Regardless of how transaction data is varied to represent different fraud or AML scenarios, the sandbox evaluates the same set of rules and always assigns Typology 000. Shouldn't different transaction patterns trigger different rules, scores and typologies?