To access this feature:
- Log in to Cobo Portal
- Click Apps in the left sidebar to open Cobo Portal Apps
- Find and open Screening
- Click Transaction Screening

- CipherOwl
- Elliptic
- BlockSec
Transaction list
Key information:| Field | Description |
|---|---|
| Transaction ID | Unique Cobo Portal identifier |
| Direction | Inbound or Outbound |
| Risk | CipherOwl: Low/Medium/High |
| Status | Review Status: • Pending Screening: Transaction received, waiting for AML/CFT scan • Screened: AML/CFT scan results received • Pending Review: Waiting for manual review. • Pending Decision: For clients performing their own KYT, waiting for the client to submit their KYT decision. • Approved: Transaction approved based on post-screening policies settings • Rejected: Transaction rejected based on post-screening policies settings • Not Supported: Asset not yet supported by Screening, transaction proceeds without screening • Bypassed: Transaction bypassed based on Screening Settings Fund Status: • Frozen: Transaction funds cannot be transferred by users or auto-swept • Returned: Transaction funds have been returned to the specified address • Unfrozen: Transaction funds can be transferred by users and auto-swept • Isolated: Transaction funds have been isolated to a specified address |
| Amount | Transaction amount |
| From/To | Source and target addresses |
| Txn Hash | Transaction hash (only displayed for inbound transactions) |
| Updated Time | Time of latest status change |
Screening details
Click
Overview section
| Field | Description |
|---|---|
| Transaction ID | Unique identifier for the transaction |
| Direction | Inbound or Outbound |
| Amount | Transaction amount |
| From address | Source address of the transaction |
| To address | Destination address of the transaction |
| Transaction hash | Transaction hash (displayed for inbound transactions only) |
| Created time | Time when the transaction was created |
Risk assessment section
Shows detailed risk analysis for the transaction, which varies based on the AML provider:When using CipherOwl:| Field | Description |
|---|---|
| AML Provider | The service provider used for transaction screening • CipherOwl |
| Risk | Risk level returned by CipherOwl • Low • Medium • High |
| Screening Address | The address being screened and its associated wallet: • For inbound: From address • For outbound: To address Note: UTXO transactions may have multiple from/to addresses |
| Amount | Transaction amount for the screened address |
| Sanctioned | Indicates if the screened address is on any sanctions list When marked as Yes, click the info icon to view the sanction details: • Sanctions Program: Sanctioning authority • Jurisdiction: Authority’s jurisdiction • Sanctioned Entity: Entity under sanctions • Reference URL: Link to sanction information |
| Risk Exposure | Types of risks identified • Direct (maps to CipherOwl’s “Direct Risk”): The screened address itself has a risk label • Indirect (maps to CipherOwl’s “Exposure Risk”): The screened address has transacted with other addresses that have risk labels Note: A transaction can be labeled as both Direct and Indirect |
| Risk Categories | Specific risk labels identified from screening results, refer to CipherOwl’s Address Risk Score |
| Exposure Address | The risky address identified in the transaction path Click the info icon to view the Exposure Path, which shows: • Send path: The sequence of addresses from your address to the exposure address (e.g., Your Address → B → C → Exposure Address) • Receive path: The sequence of addresses from the exposure address back to your address (e.g., Exposure Address → E → Your Address) |
Transaction list
Key information:| Field | Description |
|---|---|
| Transaction ID | Unique Cobo Portal identifier |
| Direction | Inbound or Outbound |
| Risk | Elliptic: 0.0-10.0 numerical score |
| Status | Review Status: • Pending Screening: Transaction received, waiting for AML/CFT scan • Screened: AML/CFT scan results received • Pending Review: Waiting for manual review. • Pending Decision: For clients performing their own KYT, waiting for the client to submit their KYT decision. • Approved: Transaction approved based on post-screening policies settings • Rejected: Transaction rejected based on post-screening policies settings • Not Supported: Asset not yet supported by Screening, transaction proceeds without screening • Bypassed: Transaction bypassed based on Screening Settings Fund Status: • Frozen: Transaction funds cannot be transferred by users or auto-swept • Returned: Transaction funds have been returned to the specified address • Unfrozen: Transaction funds can be transferred by users and auto-swept • Isolated: Transaction funds have been isolated to a specified address |
| Amount | Transaction amount |
| From/To | Source and target addresses |
| Txn Hash | Transaction hash (only displayed for inbound transactions) |
| Updated Time | Time of latest status change |
Screening details
Click
Overview section
| Field | Description |
|---|---|
| Transaction ID | Unique identifier for the transaction |
| Direction | Inbound or Outbound |
| Amount | Transaction amount |
| From address | Source address of the transaction |
| To address | Destination address of the transaction |
| Transaction hash | Transaction hash (displayed for inbound transactions only) |
| Created time | Time when the transaction was created |
Risk assessment section
Shows detailed risk analysis for the transaction, which varies based on the AML provider:When using Elliptic:Elliptic has three different display styles depending on the screening scenario:- Address screening with Entity as Unknown
- Address screening with a specified Entity
- Transaction screening
| Field | Description |
|---|---|
| AML Provider | The vendor used for transaction screening • Elliptic |
| Risk | The screening result from Elliptic, ranging from 0.0 to 10.0 in 0.1 increments |
| Screening Type | Elliptic’s screening method: • Wallet Screening • Transaction Screening |
| Address | The specified address for wallet screening |
| Txn Hash | The on-chain transaction hash for transaction screening |
| Output Address | The output address for transaction screening |
| Coverage | The chain and asset coverage for the scan: • Holistic • Single asset |
| Entity | The cluster_entities returned by Elliptic for wallet screening:• Specific entity • Unknown |
| Category | The risk category of cluster_entities returned by Elliptic for wallet screening:• Specific risk category (may have multiple) • Unknown |
| Wallet Inflow (USD) | For wallet screening, the total inflow amount for the scanned address, returned by Elliptic. Note: Only displayed when the entity is Unknown |
| Wallet Outflow (USD) | For wallet screening, the total outflow amount for the scanned address, returned by Elliptic. Note: Only displayed when the entity is Unknown |
| Value (USD) | For transaction screening, the value of the scanned transaction returned by Elliptic |
| Triggered Rules | Displayed for wallet screening when the Entity is not Unknown. May have multiple rules. |
| Field | Description |
|---|---|
| Funds Flow | The direction of funds returned by Elliptic for the scanned object • Source of Funds: Funds flowing in • Destination of Funds: Funds flowing out (only available for wallet screening) |
| Risk Score | The risk score corresponding to the Trigger Rule returned by Elliptic |
| Triggered Rule | The risk rules triggered by Elliptic, with rule information configured by users in Elliptic risk settings |
| Total (%) | The percentage of total funds related to triggered rules returned by Elliptic |
| Total (USD) | The total monetary amount related to triggered rules returned by Elliptic |
Transaction list
Key information:| Field | Description |
|---|---|
| Transaction ID | Unique Cobo Portal identifier |
| Direction | Inbound or Outbound |
| Risk | BlockSec: Severe/High/Medium/Low |
| Status | Review Status: • Pending Screening: Transaction received, waiting for AML/CFT scan • Screened: AML/CFT scan results received • Pending Review: Waiting for manual review. • Pending Decision: For clients performing their own KYT, waiting for the client to submit their KYT decision. • Approved: Transaction approved based on post-screening policies settings • Rejected: Transaction rejected based on post-screening policies settings • Not Supported: Asset not yet supported by Screening, transaction proceeds without screening • Bypassed: Transaction bypassed based on Screening Settings Fund Status: • Frozen: Transaction funds cannot be transferred by users or auto-swept • Returned: Transaction funds have been returned to the specified address • Unfrozen: Transaction funds can be transferred by users and auto-swept • Isolated: Transaction funds have been isolated to a specified address |
| Amount | Transaction amount |
| From/To | Source and target addresses |
| Txn Hash | Transaction hash (only displayed for inbound transactions) |
| Updated Time | Time of latest status change |
Screening details
ClickOverview section
| Field | Description |
|---|---|
| Transaction ID | Unique identifier for the transaction |
| Direction | Inbound or Outbound |
| Amount | Transaction amount |
| From address | Source address of the transaction |
| To address | Destination address of the transaction |
| Transaction hash | Transaction hash (displayed for inbound transactions only) |
| Created time | Time when the transaction was created |
Risk assessment section
Shows detailed risk analysis for the transaction, which varies based on the AML provider:When using BlockSec:| Field | Description |
|---|---|
| AML Provider | The vendor used for transaction screening • BlockSec |
| Risk | The risk level returned by BlockSec • Severe • High • Medium • Low |
| Screening Type | BlockSec’s screening type • KYA (address screening) • KYT (transaction screening) |
| Description | Alert descriptions returned by BlockSec |
| Detail | Per-address risk indicators, each with a description (desc) and supplementary detail. Displayed for KYA (address screening) only |
Timeline section
The timeline section provides a centralized interface to manage and track all compliance activities in one place:- Real-time tracking of review status changes
- Transaction fund status monitoring
- Complete audit trails and action histories
Available actions
The following actions are available based on the transaction’s current status:| Action | Effect |
|---|---|
| Approve | • For inbound: Transaction passes AML screening, and the funds become available to the user. • For outbound: Transaction passes AML screening and proceeds to the next stage. |
| Approve with Alert | • For inbound: Transaction passes AML screening, and the funds become available to the user. An additional risk transaction notification is sent. • For outbound: Transaction passes AML screening and proceeds to the next stage. An additional risk transaction notification is sent. |
| Reject | • For inbound: Transaction fails AML screening, and the funds are frozen. • For outbound: Transaction fails AML screening, and the withdrawal is rejected. |
| Unfreeze | • For inbound: Releases frozen funds, making them available to the user. • For outbound: Not applicable. |
| Refund | • For inbound: Returns the funds from the receiving address to a user-specified address. • For outbound: Not applicable. |
| Isolate | • For inbound: Returns the funds from the receiving address to a user-specified isolation address. • For outbound: Not applicable. |
