Security Scan Report: bi-magalu-benews.vercel.app

Submitted: Sep 29, 2026, 4:50:26 AMCompleted: Sep 29, 2026, 4:51:05 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Password-gated BI dashboard for Magalu seller data hosted on a Vercel subdomain of unknown age. No phishing, malware, exfiltration or threat-intel hits found; risk rests only on the shared-hosting credential gate and unverifiable age.

Risk Factors (3)
Credential gate (username + password) on a free instant-publishing platform subdomain with unknown creation date
Single shared keyword/password gate rather than a verifiable per-user login
Domain unranked in Cisco Umbrella and subdomain age not attributable to the apex
Safety Factors (5)
No Indicators of Compromise matched against the page or its resources
No JavaScript malware (YARA) patterns and no known-kit roster hits
No credential exfiltration and no cross-origin form submissions detected
Self-branding detected — title/meta match the domain, not impersonation of another entity
Page content is a coherent functional analytics tool, not a deceptive credential-collection page
Domain age information unavailable

Details

Page Title

BI Magalu — Benews

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'bi-magalu-benews.vercel.app' is registered; it also runs on subdomain 'bi-magalu-benews'. The core label 'vercel' covers 6 characters holding 2 vowels versus 4 consonants. Segmentation suggests two words: ver, cel. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bi-magalu-benews.vercel.app/

Page Load Overview

4.74s
Total Load Time
358 KB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-BR
Text Length:1,204 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking74% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
74%
government public service
44%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
264.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
54--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15A530767B2F53032126784E625679F6B7274C203E643C9543B6C46E19FCEE60C6BB9C8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:tWVGyAIb+spFy4NqmqaUDHD25ufG6f4hU:t5Kgm9GD2RUv

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:61761:kHQgAAnJyYonjSEIhADCB8y1RUFhUCCUQfRAionDRYlTCpEoCiCgmev7gAWE0UVgZCAh5GEAooEpUWBCEYJRRwrDEAgDhC74

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f0e0d8d8d8980000
Perceptual Hash:dd986672998d6626
Difference Hash:0008303232300800
Wavelet Hash:f8f8f8f8f8d8c080
Color Hash:#936b1f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data