Scam Guard (anti-raid)

Auto-action compromised accounts that mass-mention or flood channels — including image scams a word filter can't read.

Scam Guard protects against the most common raid: a compromised account that pings @everyone and drops the same malicious link across many channels in seconds. It reacts to behaviour, not text, so it also catches scams shipped as an image or QR code that a word filter can never see.

Set it up

  1. Enable the Scam Guard plugin in the Plugins market.
  2. On the Scam Guard page, choose the action to take when a raid pattern is detected.

What it detects

  • Mass mentions — a single message pinging @everyone / @here or a pile of mentions.
  • Multi-channel flooding — the same or near-identical message posted across several channels within a few seconds.

Either pattern trips the guard.

Action when it fires

Pick one action (configurable per server):

  • Ban — with Ban Sync on, the ban is enforced network-wide automatically. Recommended for the fastest stop, since these are usually hacked accounts the real owner can appeal to recover.
  • Kick — remove them (they can rejoin once the account is secured).
  • Timeout — mute them for a set number of minutes.

The offending messages are removed and every trigger is written to the Moderation log.

Who is never affected

Scam Guard never acts on admins, whitelisted users or exempt roles — so a moderator legitimately pinging @everyone won't trip it.

Give the bot Ban Members, Kick Members, Moderate Members and Manage Messages so every action option works, and make sure its role sits above the members it should act on. Pair Scam Guard with the honeypot and account-age filter for layered raid defense.

Scam Guard (anti-raid) — CloudMod Docs | CloudMod