Fraudsters are sending text messages that look like they’re from UPS, USPS, FedEx, and other couriers, urging you to “confirm delivery details” or “reschedule pickup.” Their real goal is to trick you into entering personal information or payment details so they can reroute package pickups in your name—or steal your identity. This guide shows you exactly how these scams work, how to spot them fast, and the steps to secure your deliveries and your personal information.
Why scammers target package reroutes
Online shopping and doorstep deliveries make life convenient, but they also create new openings for fraud. When scammers convince you to click a link and “verify” a shipment, they can:
- Harvest personal information (name, address, phone, email) that helps with identity fraud.
- Capture passwords or one-time codes to access your courier or retailer account.
- Collect card details with fake “redelivery fee” pages.
- Reroute a package to a pickup locker or access point they control, stealing your goods.
Even if the item is low value, repeated successes give criminals a steady flow of stolen goods and fresh personal data they can resell or use in broader identity-theft schemes.
Common red flags in fake courier texts
Smishing (SMS phishing) usually includes urgent language and a link. Look for these telltale signs:
- Unexpected message: You are not waiting for a package, or the text arrives before any official tracking email.
- Generic greeting: “Dear customer” instead of your name or order number.
- Odd URLs: Links that don’t match the courier’s official domain (for example, ups.com, usps.com, fedex.com). Look for misspellings, extra words, or unfamiliar country codes.
- Shortened links: Bitly or other shorteners that hide the destination.
- Urgent payment request: “Pay a small fee to release your package” or “final attempt” pressure tactics.
- Form fields you wouldn’t expect: Requests for Social Security numbers, driver’s license photos, or full card numbers to “confirm delivery.”
- Attachments: Legitimate couriers rarely send attachments via text.
How the reroute scam actually plays out
Understanding the flow helps you interrupt it:
- You receive a text claiming a failed delivery, address mismatch, or pickup confirmation needed.
- You tap the link and land on a cloned courier page that looks familiar.
- You enter info—address, date of birth, card number—or log in to a fake courier account screen.
- They capture credentials and immediately attempt to log in to real courier or retailer accounts, add new pickup locations, and reroute in-transit packages.
- They monetize by intercepting parcels, charging “fees,” and trying your personal data in other frauds.
Safe ways to verify any delivery message
Never rely on a link from a text to verify a shipment. Instead:
- Use the official app for USPS, UPS, FedEx, DHL, or your local courier. Sign in directly—not through a text link.
- Enter the tracking number from your retailer’s order page into the courier’s official website.
- Call the courier using the number on their official site if something seems urgent.
- Check your retailer account (Amazon, Target, etc.) to see the latest delivery status and messages.
What to do if you clicked the link
Quick action can limit damage. Follow these steps in order:
- Disconnect and close the browser tab. Do not enter more information.
- Run a device scan using your mobile security app to check for malware or risky profiles (on iOS, remove unknown device management profiles if present).
- Change passwords for any courier, retailer, and email accounts you might have entered—do it directly in their official apps or websites.
- Enable two-factor authentication (2FA) on courier, retailer, email, and financial accounts to block unauthorized logins.
- Review recent orders and shipments and cancel or lock reroutes you didn’t request. Contact the courier’s fraud team if needed.
- Contact your bank or card issuer if you entered card details; request a new card and monitor for unauthorized charges.
- Place alerts and monitor identity signals for new accounts or suspicious activity. Monitoring helps you catch misuse of exposed personal data early. For ongoing protection, consider a resource like SmartCredit for privacy, credit monitoring, and identity protection.
- Report the message by forwarding to 7726 (SPAM) if your carrier supports it, and report to the courier’s official abuse page.
Lock down your delivery ecosystem
Prevention is powerful. Make these changes to reduce your risk:
- Set up official delivery profiles: Create verified accounts with USPS Informed Delivery, UPS My Choice, and FedEx Delivery Manager. Use strong, unique passwords stored in a password manager.
- Turn on delivery notifications exclusively through official apps or email. If you already get trusted alerts, it’s easier to ignore random texts.
- Add 2FA to courier accounts so rerouting requires a code only you receive.
- Use secure pickup options: Choose in-store pickup or trusted lockers you control, especially for high-value items.
- Require signatures for valuable packages when possible to prevent silent reroutes and unattended deliveries.
- Limit exposed contact info: Trim public listings of your phone and address in online profiles, marketplaces, and people-search sites to reduce targeted smishing.
Recognize realistic variations of the scam
Fraudsters adapt quickly. Watch for these variations:
- “Customs/Import fee” notices: Claims a parcel is held until you pay a small duty via a link.
- “Final attempt—package will be returned”: Pushes urgency with a countdown timer.
- “Pickup code confirmation”: Asks you to verify or share a locker code; this code can release your parcel.
- “Photo confirmation required”: Requests an ID photo to “verify age” or “confirm recipient,” priming identity theft.
- Messages sent in reply to your real inquiry: Scammers may mirror details from a marketplace or retailer chat to appear legitimate.
Check the sender before you act
Investigate the origin of any message quickly:
- Preview the phone number: Many courier alerts come from short codes or known IDs. Random local numbers are suspicious.
- Compare to past messages: Do the formatting, link structure, and tone match your previous legitimate alerts?
- Search the exact message text in quotes; often you’ll find scam reports from other recipients.
- Don’t trust “spoofed” labels: Contact cards or names assigned on your phone can be faked and do not verify authenticity.
Protect your personal information from fueling future scams
Text scams scale because criminals acquire phone numbers and addresses from data breaches, people-search sites, and marketing lists. Reducing your exposure helps:
- Remove your data from people-search sites (data brokers) that publish your phone, address, age, and relatives. Many allow opt-outs.
- Use email aliases for retailers and shipping—unique addresses per store make phishing easier to spot.
- Keep your number private on social profiles and marketplace listings; use platform messaging or masked numbers when possible.
- Review breach alerts and change passwords after any incident where your phone or email was exposed.
If a package was stolen or fraudulently rerouted
Act quickly to improve your chances of recovery:
- Contact the courier with tracking information, explain the fraudulent reroute, and request an investigation.
- Notify the retailer; many have policies for replacement or refund when delivery fraud is documented.
- File a police report if the item is high value; you’ll need this for certain claims.
- Check for additional reroutes in your courier accounts and lock them down with 2FA and security alerts.
- Document everything (screenshots of texts, timestamps, case numbers) for support and claims.
Build safer delivery habits
Practical routines reduce risk without adding much friction:
- Ignore links in unexpected texts—go to the official app or site instead.
- Consolidate shipments to days you’re home or to secure pickup points.
- Use outdoor security thoughtfully—cameras and parcel boxes deter theft and help with claims.
- Keep accounts tidy: Remove old addresses and phone numbers, and review authorized pickup locations regularly.
- Periodically change passwords for courier and retailer accounts, especially after any breach news.
Quick response checklist
- Don’t tap the link in a courier text you didn’t expect.
- Verify status in the courier’s official app or website with your tracking number.
- Turn on 2FA and security alerts for courier, retailer, and email accounts.
- If you entered data, change passwords and monitor financial and identity activity.
- Report the message to your carrier (7726) and the courier’s fraud team.
Conclusion
Fake courier texts are designed to feel routine and urgent—exactly when you’re most likely to click. By refusing to use links in unsolicited messages, verifying shipments through official channels, and strengthening your courier and retailer accounts with strong passwords and 2FA, you can shut down reroute scams before they begin. If you do slip, act fast: secure your accounts, watch for unauthorized reroutes, and monitor your financial and identity signals to catch fallout early. With a few steady habits, you can keep both your packages and your personal information safer year-round.
Good to Know
Legit couriers rarely text unexpected links; if you must act, go directly to the courier’s official app or website and enter your tracking number—never tap the link in the message.