Security Scan Report: donorflow.se

Redirected to:
https://www.donorflow.net/
Site favicon
Submitted: Sep 27, 2026, 2:30:37 PMCompleted: Sep 27, 2026, 2:31:15 PMpubliccompleted

This website contacted 13 IPs in 1 country across 6 domains to perform 31 HTTP transactions. The main domain is donorflow.net and was registered 10 years ago.

Submitted URL: https://donorflow.se

Effective URL:

https://www.donorflow.net/
Redirected

AI Security Verdict

Safe Website

Confidence: 85%

1
Risk Score

Donorflow, a Stockholm nonprofit-fundraising SaaS, on its own brand domain. No forms, no credential or payment capture on-page, no Indicators of Compromise, YARA or IDS hits. Legitimate site.

Safety Factors (5)
Self-branding consistent across title, meta tags and content — no impersonation of another entity
No forms, no password/payment fields, no credential exfiltration or cross-origin form submission
Product, pricing, FAQ and company content is coherent and describes a legitimate nonprofit fundraising SaaS
Physical address, phone number and email matching the page domain published on-site
No threat-intel, YARA, IDS or ML-malicious signals in any feed
Domain age information unavailable

Details

Page Title

Donorflow — Donor management & digital fundraising

Scan Type

public

Domain Name Analysis

You're looking at domain 'donorflow.se' on the Swedish country-code top-level domain (.se) while skipping any subdomain. The registrable portion 'donorflow' spans 9 characters split between 3 vowels and six consonants. It segments into two words: donor, flow. Median word length is 4.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://donorflow.se

Page Load Overview

2.44s
Total Load Time
409 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-GB
Text Length:3,436 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software46% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
46%
corporate
35%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
766.33.60.193Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2198.185.159.144Squarespace · CLOUDNew York, New York, United States
AS53831Squarespace, Inc.
2151.101.193.229Fastly · CDNUnited States
AS54113Fastly, Inc.
2142.250.154.95Google · CDNUnited States
AS15169Google LLC
2104.18.1.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.20.94Google · CDNUnited States
AS15169Google LLC
2198.49.23.144Squarespace · CLOUDUnited States
AS53831Squarespace, Inc.
266.33.60.66Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.13.95Google · CDNUnited States
AS15169Google LLC
3113--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F982B5FBB004792707834E967173B399E297849AFE6859C032FC635E83E4DA5873B245

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:WkWU8WM9zGUXkUgdiS8A3eOhNhlXOuE3/:WkWU8WM9iUXkUc8A3eOhNLXE3/

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18183:IsCo44aAaCiAQBAkAC4RByKogjEBEpAQJATza7giAC8QoOEtTygMEFUEmMxGCBfaIkUCKViBCMWAUccNAcHTAIAk6gDFIg5E

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e3183d0131313931
Perceptual Hash:ce31f5c730b1c6b0
Difference Hash:8671f13161696961
Wavelet Hash:f7193d1931393931
Color Hash:#bfd279

Scan History

Scan history not available

Unable to load historical scan data