Security Scan Report: doeusignsafe.vercel.app

Site favicon
Submitted: Oct 1, 2026, 7:50:47 AMCompleted: Oct 1, 2026, 7:51:30 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

DocuSign-branded sign-in page hosted on an unrelated vercel.app subdomain that mimics the DocuSign name; flagged as phishing. Brand impersonation with a phishing intel hit — do not enter credentials.

Risk Factors (4)
Brand impersonation of DocuSign on a mismatched, unrelated domain
Phishing threat-intel report against the primary domain
Shared/free hosting subdomain (.vercel.app) with unknown actual page age
Unranked domain (not in Cisco Umbrella top 1M) claiming a major brand
Domain age information unavailable

Details

Page Title

Sign In - DocuSign

Scan Type

public

Domain Name Analysis

The domain name 'doeusignsafe.vercel.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'doeusignsafe'. Its registrable label 'vercel' stretches across 6 characters split between two vowels and four consonants. Word splitting yields two words: ver, cel. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://doeusignsafe.vercel.app/

Page Load Overview

6.20s
Total Load Time
208 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:239 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software70% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
70%
documentation technical
32%
adult content
30%
government public service
29%
social media network
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
564.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
564.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
5216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
153--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14562C875A944CD1EE8535B4C617EBE3A60DE849FCA09D42CF1CCCA2517C1DB92ED69C0

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:yvoG3odpASZunlnvWQwhjpMFFoIjoi2FpMcToAo8PwnMi7G3CvpgnqzcpmMmUwy8:yro8cupvmKFqzryrX8YMVyUnK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:14745:FoWQCCLK7YgrBhASAwFUKC5ZABYFMIj5FIHCJUIEikQAASQibCpqJQqITlgaFy9gAApwJAIHii8KIdGFlBMSU0QgIAYAHFA9

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000000e7e7e7e7ff
Perceptual Hash:b340cce0f3d9c966
Difference Hash:8009280c0c0c0c00
Wavelet Hash:000000e7e7e7e7ff
Color Hash:#331f93

Other Hashes

Crop Resistant:8009280c0c0c0c00

Scan History

Scan history not available

Unable to load historical scan data