ScamLens

Methodology

How ScamLens analyzes website safety: we query 90+ threat intelligence sources in real-time and calculate trust scores from 0-100 based on 15+ weighted factors.

Trust Score Algorithm

ScamLens trust scores range from 0-100 with four levels:

0-19
Dangerous
20-39
Low
40-69
Medium
70-100
High

Scoring Factors

Domain Age
Newly registered domains (<30 days) score lower
TLD Risk
4-tier system: critical (.xyz,.top), high (.click), moderate (.io), trusted (.com)
DNSSEC
Enabled DNSSEC adds bonus points
Security Headers
HSTS, CSP, X-Frame-Options, etc. (scored out of 6)
SSL Certificate
Valid certificate = positive, expired/missing = penalty
Redirect Chains
Cross-domain redirects and excessive hops penalized
Homograph Detection
Mixed Unicode scripts and confusable characters
Brand Impersonation
Levenshtein distance, subdomain spoofing, TLD swapping
Community Reports
User reports and votes impact score

90 Threat Intelligence Sources

Every domain check queries all sources below in parallel, aggregating results into a comprehensive report:

Google Safe Browsing
Malware, phishing, social engineering detection
VirusTotal
Multi-engine malware scanning aggregator
AlienVault OTX
Community threat intelligence pulses
IPQualityScore
IP reputation, proxy/VPN detection, fraud scoring
AbuseIPDB
IP abuse report database
URLhaus
Malware distribution URL database
PhishTank
Community-verified phishing URL database
Cloudflare Radar
Domain ranking, malicious/phishing classification
Certificate Transparency
Suspicious certificate issuance detection
SecurityTrails
DNS history and WHOIS intelligence
PhishDestroy
Phishing kit detection
ThreatFox
Indicators of Compromise (IOC) database
Shodan InternetDB
Open port and vulnerability scanning
URLScan.io
Website screenshot and behavior analysis
RDAP
Registration data access protocol
Maltiverse
Multi-source threat intelligence aggregation
DNSBL
Spamhaus DBL + SURBL blocklist checks
DNS Security
Cloudflare for Families malware blocking

Cryptocurrency Analysis

Crypto address checking covers 8 blockchains using 3 specialized providers:

GoPlus Security
Ethereum, BSC, Polygon, Arbitrum, Optimism, Base
Etherscan V2
Ethereum, BSC, Polygon, Arbitrum, Optimism, Base
OpenSanctions
All 8 chains (sanctions list checking)

False Positive Handling

1
User Feedback
Every report has an "Was this accurate?" widget. Users can flag false positives or false negatives.
2
Admin Review
Feedback enters a review queue. Admins verify or reject reports.
3
Community Voting
Community votes (safe/suspicious) are weighted into the trust score calculation.

Data Freshness

Domain intelligence is cached for 24 hours, then automatically re-queried from all sources.

Threat intelligence sources are queried in real-time every time, not from offline data.

Community reports and votes update in real-time.

Chrome Companion for Safer Browsing

Save useful links, spot risky sites before you open them, and keep important research easy to find across devices.

Get Free Extension

Available on Chrome Web Store. Works on all Chromium browsers.