Review flagged conversations and events

Updated May 22, 2026

The review queue is your triage list. When a visitor's trust score drops below 30 (the default threshold), Yaplet adds them to the queue automatically. They stay there until you make a decision — whitelist them (trusted) or blacklist them (blocked). Nothing happens automatically; the queue waits for your call.

Open the review queue

Go to Security → Review queue. The page shows a summary bar with the total number of visitors awaiting review and the current threshold value.

What you see in the queue

Each row shows:

  • Trust score — The visitor's current score, color-coded (red = high risk)
  • Visitor — Email or name if known
  • Country — Detected from their IP
  • Last IP — With TOR / VPN / Proxy badges if detected
  • Signals — How many risk rules were triggered
  • Last seen — When they were last active
  • Actions — Whitelist or Blacklist buttons

Whitelist a visitor

Click Whitelist to mark the visitor as trusted. They will no longer appear in the queue, even if their score remains low. Use this when you've reviewed the signals and determined the visitor is legitimate — a remote employee, a VPN user, a frequent traveler.

Blacklist a visitor

Click Blacklist to block the visitor. This applies org-wide and also blocks inbound voice calls. See Block a visitor or IP for the full details of what blocking does.

Investigate before deciding

Click the visitor's name or the arrow button to open their full security profile. The profile shows:

  • Every risk signal that was triggered, with context and timestamps
  • IP intelligence — ASN, country, TOR/VPN/proxy flags
  • Device and browser history
  • Other visitors sharing the same IP or device fingerprint
  • Recent sessions and event timeline

Adjust the review threshold

If your queue is consistently too full (too many false positives) or too empty (missing real threats), adjust the threshold. Click Adjust threshold in the review queue summary bar, or go to Security → Settings. A higher threshold flags more visitors; a lower one is more selective.

Did this article answer your question?