Security Scan Report: platform.bbva.com

Redirected to:
https://idp.live.global.platform.bbva.com/idp/profile/SAML2/Redirect/S...
Site favicon
Submitted: Sep 29, 2026, 1:30:19 PMCompleted: Sep 29, 2026, 1:30:54 PMpubliccompleted

This website contacted 4 IPs in 2 countries across 3 domains to perform 33 HTTP transactions. The main domain is idp.live.global.platform.bbva.com and was registered 29 years ago.

Submitted URL: https://platform.bbva.com

Effective URL:

https://idp.live.global.platform.bbva.com/idp/profile/SAML2/Redirect/S...
Redirected

The Cisco Umbrella rank of the primary domain is #166,318 of the top 1 million websites

AI Security Verdict

Safe Website

Confidence: 92%

0
Risk Score

Official BBVA single sign-on page hosted entirely on bbva.com subdomains. Established 29-year-old bank domain, no threat-intel, malware, or behavioral findings — a legitimate SAML2 login.

Safety Factors (4)
Official BBVA registrable domain (bbva.com) with a 29-year registration history
SAML2 SSO login for a banking identity provider on a subdomain of the brand's own domain
Standard single login form with username and password fields, no payment fields and no disguised password fields
Zero threat-intelligence, YARA, IDS, or JavaScript behavioral findings
Domain age information unavailable

Details

Page Title

BBVA

Scan Type

public

Domain Name Analysis

Domain 'platform.bbva.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'platform'. The second-level label 'bbva' is 4 characters long holding one vowel versus 3 consonants. Splitting it apart reveals two words: bbv, a. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://platform.bbva.com

Page Load Overview

2.22s
Total Load Time
546 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:156 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service45% confidence
Type: spa
Method: ml+structural+ocr_tiebreaker

All Detected Categories

government public service
45%
finance banking
42%
social media
15%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9184.31.95.231Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
8216.239.32.21Google · CDNUnited States
AS15169Google LLC
8142.251.127.84Google · CDNUnited States
AS15169Google LLC
8216.239.38.21Google · CDNUnited States
AS15169Google LLC
334--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18AE163E39D26CC339227899552A7D55DA2F9C509CA33840872EC07E41FBAEC88D1B952

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:GwdwOqu970mdMWWqHJRA1MdL7jAQWAhCAr+8UKq:GwCQ7399Qf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6792:JAACUomAAEBigAVKkxhZKSITCw0IxhQ+BEgBEYCSAgwBEKAqgAQCAxAgAq+hr4GqiBs1AEBICEgABIISAwGApkQIlCLwo1Jk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7ffe7e7e7ffff
Perceptual Hash:b3333933398966cc
Difference Hash:4c4c684d4d687004
Wavelet Hash:0327272724243c24
Color Hash:#405bbf

Other Hashes

Crop Resistant:4c4c684d4d687004

Scan History

Scan history not available

Unable to load historical scan data