Security Scan Report: codesandbox.io

Submitted: Mar 19, 2026, 1:01:27 PMCompleted: Mar 19, 2026, 1:02:39 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 1 HTTP transaction. The main domain is codesandbox.io and was registered NaN years ago.

Submitted URL: https://codesandbox.io

The Cisco Umbrella rank of the primary domain is #114,536 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 82%

7
Risk Score

Site shows a known malicious IP and high JS obfuscation, raising risk despite legitimate appearance.

Risk Factors
Malicious IP address (185.199.108.133) associated with known attacker
Low Cisco Umbrella ranking (114,536) for a site claiming to be a major platform
Critical JavaScript obfuscation score indicating heavily obfuscated code
Domain age information unavailable

Details

Page Title

CodeSandbox: Instant Cloud Development Environments

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(56%)

Domain Information

The domain 'codesandbox.io' uses the British Indian Ocean Territory country-code top-level domain (.io) with no subdomain. The second-level label 'codesandbox' is 11 characters long holding 4 vowels versus 7 consonants. It segments into two words: code, sandbox. The median word length lands at 5.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://codesandbox.io

Page Load Overview

2.61s
Total Load Time
63
HTTP Requests
3
Domains
3.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:6,004 chars
Detector Agreement:60%

Website Classification

Primary Category

technology software56% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
56%
documentation technical
26%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
21172.64.144.247United States
AS13335Cloudflare, Inc.
21104.16.79.73United States
21185.199.110.133United States
AS54113Fastly, Inc.
633--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17D94B7A6E3A0E67EEC3B685A331D724C9004A905AF2657EDEF03942906C7FF315E1746

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:6Kdf/q56jJnmJqDpSAgkFRcRYEWf/q56jJnmJqDpSAgkJ:QJ4pSAgkmLJ4pSAgkJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:411540:AJ4MBAAoCvBH2GArkVZkEKAECiASBoohAAGI1wAQRQEDFJrcICBwEJgHgpEHwPhahGIU7BQyAAi+EYAAUACAyDiA1nCt6iEA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff003030000000ff
Perceptual Hash:ca24da34dd25c63e
Difference Hash:0719c5d3c1c52160
Wavelet Hash:ff0070780040ffff
Color Hash:#32d22d

Scan History

Scan history not available

Unable to load historical scan data