/>
Members may join many communities because they are over-enthusiastic or have relatives in different places.<br/>
Mail can be spoofed or accounts can be hacked - so a member can appear to send spam but not be a spammer. <br/>
For someone to be added to the list they need to have clear intent to deliberately spam/scam, or be a massive multijoiner. Only a limited number of people have the ability to confirm or reject someone as a spammer. <br/>
Whitelisted - These are members who have been exempted from the spammer list. Generally they are people who have legitimate reasons to join many communities. <br/>
Pending Remove - These are members who are on the spammer list but someone has asked for them to be removed.
=== SPAM checking before submission ===
Before you click the white Spammer button you need to do some investigation:
You may get a post from a new member offering one of the known scammer items. <br/>
You may identify something from Chat or by some other means that the circumstances are highly suspect. e.g. “I have now moved to some_distant_location but courier fees to send it to you would not be expensive”. <br/>
Check the past posting and chat history of the member and how that person uses the community. <br/>
 
If they appear to make regular posts on the community that are offers and wanteds they are not likely to be spammers. Check a few chats, see if they have sent spam or scam type replies to people or are they genuinely arranging collections? If they are chatting normally, then they should not be reported. No member should be reported without a look to see what their past activity is.<br/>
An isolated incident of something doubtful should be resolved with the member or locally within your community. Their account may have been hacked or spoofed so check for that.<br/>
If it is a suspicious new member then Google their email address, or even just the bit before “@”, and see if anything shows up. <br/>
If a picture of an item attached to a post seems suspicious because it is not from a domestic setting then Google the image. <br/>
A link to a website in a post may be just a useful illustration so check it out. <br/>
 
You should only be reporting genuine spammers or scammers and on rare occasions, someone we think could be a danger to other members. Even apparently strange people can be checked out to see what they are saying to members before being reported. <br/>
After doing the investigation above, if you consider that the person is a serious risk to Freegle then you should use the white Spammer button on the Member Details page to submit your report for review. Your report must include as much helpful evidence as possible. That report would then be reviewed and if it is considered that the person is a real scammer they would be added to the Confirmed Spammer List. <br/> Then they would be banned from all Freegle communities and warning messages sent to anyone who has had correspondence with the scammer. <br/>
If new facts come to light which show it to be a false alarm then the person can be removed from the Confirmed Spammer List, but they would then have to re-join a Freegle community.<br/>
The Spammer Team can be contacted directly at spammerlist@ilovefreegle.org if there are further queries.
 
=== Modtools Settings for Spam  Detection ===
 
In Modtools>Settings>Community, there is a section called Spam Settings.  This is where you can choose to use the excellent spam detection system for your group.  Switch the detection on, choose a distance, and add in worry words particularly relevant to your group.  With these turned on, you will get any likely worrying messages sent to you for review. <br>
Please note that there are different desires of different groups, many of whom leave it entirely up to the members to decide whether they care about how far away someone comes from or not. In London, where public transport is very good, some mods think this opens their groups up to exploitation from “outside” whereas some mods think it’s completely reasonable that people will be in different areas regularly for work or pleasure. Some mods might not want “their” messages counting towards what they see as over-zealous restrictions on how far people can travel in other groups where mods have different views.  Overall, experience has shown that members can be trusted to self regulate distances and restrictions are more likely to lead to onerous moderation duties and dissatisfied members, rather than stopping exploitation.
 
=== Procedure for Support Team when reviewing spammer submissions ===
 
We cannot always rely completely on what the mods report, they aren't always right and some reports are a little exaggerated and vague, so they need checking properly to avoid adding someone innocent. If we just approve everything on another mods say so, there is little point in us being spam checkers. We need a checking procedure arranged between us.<br/>
 
When a spam report comes in the first thing to do is hold it, so nobody else tries to deal with it at the same time as you are checking it out. <br/>
 
Then copy the email address, or member number, of the reported member and go to support tools. In 'find member', paste the email or number and the membership pops up with all the info about how that person uses the community. <br/>
 
If they appear to make regular posts on the community that are offers and wanteds they are not likely to be spammers. Check a few chats, see if they have sent spammy or scam type replies to people or are they genuinely arranging collections? If they are chatting normally, then they should not be added to spam. No member should be added without a look to see what their past activity is. If they are not spammers then reject the report and drop the reporting mod an email to explain why and copy in Support so they know too. <br/>
 
We should only be adding genuine spammers or scammers and on rare occasions, someone we think could be a danger to other members. We have had a couple of weirdos pop up who were added for member safety. Even weird people can be checked out to see what they are saying to members before being added. <br/>
 
If a member is NOT to be added to the spammer list then email an explanation to the reporting moderator copying spammerlist@ilovefreegle.org<br/>
If a member IS to be added to the spammer list then email an explanation containing the spamming member email and the reason to spammerlist@ ilovefreegle.org<br/>


Pending Add – These are members who have reported as spammers by a moderator. These reports will be reviewed to decide whether to add them to the spammer list.
Please remember that people may not be spammers even if they are reported. For example:
• Members may join many groups because they are over-enthusiastic or have relatives in different places.
• Mail can be spoofed or accounts can be hacked - so a member can appear to send spam but not be a spammer.
For someone to be added to the list they need to have clear intent to deliberately spam/scam, or be a massive multijoiner.
Only a limited number of people have the ability to confirm or reject someone as a spammer.


Pending Remove - These are members who are on the spammer list but someone has asked for them to be removed.
That is the fairest way to do it for the member concerned. There is nothing worse than losing all your communities and chats where you are in the middle of arranging collections.


Whitelisted - These are members who have been exempted from the spammer list. Generally they are people who have legitimate reasons to join many groups.


Links:
Links:
email address for Spammers Team: spammerlist@ilovefreegle.org
*[[Specific Problems]]
*[[Specific Problems]]
*[[How To Deal With]]
*[[How To Deal With]]

Latest revision as of 11:55, 19 November 2024

Spam is the Internet equivalent of junk mail - email you didn't ask for, and probably don't want. Freegle members will often have their own spam filters to detect and remove spam.


With the introduction of Freegle Direct Version 3, filters intercept most spam.

Messages which might be spam appear in ModTools for review - Message>Review.

Instructions about how to treat these, and the legal framework are visible on the page, or if not, can be seen by clicking the Show help button.

Suspect email addresses can be reported in mod tools, using the Spammer button.

Fuller details about possible SPAM Posts and people SPAMMING are below.
See also https://discourse.ilovefreegle.org/t/spam-run/5438/10 for an explanation about the different treatment for spam messages and spammers.



Modtools Main Menu

Options when posts are displayed

Newspam1.jpg

Pending

Newspam2.jpg

Approved

Newspam3.jpg

Make your own judgement about whether this is a genuine and valid post. If you feel it is not then clicking the red Spam button will delete the post, and that information is used, behind the scenes, to train our spam filters.

Review

Newspam4.jpg

Automated system checks may result in a message being shown under Message Review. The reason a post has been flagged for review will be shown. Again make your own judgement about whether this is a genuine and valid post. If you feel it is not then clicking the red Spam button will simply delete the post, and provide information for our spam filters. Clicking the Not spam button will approve the post, or send it to Pending if the member is on moderation. To submit a Spammer report see topic [SPAM checking before submission]

Options when members are displayed

Newspam5.jpg

Approved Review button options available

Newspam6.jpg

Member Review button options available

Newspam7.jpg

Automated system checks may spot something unusual resulting in a person being shown under Member Review. The Remove and Ban buttons only apply to your community. If after reviewing their posting and chat history they seem OK then you can click Ignore. If you are certain after thorough checking that the person is a spammer then, on their details under Members>Approved, use the Spammer button to submit a report for review. See topic SPAM checking before submission for guidance. If you think they are fine, then please add a mod Note so that other moderators will see why. The Whitelist button must only be used for people who have legitimate reasons to join many communities. An application for whitelisting would then be reviewed.

There is no national rule about how many communities it is acceptable for one person to join, that is up to each community's discretion.

Chat Review

Example:

Newspam8.jpg

Chat Review button options available:

Newspam9.jpg

Click on View Chat to see why the system has highlighted this chat. A member may have included a telephone number, an email address or a website link for illustration which is fine. An offer to pay petrol money for an item to be taken to them is not suspicious and is a local community decision. In such instances you can approve the chat. If you would rather the intended recipient does not see the chat then click Delete. If the chat is definitely spam then click Spam. Use of the Approve and Whitelist button is as for the Whitelist button on Approved members.

We are legally allowed to do this (we have confirmed this with the regulator) for the purposes of detecting spam/scam. If we happen to find other violations of our rules, then we are allowed to act on them.

You will see chat messages here for review if the recipient is a member of one of your communities. You might see some where the conversation is about a post on another community, because it's not possible for the system to tell reliably whether a message relates to a specific post, multiple posts, or no post at all. It's fine to act on the message if you see it.

Communities can opt in (through ModTools Settings) to "Quicker Chat Review", in which case held messages are also displayed to volunteers on other communities for review. If the message is fine, they can release it promptly; otherwise, it is held for the local volunteers to act on it.

If there are multiple messages for review, you may see a "Delete All" button at the end. This was introduced to deal with mass spam, and will stop all the displayed messages from being sent out. However, in the case of messages seen by other communities' volunteers in "Quicker Chat Review", this button does nothing.

Spammer details held by the system

Accessed via Modtools menu at the left:

Newspam10.jpg

This shows the options:

Newspam11.jpg

Confirmed Spammers - These are members who have been confirmed as spammers. These reports are reviewed before a member appears on this list. Once someone is on this list, they then would be banned from all Freegle communities and warning messages sent to anyone who has had correspondence with the scammer.
If you are certain that the person is not a spammer then submit a request for removal at https://discourse.ilovefreegle.org/c/tech/3. You must provide good reasons why this person should not be a Confirmed Spammer. Your request will be reviewed.
Pending Add – These are members who have reported as spammers by a moderator. These reports will be reviewed to decide whether to add them to the spammer list. Please remember that people may not be spammers even if they are reported. For example:
Members may join many communities because they are over-enthusiastic or have relatives in different places.
Mail can be spoofed or accounts can be hacked - so a member can appear to send spam but not be a spammer.
For someone to be added to the list they need to have clear intent to deliberately spam/scam, or be a massive multijoiner. Only a limited number of people have the ability to confirm or reject someone as a spammer.
Whitelisted - These are members who have been exempted from the spammer list. Generally they are people who have legitimate reasons to join many communities.
Pending Remove - These are members who are on the spammer list but someone has asked for them to be removed.

SPAM checking before submission

Before you click the white Spammer button you need to do some investigation: You may get a post from a new member offering one of the known scammer items.
You may identify something from Chat or by some other means that the circumstances are highly suspect. e.g. “I have now moved to some_distant_location but courier fees to send it to you would not be expensive”.
Check the past posting and chat history of the member and how that person uses the community.

If they appear to make regular posts on the community that are offers and wanteds they are not likely to be spammers. Check a few chats, see if they have sent spam or scam type replies to people or are they genuinely arranging collections? If they are chatting normally, then they should not be reported. No member should be reported without a look to see what their past activity is.
An isolated incident of something doubtful should be resolved with the member or locally within your community. Their account may have been hacked or spoofed so check for that.
If it is a suspicious new member then Google their email address, or even just the bit before “@”, and see if anything shows up.
If a picture of an item attached to a post seems suspicious because it is not from a domestic setting then Google the image.
A link to a website in a post may be just a useful illustration so check it out.

You should only be reporting genuine spammers or scammers and on rare occasions, someone we think could be a danger to other members. Even apparently strange people can be checked out to see what they are saying to members before being reported.
After doing the investigation above, if you consider that the person is a serious risk to Freegle then you should use the white Spammer button on the Member Details page to submit your report for review. Your report must include as much helpful evidence as possible. That report would then be reviewed and if it is considered that the person is a real scammer they would be added to the Confirmed Spammer List.
Then they would be banned from all Freegle communities and warning messages sent to anyone who has had correspondence with the scammer.
If new facts come to light which show it to be a false alarm then the person can be removed from the Confirmed Spammer List, but they would then have to re-join a Freegle community.
The Spammer Team can be contacted directly at spammerlist@ilovefreegle.org if there are further queries.

Modtools Settings for Spam Detection

In Modtools>Settings>Community, there is a section called Spam Settings. This is where you can choose to use the excellent spam detection system for your group. Switch the detection on, choose a distance, and add in worry words particularly relevant to your group. With these turned on, you will get any likely worrying messages sent to you for review.
Please note that there are different desires of different groups, many of whom leave it entirely up to the members to decide whether they care about how far away someone comes from or not. In London, where public transport is very good, some mods think this opens their groups up to exploitation from “outside” whereas some mods think it’s completely reasonable that people will be in different areas regularly for work or pleasure. Some mods might not want “their” messages counting towards what they see as over-zealous restrictions on how far people can travel in other groups where mods have different views. Overall, experience has shown that members can be trusted to self regulate distances and restrictions are more likely to lead to onerous moderation duties and dissatisfied members, rather than stopping exploitation.

Procedure for Support Team when reviewing spammer submissions

We cannot always rely completely on what the mods report, they aren't always right and some reports are a little exaggerated and vague, so they need checking properly to avoid adding someone innocent. If we just approve everything on another mods say so, there is little point in us being spam checkers. We need a checking procedure arranged between us.

When a spam report comes in the first thing to do is hold it, so nobody else tries to deal with it at the same time as you are checking it out.

Then copy the email address, or member number, of the reported member and go to support tools. In 'find member', paste the email or number and the membership pops up with all the info about how that person uses the community.

If they appear to make regular posts on the community that are offers and wanteds they are not likely to be spammers. Check a few chats, see if they have sent spammy or scam type replies to people or are they genuinely arranging collections? If they are chatting normally, then they should not be added to spam. No member should be added without a look to see what their past activity is. If they are not spammers then reject the report and drop the reporting mod an email to explain why and copy in Support so they know too.

We should only be adding genuine spammers or scammers and on rare occasions, someone we think could be a danger to other members. We have had a couple of weirdos pop up who were added for member safety. Even weird people can be checked out to see what they are saying to members before being added.

If a member is NOT to be added to the spammer list then email an explanation to the reporting moderator copying spammerlist@ilovefreegle.org
If a member IS to be added to the spammer list then email an explanation containing the spamming member email and the reason to spammerlist@ ilovefreegle.org


That is the fairest way to do it for the member concerned. There is nothing worse than losing all your communities and chats where you are in the middle of arranging collections.


Links: email address for Spammers Team: spammerlist@ilovefreegle.org