Expiring Reward Points Texts: Phishing Pattern Highlighted by the FTC
A practical breakdown of the “expiring points” text scam pattern and the controls consumers should apply before clicking.
Legal notice
This article is editorial and informational content. It can reference user reports and public filings, but it is not legal advice or a final legal determination of liability.
Documented facts
Dated events, publication metadata, and referenced public-source context are presented as factual context.
Editorial opinion and analysis
This article converts the FTC April 2026 rewards-point scam warning into an actionable anti-phishing checklist.
Reported patterns and takeaways
Rewards-related urgency is used to force fast clicks and credential entry.
Authentication and payment pages opened from unknown texts are high risk.
Always verify rewards status inside the official app or website.
April 2026 FTC warning in context
On April 7, 2026, the FTC warned that many “points expiring soon” texts are scam messages. These campaigns mimic loyalty programs to steal login credentials, payment data, or both.
How this phishing pattern converts victims
The message offers a small reward and a short deadline, then routes victims to lookalike pages. Once credentials are entered, attackers can attempt account takeover, card abuse, or further impersonation.
Consumer-safe workflow
Treat every unexpected rewards text as untrusted until proven legitimate through first-party channels.
Open your loyalty account only via the official app or direct URL.
Do not authenticate through links received by unsolicited SMS.
Enable MFA and monitor account activity after suspicious messages.