Security Scan Report: paypal-secure.vercel.app

Submitted: Jul 28, 2026, 5:50:08 AMCompleted: Jul 28, 2026, 5:51:29 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is paypal-secure.vercel.app and was registered NaN years ago.

Submitted URL: https://paypal-secure.vercel.app/

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

The site mimics PayPal login on an unranked Vercel subdomain, collects only email, and lacks strong malicious signals; treat as moderate risk.

Risk Factors
Unranked / low‑reputation domain
Unknown subdomain age on hosting platform
Brand impersonation (self‑branding does not match official PayPal domain)
Credential collection form (email only) on a brand‑like page
Safety Factors
No password or payment fields
No external redirects or cross‑origin form submissions
No JavaScript malware matches or credential exfiltration
No network IDS alerts
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 5 to 3
Domain age information unavailable

Details

Page Title

Sign in to PayPal

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(50%)

Domain Information

The domain name 'paypal-secure.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'paypal-secure'. Its registrable label 'vercel' stretches across 6 characters containing 2 vowels alongside 4 consonants. Splitting it apart reveals two words: ver, cel. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://paypal-secure.vercel.app/

Page Load Overview

0.98s
Total Load Time
8
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:142 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking50% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
50%
e-commerce shopping
48%
technology software
47%
social media network
35%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8216.198.79.195United States
AS16509Amazon.com, Inc.
81--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T191926584B41C127C5D3BAB15EEC8A32CC125FD43EE624436A10D048EEAD6FF539A6F95

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:XkOx05nrGPKJgg8T4xksc64Jysq7vWGeVV0RXe3wQ:10rGV4xksc64Jysq7vkVV0RXe3j

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20387:ElgIESsLoIAGwyCCkAcAE0ixgiwmWOoAUQWlinYIiAAqTQQVYgFsCEgGUhApRAGRrBIMQCBV1KSxgGJWFlCRDYZRMGEJBCaE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7ff41000000
Perceptual Hash:b3b3999c8c666626
Difference Hash:2a5a4d0841111111
Wavelet Hash:ffffe7ff09000000
Color Hash:#931f3c

Other Hashes

Crop Resistant:2a5a4d0841111111

Scan History

Scan history not available

Unable to load historical scan data