Back to Explore
🕵️

Fraud & Corruption

Vendor Master Fraud Indicators

Vendor-master fraud indicators test the supplier database for shell vendors, employee links and shared banking — the gateway corruption exploits first.

📖 6 min read🎯 Intermediate✍️ Updated 2026

Why Vendor-Master Integrity Matters

The vendor master is the gateway through which state money leaves, and a single corrupted record can route legitimate-looking payments to a shell or an employee's own account. AGSA and forensic investigators repeatedly trace large irregular losses back to vendor-master weaknesses, and the SCM framework and PRECCA both demand that suppliers be genuine, independent and properly declared. AuditPro Core runs integrity tests across the vendor master so shell suppliers, employee-linked vendors and shared banking surface as exceptions before they are paid.

The Numbers

AuditPro Core renders this view from your tenant's live, tamper-evident records. The figures below are illustrative sample data.

Suspect vendors

1 920

▲ 13%

Employee-linked

486

Invalid VAT / tax

612

Shared bank accounts

274

Suspect vendors by test

Spend at suspect vendors

Vendor categoryVendorsSpend (R m)
Employee-linked486412
Shell / no trace230286
Invalid tax status612198
Shared banking274164

Figures shown are illustrative sample data for demonstration. AuditPro Core renders these views from your own tenant's live, tamper-evident records.

Shell Suppliers

A shell vendor exists only to receive payment, with no genuine trading capacity. Missing tax registration, recent registration before a large award and no physical presence are its fingerprints.

Employee-Linked Vendors

Suppliers sharing identity numbers, addresses or directors with employees signal undisclosed interest and likely conflict. These links breach declaration duties and SCM independence rules.

Shared Banking

Distinct vendors paid into the same bank account point to a single hidden beneficiary behind multiple supplier records. It is among the strongest indicators of vendor-master manipulation.

Master-Data Control

Weak controls over who can create and amend vendor records make all of the above possible. The integrity of the master data is only as strong as the access governing it.

How AuditPro Core Bridges the Gap

  • Integrity testing: AuditPro Core screens the vendor master for shell, employee-linked and shared-banking indicators continuously.
  • Cross-reference: vendor records are matched against employee and CIPC director data to expose hidden links.
  • Exception workflow: flagged vendors are held for verification before payment and routed to investigation.
  • Traceability to source: each flag links to the vendor record and the matching data that triggered it.

Key Takeaways

  • The vendor master is the first gateway corruption corrupts.
  • Shell vendors leave fingerprints: no tax record, no presence, fresh registration.
  • Shared banking across vendors is among the strongest fraud indicators.
  • Master-data access control determines whether any of this is possible.

See This on Your Own Data

AuditPro Core renders this dashboard from your tenant's live, tamper-evident records — every figure traceable to source.