AML screening vs scam lists
AML screening scores exposure across the transaction graph; a scam list answers a yes-or-no membership question. Confusing them leads to bad decisions.
Two different questions
A scam list answers whether this exact address appears in a collection of reports — a membership test with a binary result. AML screening answers how much risk flows into and out of this address across the transaction graph, producing a score, a set of exposure categories and a confidence level. The first is cheap, instant and easy to explain to anyone. The second is probabilistic, vendor-dependent and requires interpretation. Most bad decisions come from expecting a scam list to behave like screening, or from treating a screening score as though it were a verified fact rather than an estimate built on inference.
What a scam list does well
Membership tests are excellent at catching reuse. Operators who run the same wallet across many victims, publish a donation address in a long campaign, or recycle a collector wallet will eventually be reported, and after that a one-second lookup protects everyone who checks. The result needs no expertise to read, which matters enormously for retail users. The failure mode is equally clear: anything new, anything rotated and anything never reported returns clear. A list is a memory of past harm, so its usefulness is proportional to how lazy or how prolific the operation on the other side has been.
What screening adds
Graph analysis does not require the address itself to be known. It follows value several hops in each direction, clusters addresses that behave as a single entity, matches known infrastructure such as exchange deposit corridors and mixing services, and weights paths by proximity and volume. A brand-new address funded from a cluster with heavy scam exposure will look risky even with no report attached to it. The cost is interpretive: scores differ between vendors, thresholds are policy choices, and clustering makes mistakes. Exposure is a hypothesis worth investigating, not a finding about a person.
Where the two disagree
The instructive cases are the mismatches. Listed but low exposure often means a stale or disputed entry, or an address that was compromised once and is otherwise unremarkable. Clear but high exposure is the common shape of a fresh receiver in an established operation, and it is exactly what a list-only check misses. High exposure also appears innocently around exchange deposit addresses and OTC desks, which touch everything by design. When the two signals conflict, the resolution is context: who asked you for money, through which channel, and what happens if you delay the payment by a day.
Which one you actually need
For everyday transfers to counterparties you can verify by other means, a list check plus channel verification is the right amount of diligence — proportionate, fast and repeatable. Screening earns its cost when the amount is significant, when the counterparty is unverifiable, when a business needs a defensible record, or when tracing funds after an incident. On this site the free lookup covers the first case, and the optional deep scan covers the second by adding multi-hop exposure, entity labels and ranked paths after one wallet confirmation — network fee only, seed phrase never requested.
FAQ
Do exchanges use scam lists or AML screening?
Both, plus internal data. Sanctions screening is mandatory, commercial exposure scoring is standard, and community reports feed manual review. A deposit can be held for any of the three, which is why users rarely get a specific reason.
Does receiving funds from a risky address taint my wallet?
It adds inbound exposure to your address in most scoring models, whether or not you chose the counterparty. That is a strong argument for keeping P2P trading, exchange withdrawals and long-term holdings in separate wallets.