Security Scan Report: bi-magalu-benews.vercel.app

Submitted: Sep 22, 2026, 3:51:14 AMCompleted: Sep 22, 2026, 3:51:34 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Password-protected seller BI dashboard on an unranked Vercel subdomain of unknown age. No threat-intel, malware, or impersonation-of-credentials evidence; self-branded with no payment or exfiltration. Moderate risk only due to unverifiable hosting.

Risk Factors
Login-gated dashboard on shared Vercel hosting with unverifiable subdomain age
Domain absent from Cisco Umbrella top 1M
Uses the well-known 'Magalu' brand name in a third-party tool without visible authorization
Safety Factors
Self-branding detected — title/meta match the domain, not a spoofed brand login page
No payment fields and no disguised password fields
No cross-origin form submission or credential exfiltration
No threat-intelligence matches, no YARA malware, no phishing-kit roster hit
Functionality (XLSX feed import into KV store, dashboard ranking) is consistent with a real seller BI tool
Domain age information unavailable

Details

Page Title

BI Magalu — Benews

Scan Type

public

Domain Name Analysis

The domain 'bi-magalu-benews.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'bi-magalu-benews'. Its registrable label 'vercel' stretches across 6 characters with two vowels and 4 consonants. Segmentation suggests two words: ver, cel. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bi-magalu-benews.vercel.app/

Page Load Overview

0.54s
Total Load Time
358 KB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-BR
Text Length:1,204 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking74% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
74%
government public service
44%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
0104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0216.198.79.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
0151.101.1.229Fastly · CDNUnited States
AS54113Fastly, Inc.
0151.101.193.229Fastly · CDNUnited States
AS54113Fastly, Inc.
064.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
56--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14ED02BDFD801947D09A092841C92B11C0AB95DEA73628A905ED921191C543555557550

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:h4hqi9QYs0/fAbplgMReS6BlILvjmKQOdDIBd/uNVuB9d:hCVAvKaLNQOdDIBdGNVG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:8098a505808310a1eeff10e99e0e12be

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f0e0d8d8d8980000
Perceptual Hash:dd9c6673998c6622
Difference Hash:0008303232300800
Wavelet Hash:f8f8f8f8f8d8c080
Color Hash:#9653ac

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data