Security Scan Report: boat-cms.vercel.app

Site favicon
Submitted: Oct 6, 2026, 12:50:40 PMCompleted: Oct 6, 2026, 12:51:20 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 68%

5
Risk Score

boAt-branded shop clone on an unofficial vercel.app subdomain with placeholder contacts and unmatched pricing, but no forms, login or payment capture. Brand impersonation without a data-collection mechanism; treat as untrusted.

Risk Factors (4)
Third party's brand (boAt) presented on a domain that is not boAt's official domain
Content and product imagery sourced from boAt's real storefront, giving a false impression of an official shop
Placeholder contact information inconsistent with a genuine retailer
Unranked shared-hosting subdomain of unknown creation date
Safety Factors (3)
No credential, login or payment forms present (0 forms, 0 password fields, 0 payment fields)
No content-malware Indicators of Compromise, no YARA hits, no known phishing kit in the roster
All JavaScript served from the site's own domain; no cross-origin credential exfiltration and no third-party script hosts
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'boat-cms.vercel.app' is registered and includes subdomain 'boat-cms'. The core label 'vercel' covers 6 characters split between two vowels and 4 consonants. Segmentation suggests 2 words: ver, cel. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://boat-cms.vercel.app/

Page Load Overview

5.01s
Total Load Time
949 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Text Length:3,440 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media66% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

entertainment media
66%
finance banking
62%
blog personal website
57%
government public service
52%
corporate business
48%

Detected Features

Products

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1264.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
4104.18.0.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
423.227.39.200Cloudflare · CDNOttawa, Ontario, Canada
AS13335Cloudflare, Inc.
4142.251.14.94Google · CDNUnited States
AS15169Google LLC
423.227.38.74Cloudflare · CDNOttawa, Ontario, Canada
AS13335Cloudflare, Inc.
4216.198.79.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
4104.18.1.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
464.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
434.144.250.199Google · CDNKansas City, Missouri, United States
AS396982Google LLC
4810--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T124A3C9B25022602486134ED232CE7F26B82AA432456A4475F77D4DDC9FE7D3B13B673A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:bUmSmemSm8mSmRmSmNXmSm4mSmkmSmewslo7BWaVxB9MvmvmySB:6bI7BWdMmySB

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:98018:RaYIIgeiAQgIiAEKNSygEGiANtIMFGXRHqNRwZGrwMCABAtRpBmaIbMYBgIEssAQCAAkEhCAABNIFUQaRBYYERBLZKqZYCG4

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00000000ffffffff
Perceptual Hash:af40f0afed12a0ad
Difference Hash:4d65e56d524b482d
Wavelet Hash:00000000ffffffff
Color Hash:#783a71

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data