HumanVerified is in beta — free while we build it.Help us make it better →
Identity & TrustReal EstateSep 8, 20264 min read

Real Estate Agent Impersonation Scams Hit Hardest When You Work Alone

When a text about closing instructions looks exactly like the one that scheduled last week's showing, real estate agent impersonation scams don't have to fool a system. They only have to fool one person, once.

Listen to this article
Audio narration
Narrated in a natural voice

A buyer working with an independent agent gets a text two days before closing: a link to review an amended disclosure, or a note about where the deposit should go. Nothing about it looks unusual — it's the same number that scheduled the last three showings. That ordinariness is exactly what real estate agent impersonation scams are built on. The FBI and the National Association of Realtors have spent years warning that fraudsters who get into an email thread near closing don't invent a new identity. They copy the real agent's name, tone, and timing, and send the message from what looks like the same conversation the buyer has been having all along.

How Real Estate Agent Impersonation Reaches a Buyer's Inbox

The mechanism NAR describes is consistent. Someone gets into an email account — an agent's, a title company's, or a lender's — and reads the thread long enough to learn who's involved, what's already been discussed, and when money is about to move. Then, usually in the days just before closing, they send a message that looks like a routine follow-up: an "updated" wiring instruction, a document that needs a signature, a change to where a deposit should go. Because the message lands inside an existing conversation, replying to it feels like continuing a chat with someone the buyer already trusts, not opening a message from a stranger.

Why "Call a Number You Already Have" Assumes There's More Than One Person

NAR's own advice is direct: never confirm wiring instructions by email, and always call a phone number you already have and know is correct. That's sound advice inside a brokerage with a front desk, a transaction coordinator, and an office line that's been the same for a decade. It's a harder instruction to follow when the "number you already have" for your agent is the same personal cell phone that sent the message you're trying to verify in the first place. If that phone or that agent's email is what got compromised, calling the number already saved in your contacts calls straight back into the problem.

When the Agent Is the Whole Office

A large brokerage absorbs an impersonation attempt with layers a buyer never sees: shared inboxes, a compliance team that flags unusual requests, colleagues who would notice a message that doesn't match how the office normally communicates. An independent agent doesn't have any of that standing between a client and a convincing fake. The agent's phone number is the brand, the email address is the whole company, and there's no second person to call and quietly ask, "did you actually send this?" That collapse of identity and business into one person is a real part of why solo agents get impersonated — there's no institutional friction anywhere to slow a scammer down.

A Wire Fraud Notice in Your Signature Doesn't Prove Anything

Plenty of agents already follow NAR's advice and add a wire fraud warning to their email signature, a short paragraph reminding clients to call before wiring money. It's a reasonable habit, and it's also trivial to copy. A forged email from a compromised or spoofed account can carry that exact same boilerplate warning, in the same font, at the bottom of the same thread. The warning tells a client what to worry about. It does nothing to tell them whether the specific message sitting in front of them right now actually came from their agent.

What a Checkable Identity Changes Near Closing

The gap here isn't whether a client trusts their agent. It's whether a client, mid-transaction and under time pressure, has any way to confirm a specific message came from that agent that doesn't depend on the same channel the message arrived through. That's what a Human ID is for: a permanent identifier an agent includes in texts and emails that a client can look up independently, outside the conversation itself, to see the agent's name and current status. For something as sensitive as closing instructions, a single-use verification code tied to that one message goes further. None of this has anything to do with whether AI helped draft the text — that isn't the question a buyer holding a wiring instruction is actually asking. And neither a Human ID nor a verification code confirms that a wiring number itself is correct; buyers still need to call their title company on an independently verified line, and our verification policy is explicit that checking an ID doesn't replace that step. What it confirms is narrower and more specific: that the identified person personally reviewed and authorized what the client is looking at.

Putting the ID Where the Doubt Actually Starts

The habit that matters is including the ID before there's any reason to doubt a message, not producing it defensively after a client already sounds suspicious. Put it in the first text of a new relationship, the standard email signature, the closing checklist sent to every buyer. It won't stop someone from copying an agent's name into a fake email; nothing fully does. It gives a client something to check that doesn't depend on recognizing a writing style or trusting that a phone number looks familiar. Independent agents who want to get a Human ID can do it directly, with no brokerage compliance process to go through first — which is exactly the point for a one-person operation with no compliance process to begin with.

Get your own Human Verified ID

Attach a verified human identity to the messages you personally write and authorize. Free during beta.

Get a free Human ID

More Commentary