What we found
- The core description of the scam comes directly from a published FTC consumer alert, an official advisory.
- Only one harvested row supports the alert, with no independent press or community corroboration.
- The source gives no counts, locations, dates of incidents, or loss amounts, so the scale and spread are unstated.
- Reviewed by 4 models, 3 from independent houses.
What we don’t know
- How many people have reported tampered parking-meter QR codes
- Which cities, lots, or parking operators have been affected
- How much money has been lost and by what payment method
- Whether the fake sites impersonate a specific parking or payment brand
- Whether the stickers are still being found in the field
The bench — who voted
4 INDEPENDENT AI MODELS REVIEWED THIS. ALL 4: MODERATE RISK.
The card names a count. Here are the seats behind it, with what each one said.
DISSENT, PRESERVEDThe URL-inspection advice carried in this alert is weak protection in practice and should not be presented as a primary defence: shortened links, redirect chains and lookalike domains routinely defeat visual inspection of a previewed address. The 'pay through the operator's own app or a number you looked up yourself' guidance is the sound part and should stand alone.
DISSENT, PRESERVEDI graded the pattern moderate rather than high because exposure per victim is typically bounded by a single card transaction, but readers should note that the same fake page can harvest identity details, so downstream harm can exceed the parking fee. I would not object to a colleague grading this high.
Reviewed by 4 independent models: 1 found it carried by the evidence, 3 did not.
▼ Protocol & challenge record
ON THE RECORDI do not accept 'moderate' confidence on this record. The evidence is one consumer-education page whose own operative phrase is 'People have reported.' That is complaint-intake anecdote republished by an authoritative body — the authority attaches to the publisher, not to the facts. With zero counts, zero locations, zero dates of incident, zero loss figures, no named operator, and no independent corroboration, low confidence is the honest label. The Desk is borrowing the FTC's credibility to cover an unverified factual core.
ON THE RECORDThe added sentence telling readers to pay through the operator's app or a looked-up phone number instead of scanning is not in the source and is not what the FTC advised. Adding unsourced instructions while dropping the source's own actionable remediation steps inverts the correct priority. I would strike the added advice outright rather than merely relabel it.
ON THE RECORDThe contaminated option pools ('ATTENTION: MULTI-FACTORS', 'Send this to any multi-factor you know', dropped groups named 'feeding' and 'coins') are not cosmetic. They show a term extractor that cannot tell a security control from a demographic. The safeguards caught it this time. I do not think that should be recorded as a pass, and I want the failure preserved on the record.
ON THE RECORDNo one in this draft asks the obvious counter-question: is it possible that some of these reported stickers are legitimate? Municipal and third-party parking operators do affix QR decals to meters. An alert built entirely on consumer reports, with no field verification, cannot distinguish a scam sticker from a real one that a driver distrusted. That alternative explanation belongs in the published limitations, not only in my dissent.
The sources
Official sourceSee a QR code parked somewhere? Don’t scan it…yet!2026-09-03
The FTC says people have reported scammers covering up legitimate QR codes on parking meters with a QR code of their own, sending scanners to fake sites built to take money or personal information.
Other checks
Published under standing founder pass (A9) — every claim source-mapped by the machine.
▼ What the machine checked
- ✓ Not a community submission.
- ✓ No entity is named.
- ✓ All 3 material sentence(s) map to FTC.
- ✗ anthropic returned "overstated"; google returned "overstated"; groq returned "overstated"; openrouter raised 1 objection(s) — published on the receipt, not blocking (A9 amendment).
- ✓ No audience band is set.
No human affirmed these. They were verified by the classifier described in Amendment A9, on 2026-09-05.
Something wrong here? Tell us and we'll correct it — corrections are published, not quietly edited.
Phishy? Send it → sharelivefraud.com/squire-it
Not affiliated with any government agency, credit bureau, bank, platform, or law-enforcement agency. Informational only — not legal or financial advice.
Naming a source is not an endorsement, and being named here is not an accusation against any company.
Powered by SquireIt™