Use cases

Spot when a customer invokes a legal right

EU, UK and US rules. Reads each contact for a payment dispute, data request, cancellation or hardship request. People check validity and identity.

Try it on this example

Example · EU cardholder: an unauthorised payment and a data request, sent to the merchant

Market (EU, UK or US): EU

Channel (email, chat, call transcript, web form): email

The whole contact

From: Lena Hoffmann <lena.hoffmann@example.com> To: Help <help@lumocard.example> Date: Mon, 14 Sep 2026 08:47 Subject: Payment I did not make Hello, I have just looked at my app and there is a payment of EUR 312.40 to SQ *BLUEWAVE on 12 September. I did not make this payment. I have never heard of this shop and my card has been in my wallet the whole time. I still have it here. While you are looking at my account, can you also tell me what information you hold about me and who you have shared it with? I have been getting calls from companies I have never dealt with and I want to know where they got my number. After this I am honestly not sure I want to keep the account. Lena Hoffmann Card ending 5521 --- From: Help <help@lumocard.example> To: Lena Hoffmann <lena.hoffmann@example.com> Date: Mon, 14 Sep 2026 11:20 Subject: RE: Payment I did not make Hi Lena, Thanks for getting in touch. For card payments you do not recognise, the quickest way to get your money back is to contact the merchant directly, as they can refund you straight away. You can find their contact details by tapping the payment in the app. For anything else, please see our Help Centre at help.lumocard.example. Kind regards, Marco Lumo Support
  1. Which right does the customer mainly invoke in this contact?Payment dispute100%
  2. Does the customer say a payment, charge or transfer was not made or allowed by them, or is wrong?Yes99%
  3. Does the customer say they did not make or agree to a payment?Yes99%
  4. Does the person getting in touch ask to exercise a right over personal data, such as seeing, correcting or deleting it, or stopping marketing?Yes99%
  5. Does the customer ask to end their account, card, contract or subscription?No89%
  6. Does the customer say they cannot pay or are struggling to pay, and ask for help or time?No95%
  7. Is the person getting in touch acting for someone else, such as a relative, carer, parent, lawyer or claims firm?No95%
  8. How clearly does the customer invoke the main right?Clear in plain words99%
  9. Does the agent take up the request, or send the customer elsewhere?Sent elsewhere or missed100%
  10. Is there enough in the text to tell what the customer is asking for?Yes98%

These are real answers stored from one run on this example.

The prism behind it

Spot when a customer invokes a legal right10 questions

Fields

  • Market (EU, UK or US)
  • Channel (email, chat, call transcript, web form)
  • The whole contact

Context

The firm issues payment cards and runs current accounts, and its partners' support teams answer cardholders. The text is one whole support contact: an email thread, a chat or a call transcript, with any agent replies. The market field says which rule set applies. Customers rarely name a right or a law; they say what happened and what they want. Rights the firm handles: - Payment dispute: the customer says a payment, charge or transfer was not made or allowed by them; was taken twice, for the wrong amount or after they cancelled; paid for goods or services that never arrived or were not as agreed; or that a promised refund or cash from a machine never reached them. "I don't recognise this", "I never made this payment" and "I paid and nothing came" all count. - Data request: the customer asks to see or get a copy of their personal data, to be told what is held or who it was shared with, to delete, correct, move or restrict it, to object to a use of it, to stop marketing, to opt out of its sale or sharing, or to withdraw consent. "What information do you hold about me?" counts. - Cancellation: the customer asks to end the account, card, contract or subscription, not a single payment or order. - Hardship: the customer says they cannot pay, or are struggling to pay, and asks for help, time or a lower payment. EU rules: - Payment services (PSD2, Directive 2015/2366, as each country has made it law): the payer must tell the provider without undue delay on becoming aware of an unauthorised or wrongly executed payment, and no later than 13 months after the debit date (Article 71). For an unauthorised payment the provider refunds immediately, and no later than the end of the following business day after noting or being told of it, unless it has reasonable grounds to suspect fraud and tells the national authority in writing (Article 73). Firm policy: the firm treats the moment a cardholder tells a partner support agent as the moment it was told. - Data (GDPR): the firm answers a request on the data subject's rights without undue delay and within one month of receipt (Article 12(3)). UK rules: - Payment services (Payment Services Regulations 2017): the same 13-month notice limit (regulation 74), and a refund of an unauthorised payment no later than the end of the business day after the provider becomes aware of it, with a fraud exception (regulation 76). - Data (UK GDPR): the same one-month answer. US rules: - Debit cards and accounts (Regulation E, 12 CFR 1005.11): a notice of error may be oral or written, and must reach the institution within 60 days after it sent the statement showing the error. The institution investigates within 10 business days, or within 45 days if it gives provisional credit within the 10. - Credit cards (Regulation Z, 12 CFR 1026.13): a billing error notice must be written and reach the creditor within 60 days after the first statement showing the error. The creditor acknowledges within 30 days and resolves within two billing cycles, and never later than 90 days. - Data: state privacy laws apply by the customer's state. Under California's law the firm answers a verifiable request within 45 days, which it may extend once by 45 days with notice. How the answers are used: - Each right found opens its own workflow, with the time of the contact as the start of its clock. Clocks, identity checks and whether a request is valid are handled by code and by people, never here. - A contact can invoke more than one right. Each is answered on its own. - Telling the customer to contact the merchant, the bank or another team, without taking the request, is not handling it.

Questions

  1. Which right does the customer mainly invoke in this contact? Choice

    Use the rights and phrasings in the context. When the customer invokes more than one, pick the first in this order: Payment dispute, Hardship, Data request, Cancellation. The other rights are answered by their own questions.

    • Payment dispute The customer says a payment was not theirs, was wrong, or paid for something that never arrived or was not as agreed.
    • Data request The customer asks to see, copy, correct, delete, move or restrict their personal data, to object to or stop a use of it, or to withdraw consent.
    • Cancellation The customer asks to end the account, card, contract or subscription.
    • Hardship The customer says they cannot pay or are struggling, and asks for help or time.
    • No right invoked The customer asks a question or makes a request that is none of the rights in the context.
  2. Does the customer say a payment, charge or transfer was not made or allowed by them, or is wrong? Yes / No

    Count a customer who says a payment, charge or transfer was not made or allowed by them; was taken twice, for the wrong amount or after they cancelled; paid for goods or services that never arrived or were not as agreed; or that a promised refund or cash from a machine never reached them. Count it however it is worded, including "I don't recognise this payment", and a question such as "what is this charge?" when the customer also says it is not theirs. Do not count a plain question about a payment the customer accepts. This can be the notice that starts a legal or scheme clock: code decides which clock applies, and people decide whether the claim is valid. Yes: The customer says a payment is not theirs or is wrong in one of these ways. No: The customer disputes no payment, or only asks about one they accept.

  3. Does the customer say they did not make or agree to a payment? Yes / No

    Count "I did not make this", "I don't recognise it and it wasn't me", a lost or stolen card used by someone else, and a payment taken after they withdrew consent. Do not count a payment they made that went wrong or bought something that did not arrive. Yes: The customer says they did not make or agree to a payment. No: The customer says no such thing.

  4. Does the person getting in touch ask to exercise a right over personal data, such as seeing, correcting or deleting it, or stopping marketing? Yes / No

    Count a request to see or get a copy of personal data, to be told what is held or who it was shared with, to delete, correct, move or restrict it, to object to a use of it, to stop marketing, to opt out of its sale or sharing, or to withdraw consent. Count it in any words, such as "everything you have on me" or "the notes about me", whether or not a law or right is named, and when it sits inside a message about something else. A request for a routine document, such as a payslip, an invoice or an employment letter, is not a data request. Read only what the person getting in touch says, not the agent. Yes: They make at least one such request about their own data or the data of someone they act for. No: They make no such request. A general question about the privacy policy is No.

  5. Does the customer ask to end their account, card, contract or subscription? Yes / No

    Count a clear request to end it, in any words. Do not count cancelling a single payment or order, and do not count a customer who only says they are thinking about leaving. Yes: The customer asks to end the account, card, contract or subscription. No: The customer does not ask to end it.

  6. Does the customer say they cannot pay or are struggling to pay, and ask for help or time? Yes / No

    Count both parts: a statement that they cannot or can barely pay, and a request for help, more time, a pause or a lower payment. Yes: The customer says both. No: The customer says neither, or only one of the two.

  7. Is the person getting in touch acting for someone else, such as a relative, carer, parent, lawyer or claims firm? Yes / No

    Count anyone who says they are getting in touch for the person whose account or data it is. Someone who writes for themselves and copies in a lawyer is acting for themselves. Yes: The person says they act for someone else. No: The person acts for themselves, or makes no request.

  8. How clearly does the customer invoke the main right? Choice

    Judge the main right only.

    • Named The customer names the right, the law or the form, such as "subject access request" or "chargeback".
    • Clear in plain words The customer does not name it, but there is no doubt what they are asking for.
    • Could be only a question The words could be a question about the right rather than a use of it, such as asking how disputes work.
    • No right invoked The customer invokes none of the rights in the context.
  9. Does the agent take up the request, or send the customer elsewhere? Choice

    Look only at the agent's words about the rights the customer invokes, and use the last point in the context.

    • Taken up The agent says the request is being raised or passed to the team that handles it, or explains how and when it will be handled.
    • Sent elsewhere or missed The agent tells the customer to contact the merchant, the bank or another team, answers something else, or ignores the request.
    • No right invoked The customer invokes none of the rights in the context.
    • No agent reply in the text The text holds only the customer's words.
  10. Is there enough in the text to tell what the customer is asking for? Yes / No

    Answer No when the text is cut off, too short, only an attachment note, or so damaged by transcription errors that a careful reader could not tell what the customer wants. Yes: A careful reader could tell what the customer is asking for. No: The text is too incomplete or garbled to tell.

Lens columns

main_right, main_right_probability, payment_dispute, payment_dispute_probability, unauthorised_claimed, unauthorised_claimed_probability, data_request, data_request_probability, cancellation_request, cancellation_request_probability, hardship_request, hardship_request_probability, on_behalf_of_other, on_behalf_of_other_probability, clarity, clarity_probability, request_handled, request_handled_probability, enough_information, enough_information_probability

Run it on your own text

Add this prism in the app, change any question, and test it on a file of your own.

Ask for an invite