Four things Summit will never ask you for
Hanging up on us is always the right move
Caller ID is trivially spoofed, so a call showing our number proves nothing at all. If anything feels off, end the call and dial 800.555.7846 yourself. When the first call was genuinely ours, the agent sees the note on your account and picks up right where the last one left off. No Summit employee will ever be annoyed that you verified.
The six scams our fraud desk sees most
Each one works by manufacturing urgency so you skip a step you would normally take.
Protection included with every account
None of this costs extra, and most of it takes under a minute to switch on.
If it already happened, move in this order
Speed matters more than certainty, so call even when you are only half sure. First, freeze the card in the app; that takes ten seconds, stops new charges, and does not cancel the card. Second, call 800.555.7846, which is staffed for card and fraud reports 24 hours a day, and lead with whether money has already left so the agent can attempt a recall before the batch settles. Third, reset your digital banking password from a device you trust, turn on two-factor if it was off, and sign out every other session, then change the password on the email address tied to your account.
Fourth, file the written claim with us and watch the account. We open the dispute the same day and generally post provisional credit within two business days. Set a transaction alert at one dollar for the next sixty days so nothing slips past you while the investigation runs. If your identity rather than just a card was exposed, place a free fraud alert with all three credit bureaus and consider a full freeze; our financial education team runs a free identity recovery workshop every month. Full step-by-step instructions live on report lost or stolen.
Security questions members ask
Am I liable if I gave a scammer my one-time code?
Usually not, but tell us immediately. Regulation E covers unauthorized electronic transfers, and reporting within two business days of learning about it keeps your exposure at the lowest tier. Waiting more than 60 days past the statement is where members get badly hurt.
Text codes or an authenticator app?
An authenticator app or a passkey. Text codes beat nothing, but SIM swap attacks are common enough that we no longer recommend them as a primary method. A passkey cannot be phished, forwarded, or read aloud to a caller.
How do I know a Summit email is genuine?
We never send a link that asks you to sign in. If an email wants your credentials, ignore the link and open the app or type our address yourself. Anything real is also waiting in your secure message inbox at member login.
Do you sell my information?
No. As a not-for-profit owned by its 412,000 members there is no shareholder to sell data for. The privacy notice lists everything we do share, which comes down to service providers and legally required reporting.
What if I lose the phone with my banking app on it?
Call us and we sign out every device on your profile. The app itself stores no account numbers and will not open without your device passcode, face, or fingerprint, so a thief holding the handset gains nothing.
Is public Wi-Fi safe for banking?
Our app and website use encrypted connections, so the traffic itself is protected. The real risk on shared networks is shoulder surfing and fake hotspot names. Use cellular data when you can, and never bank from a device you do not control.
This is a demonstration website; rates, products, and figures shown are illustrative only.
See something off? Call now
The card and fraud line at 800.555.7846 is staffed every hour of every day, holidays included. Nobody has ever been told they called too soon.
