The Family Safe Word: How to Beat AI Voice-Cloning Scams

Cover graphic on a deep navy field reading The Family Safe Word, with the line The one thing an AI voice can't fake, showing a phone call bubble crossed by a small padlock and a spoken speech bubble containing two blanked-out words

Bottom line up front

A family safe word is a private phrase only your household knows, agreed on ahead of time and never posted online. When a panicked call or text claims a relative is in trouble and needs money now, you ask for the word. An AI can clone a voice from a few seconds of audio, but it cannot clone a secret it was never told — which is exactly why the FBI and FTC both point to a shared family password as a defense. Pick a word, share it out loud, and pair it with one rule: if the caller can't say it, hang up and call the real person back on a number you already have.

The call comes at the worst possible moment, which is the point. A voice that sounds exactly like your daughter, your son, your dad, cracking with fear. There's been an accident. A DUI. A kidnapping. They're crying, or someone next to them is doing the talking, and the one thing everyone agrees on is that you need to send money in the next few minutes or something terrible happens.

For years the shaky part of that scam was the voice. A stranger could not really sound like your kid, so the script leaned on bad phone connections and hysterics to paper over the gap. That crutch is gone. With a clip pulled from a voicemail greeting, a TikTok, or a birthday video, cheap software can now reproduce a familiar voice closely enough to fool the person who raised it.

So the old advice — "listen carefully, you'll be able to tell" — no longer holds. What does hold is a verification step that doesn't depend on your ears at all. That's the safe word.

Set up a family safe word in five steps

You can do this today, in one conversation, for free. The whole thing takes about ten minutes.

  1. Pick a word or short phrase that means nothing. Two unrelated words work best — "copper lantern," "velvet tractor." Random beats meaningful, because meaningful is guessable.
  2. Make sure it isn't anywhere online. Skip pet names, kids' schools, street names, birthdays, sports teams, and anything a scammer could scrape from your profiles or a data broker.
  3. Share it out loud, in person or on a call you placed. Never text it, email it, or say it on a line that might be recorded. Everyone gets the same word.
  4. Pair it with one rule. If anyone calls claiming to be family in an emergency and asks for money, you ask for the word first — and if you don't get it, you hang up and call them back yourself.
  5. Say it once so it feels normal. A single dry run turns an awkward idea into a reflex people will actually use under stress.

That's the entire system. The rest of this guide is about making each step hold up when a real call lands and your heart is pounding.

Definition

Family safe word: a private word or short phrase, agreed on in advance and known only to your household, used to confirm that an urgent caller really is who they claim to be. Because AI voice-cloning copies a person's voice but not their shared secrets, asking for the safe word exposes an impersonator even when the voice sounds perfect.

What is a family safe word?

Think of it as a password for people instead of accounts. Banks and websites make you prove identity with something only you should know. A safe word does the same job for a phone call, where caller ID can be spoofed and the voice itself can be faked. It is deliberately low-tech. There is no app to install, no subscription, nothing to update. Its strength comes entirely from being a secret that lives only in your family's heads.

The scam it defends against goes by a few names — the grandparent scam, the family-emergency scam, virtual kidnapping — but the engine is always the same: manufacture panic, demand speed, and cut off the moment you'd normally use to check. The FBI describes the grandparent version as a confidence scam where criminals pose as a relative in immediate financial need, and notes that the scammers have grown more sophisticated over the years (FBI, "The Grandparent Scam"). AI voice cloning is the latest upgrade to a very old con.

Why a safe word works when your ears don't

Here is the mechanism, plainly. Voice-cloning software learns what a person sounds like. It does not learn what that person knows. Feed it a clip and it can reproduce the timbre, the accent, the little verbal habits. It cannot reproduce a word you agreed on at the kitchen table and never wrote down. Ask for that word and the clone has nothing to say.

The FTC has been blunt about how little audio the trick now needs. In its guidance on AI-enhanced family-emergency scams, the agency notes that with a short clip — maybe from something posted online — a scammer using a voice-cloning program "could call you and sound just like your family member" (FTC Consumer Alert, March 2023). Its remedy is a verification step that side-steps the voice entirely: hang up, call the person on a number you know is theirs, and try asking a question only the real person could answer (FTC, "Fighting back against harmful voice cloning," April 2024). A prearranged safe word is the cleanest version of that question, because you never have to improvise it in the moment.

The FBI lands in the same place from the other direction, recommending that families set up a shared verbal password or phrase that only they know, so a caller who can't produce it outs themselves as a fake. When the country's two biggest consumer-fraud authorities independently arrive at "agree on a secret word," it's worth ten minutes of your evening.

Why this matters: the losses behind the advice are not small, and they are climbing. The FTC reported that people lost $3.5 billion to imposter scams in 2025, the most-reported fraud category of the year, with reported losses up nearly threefold since 2020 (FTC, June 2026). Older adults carry an outsized share: the FBI's Internet Crime Complaint Center logged $4.885 billion in losses from people aged 60 and up in 2024 across 147,127 complaints, a 43% jump in losses over the prior year (IC3 2024 Elder Fraud Report). The family-emergency call sits squarely inside that impersonation category, and the voice is now good enough to close the sale.

$3.5B Reported U.S. losses to imposter scams in 2025 — the most-reported fraud category of the year, with losses up nearly threefold since 2020. Family-emergency and grandparent calls fall inside this category.
Source: Federal Trade Commission, June 2026.
Figure 01 · The 10-second safe-word check
“It’s me — I’m in trouble, send money now” An urgent call or text, pushing for speed and secrecy Stay calm. Ask for the safe word. “Before we go further — what’s our word?” CORRECT WORD, NO PAUSE Breathe. It’s likely real — but still confirm the story calmly before moving money. WRONG, STALLS, OR ANGRY Treat it as a scam. Hang up. Call the real person back on a number you already have. EITHER WAY, NEVER DO THIS No gift cards, wires, crypto, or read-back codes on the first call. Verify first, pay later — if at all.

Source: ScamDrill guidance, drawing on FBI and FTC advice for family-emergency and voice-cloning scams, 2023–2026.

What makes a word hold, or fold

Not every secret is a good secret. The safe word only works if a scammer can't guess it, can't find it, and can't trick it out of you. Most failures trace back to picking something convenient over something private.

The worst choices are the ones sitting in plain sight. A child's first name, the dog, the town you grew up in, a favorite team, an anniversary — these feel personal, but they are exactly the details that get harvested from social media and sold by data brokers. If a stranger could learn it by scrolling your profiles for five minutes, it is not a secret. The strongest words are arbitrary: two things that have no business being next to each other, easy for your family to remember precisely because they're absurd.

Where the word lives matters as much as the word itself. The moment you text it, email it, or type it into a group chat, you've created a copy that can be stolen in a breach or read off an unlocked phone. Say it out loud, in person if you can. And resist the urge to be clever with hints; a safe word written on a sticky note by the landline defeats the purpose.

Figure 02 · A safe word that holds vs. one that folds
A word that folds A word that holds SOURCE Pet, kid’s school, hometown Nothing online could reveal FORM One obvious word Two odd words paired WHERE IT LIVES Typed into a group chat Said out loud, in person IF FORGOTTEN No backup plan Call back on a known number

Source: ScamDrill guidance on choosing and storing a household verification phrase, 2026.

How to test it without scaring anyone

A safe word you set and forget is a safe word you'll fumble when it counts. The fix is a light rehearsal, not a fire drill. Over dinner, ask each person, "What's our word?" and let them answer. That's it. You're checking two things: that everyone remembers it, and that saying it out loud feels ordinary rather than dramatic.

Older relatives deserve extra care here, because they're the ones the grandparent scam targets and because a clumsy "test" can feel like a loyalty exam. Frame it as protecting the whole family, not vetting them. Something like: "I set one up for me too — if you ever get a weird call that sounds like me asking for money, make me say it." That puts you both on the same side of the problem. The playbook for protecting elderly parents from scams goes deeper on having these conversations without stepping on anyone's independence.

Kids and teens can hold a safe word too, and they should. The same cloning trick powers "I lost my phone, text this new number" messages and, further along, the sextortion and blackmail scripts aimed at younger people. Building the habit early makes it stick.

The one-line family text

If a full sit-down isn't happening this week, send this instead: “Quick thing — let's pick a family safe word. If anyone ever calls or texts sounding like me or you saying there's an emergency and they need money, ask for the word first. If they can't say it, hang up and call me directly. What word do we want?” It starts the whole system in one message.

Where safe words break, and the backstops

The word is a strong first filter, not a force field. It fails in a few predictable ways, and each has a backstop.

Someone panics and forgets to ask. That's the most common failure, and it's why the second half of the rule matters as much as the word: any request to move money right now, by wire, gift card, or crypto, triggers a call back on a number you already have. Even if the word never comes up, the call-back catches the scam. The FTC's core instruction is exactly this — don't trust the incoming number, reach the person through contact details you already trust.

The scammer talks past it. Real cons don't fold politely. Expect "there's no time for that," or anger, or a claim that they're too hurt to remember. Those reactions are the tell. A genuine relative, once they understand you're scared for them, will happily say the word. Pressure to skip verification is itself the red flag.

The word leaked. Maybe it got texted once, or said on a smart speaker, or a phone got stolen. If you suspect it's out, pick a new one and share it in person. Treat it like any password: rotate it if it's exposed.

What makes all of this work under pressure is that the scam runs on urgency and borrowed authority — the same levers behind nearly every con, which we break down in the psychology of how scammers persuade you and trace step by step in the anatomy of a modern scam. The safe word is powerful precisely because it interrupts the urgency with a slow, boring question the con can't answer.

“An AI can copy how your daughter sounds. It cannot copy a word the two of you agreed on and never wrote down. That gap is the whole defense.”

The same trick hits workplaces

This isn't only a kitchen-table problem. The identical move — a cloned voice plus manufactured urgency — now shows up at work, where the "relative in trouble" becomes "the CEO who needs a wire sent before the deal closes." Finance and payroll staff are the targets, and the ask is a payment change or an urgent transfer that skips the usual checks.

The organizational version of a safe word is a verification phrase plus a hard call-back rule: any change to payment details or any out-of-pattern transfer gets confirmed through a known internal channel before anyone acts, no matter who seems to be asking. It's the same logic that stops vendor-invoice fraud, which we cover in the vendor email compromise playbook. If you run a team, a five-minute call-back policy is one of the cheapest fraud controls you can put in place — and you can pressure-test it the same way you'd test a phishing email, which is what ScamDrill for organizations is built to do.

If you already sent money

First, set down any thought that this was careless. These scripts are engineered to hit when you're frightened and to make hesitation feel like risking your child's safety. Being fooled by that is not a character flaw; it's the design working as intended.

Then move quickly. Contact your bank or the payment provider right away and ask them to stop, reverse, or recall the transfer — speed helps, though recovery is never guaranteed. Gather everything: the number that called, the time, what was said, any payment confirmations. Report it to the FBI's Internet Crime Complaint Center at ic3.gov and to the FTC at reportfraud.ftc.gov. If you're not sure what to do first, our first 60 minutes after a scam walkthrough lays out the order of operations, and the I've been scammed decision tool builds a tailored plan.

One more warning, because it's cruel and common: after a loss, a second wave often arrives — a "recovery" service promising to claw the money back for a fee. It's the same con aimed at the same wound, and no legitimate agency charges you to recover funds. We unpack it in the second scam.

Make it a drill, not a memo

Reading this helps. It does not make anyone immune, because the emergency call is built to erase what you read in a calm hour. Knowledge fades under adrenaline; trained reflexes don't. The point of a safe word isn't the word — it's the pause it forces, practiced enough times that it fires on its own before your fear can override it.

So pick the word tonight. Say it out loud once. Then, every so often, run it: a cloned-voice "emergency" text to a family member who has to ask you for the word before they react. That's the difference between a plan you wrote down and a habit that holds when a voice you love is on the line, asking you to hurry.

Practice the pause before you need it

ScamDrill sends your family realistic practice scenarios — including cloned-voice emergencies and "it's me, send money" texts — so asking for the safe word becomes automatic before a real call ever lands. Setup takes under 10 minutes.

Start your family plan →

Frequently asked questions

What is a family safe word?

A family safe word is a private word or short phrase that only your household knows, agreed on in advance and never posted online. When a call or message claims to be a relative in trouble and pushes you to send money fast, you ask for the safe word. A real family member can answer it; an AI voice clone cannot, because the software copies a voice, not a shared secret.

Why do the FBI and FTC recommend a family safe word?

Both agencies point to it because it defeats the specific trick behind AI voice-cloning scams. The FBI recommends creating a shared verbal password that only you and your loved ones know, and the FTC tells people to verify an emergency call using something only the real person would know. Voice-cloning tools can copy a voice from a few seconds of audio, but they cannot supply a secret they were never given.

What makes a good safe word?

Pick something you would never say by accident and that a stranger could not guess or find online. A random pairing like “copper lantern” or “blue rhinoceros” works well. Avoid pet names, kids' school names, street names, birthdays, or anything you have posted on social media. Keep it easy to remember but hard to reverse-engineer, share it out loud in person rather than by text, and give everyone the same word.

What should I do if a caller cannot give the safe word?

Treat it as a scam and stop. Do not send money, gift cards, or cryptocurrency, and do not read back any codes. Hang up and call the person back on the number you already have saved for them, not the number that called you. If you cannot reach them, contact another relative or friend to check on them. Real emergencies survive a five-minute pause; scams usually do not.

How do I set up a safe word with an elderly parent who lives alone?

Keep it concrete and low-pressure. Agree on the word together in person or on a call you placed, write down the plan somewhere private rather than in a phone contact, and practice it once so it does not feel strange. Pair the word with one simple rule: if anyone calls claiming to be family in trouble and asks for money, hang up and call the real person first. Framing it as protecting the whole family, not a test of them, makes it land better.

Can a scammer just fake the safe word too?

Only if they already know it, which is why you never post it online, text it, or say it on a recorded line. If a caller guesses wrong, stalls, gets angry that you asked, or tries to talk you out of verifying, those reactions are themselves red flags. A genuine relative will understand the pause. If the word ever leaks or you suspect it did, pick a new one and tell the family in person.

Do businesses use safe words too?

Yes. The same idea shows up at work as a verification phrase or a call-back rule for money movement. Criminals now clone an executive's voice to authorize a wire or a gift-card run, so finance teams confirm any payment change through a known internal channel before acting. A shared phrase plus a mandatory call-back on a trusted number is a low-cost control any organization can adopt.