Iām testing #LLM spam detection in #Stalwart mail and this one is the first and quite an interesting case of false positive. The email in question was a legitimate Apple annual subscription reminder for Telegram Premium:
X-Spam-LLM: HARMFUL (The message impersonates an Apple invoice for a Telegram Premium subscription and includes suspicious/non-Apple account details ([email protected]) suggesting a phishing/fake receipt intended to trick the recipient into clicking support/cancellation links)
X-Spam-Score: ham, score=4.60
P.S. yes, I pay for Telegram Premium to be able to download tons of videos that later end up on video.echelon.pl without throttling