← Back to Home

Is capitalxtend-irn.com/en/my/dashboard Legit or a Scam?

Website: capitalxtend-irn.com/en/my/dashboard

Screenshot of capitalxtend-irn.com/en/my/dashboard

Safety Score How we score →

35/100
Needs Review

This result needs manual review before you rely on it.

First analyzed Sep 13, 2026 · Updated Sep 13, 2026

Think this is wrong? Dispute this verdict — free.

Why this score

  • Canonical verdict: Needs Review with a 35/100 final score.
  • The raw AI review started at 55/100 before canonical guardrails finalized 35/100.
  • 5 guardrail adjustments influenced the published result.
  • Evidence state is Known and review status is Needs Review.
Final score
35/100
Canonical published score used on the public result page.
Final status
Warning
Published backend status from the canonical read model.
Raw AI score
55/100
Content-review score before canonical guardrails and publication checks.
Score source
openai guardrail
Recorded by the canonical guardrail pipeline.
Confidence
Low
Confidence attached to the published canonical outcome.
Positive signals
  • Content uses ownership/official language
Caution signals
  • High-risk financial/crypto business model requires manual verification
  • Suspicious behavior claiming unverified brand CapitalXtend; treating as high-risk warning rather than explicit phishing
  • Status "warning" requires score = 40 (was 30); no deterministic scam evidence was present
  • Deterministic evidence sufficiency is limited and should temper the explanation (42% coverage)
  • C2 unlicensed-financial-trading cap 40-35 (no regulatory license)
  • CRITICAL: Canonical phishing evidence present (Suspicious behavior claiming unverified brand CapitalXtend; treating as high-risk warning rather than explicit phishing) but AI raw score remained 55/100
Evidence summary
Confidence: Low
Evidence state: Known
Review status: Needs Review

AI Analysis Results

Category: Financial Services
About this website:

Detailed Analysis Report: Is https://auth.capitalxtend-irn.com/realms/cx/protocol/openid-connect/auth?scope=openid response_type=code client_id=capitalxtend_irn redirect_uri=https%3A%2F%2Fcapitalxtend-irn.com%2Flogin-callback state=eee932950ff95612896ce476c59a02ac ui_locales=en Safe and Legit? Website Overview and Purpose The analyzed page was the /en/my/dashboard path rather than the homepage, so this report is anchored to that specific page experience. The scraped title was Sign in to CapitalXtend . The visible page appears to serve the following purpose: Online trading and investment services. Visible on-page text referenced Sign in to CapitalXtend EN EN English FA فارسی KO 한국어 TR Türkçe ES Español Welcome to Smarter Trading Start with just $12 and access global markets through a smoother, more refined CapitalXtend experience. 50% Deposit Bo. . The content appears aimed at Investors and traders. In classification terms, the page aligns most closely with Financial Services and Trading Platform characteristics. Content Quality and User Experience Key Experience Highlights The requested page path /en/my/dashboard was preserved during scraping, so this review reflects that specific page rather than a generic homepage substitute. The scraped title was Sign in to CapitalXtend , which gives a direct signal about what the page presents to visitors. The visible page appears to serve the following purpose: Online trading and investment services. The page appears aimed at Investors and traders. No additional internal page content was needed for a baseline view of the visible experience. Observed transparency on accessible pages: contact signals were limited and policy signals were limited . Additional observed context from the analysis included: Deterministic phishing signal detected before canonical scoring: unknown branded sensitive surface with corroborating behavioral evidence | Domain age is 1224 days, indicating moderate establishment | SSL certificate is valid, providing some level of security for data transmission. Claims Verification and Red Flags Red Flags Detected From a cybercrime and cybersecurity perspective, the visible page content appears commercially transactional and is trying to move the visitor toward a purchase or service-order flow; looks tied to an external account or platform profile, which raises the impact if credentials or access are mishandled. Those observed behaviors do not prove fraud by themselves, but they do increase the importance of validating operator identity, payment safety, and account-handling practices before trusting the service. Finding: Missing contact information | No contact details found on the site | Evidence: homepage Finding: Missing privacy policy | No privacy policy available | Evidence: homepage Finding: Missing terms of service | No terms of service available | Evidence: homepage Finding: High-risk path detected | Login surface present without adequate security measures | Evidence: requested URL Caution Points Treat the page as a commercial offer: verify pricing, refund rules, payment handling, and dispute options before paying. If the service touches a third-party account or profile, avoid sharing raw credentials unless the workflow is independently verified and clearly documented. Policy pages were not clearly accessible in this scan; request written terms before any payment or account-linked action. Contact transparency appears limited, so treat support and dispute recovery as uncertain until independently verified. Verify operator identity, ownership trail, and off-site reputation before escalating from browsing to payment, login, or installation. Security Note: SSL is valid (issuer: WE1 ), VirusTotal reports 0/unknown detections, WebRisk status is CLEAN , SPF is missing , and DMARC is missing . Legitimacy and Reputation Assessment Technical and reputation evidence is secondary to the page-content review above, but it still matters. Domain age evidence indicates 3 year(s) based on rdap_phase_a . Archive continuity suggests archive continuity could not be verified in this run . Threat-intelligence checks currently show no direct malicious-engine consensus, while WebRisk is CLEAN . Reputation telemetry shows Tranco rank #768555 , and visible transparency signals are limited for contact details and limited for policy/legal pages. Final Verdict and Recommendations The current result is warning with a trust score of 35/100 . Primary classification from this run: warning with score 35/100 in Financial Services (Trading Platform). Conclusion: Overall risk remains in warning territory, so users should require additional proof before trusting critical interactions. Exercise caution and verify the legitimacy of the platform before engaging.

Risk Assessment: Needs Review
⚠️ Red Flags:
  • [CONTACT] Limited Contact Accountability | Contact accountability signals were limited on captured pages.
  • [PRIVACY] Missing Privacy Policy | A privacy policy was not clearly detected on captured pages.
  • [TERMS] Missing Terms & Conditions | Terms and conditions were not clearly detected on captured pages.
  • [LOGIN SURFACE] Sensitive Account Surface | The site exposes an account or login surface, which increases sensitivity.
📊 Analysis Reasons:
  • [DOMAIN] Domain age is 1224 days, indicating moderate establishment.
  • [SPF/DMARC] The absence of SPF and DMARC records raises concerns about email security.
  • [TRANSPARENCY] Lack of contact information, privacy policy, and terms of service indicates poor transparency.
  • [LOGIN SURFACE] Sensitive Account Surface | The site exposes an account or login surface, which increases sensitivity.
🏢 Brand Evidence:
  • Title references CapitalXtend
  • CapitalXtend appears repeatedly in visible page text (10 mentions)
  • Content uses ownership/official language
  • Page links repeatedly to expected brand domain capitalxtend.com
🛡️ Safety Actions Applied:
  • {"type":"high_risk_category","reason":"High-risk financial/crypto business model requires manual verification","scoreFloor":null,"scoreCeiling":45,"targetStatus":"warning"}
  • {"type":"behavioral_unknown_brand_impersonation","reason":"Suspicious behavior claiming unverified brand CapitalXtend; treating as high-risk warning rather than explicit phishing","scoreFloor":null,"scoreCeiling":30,"targetStatus":"warning"}
  • {"type":"status_score_alignment","reason":"Status \"warning\" requires score = 40 (was 30); no deterministic scam evidence was present","scoreFloor":40,"scoreCeiling":null,"targetStatus":"warning"}
  • {"type":"evidence_sufficiency_limited","reason":"Deterministic evidence sufficiency is limited and should temper the explanation (42% coverage)","scoreFloor":null,"scoreCeiling":null,"targetStatus":"warning"}
  • {"type":"score_calibration_correction","reason":"C2 unlicensed-financial-trading cap 40-35 (no regulatory license)","scoreFloor":null,"scoreCeiling":null,"targetStatus":null}
Score Source: openai_guardrail
AI Confidence: low

Frequently asked questions about capitalxtend-irn.com/en/my/dashboard

Is capitalxtend-irn.com/en/my/dashboard a scam?

capitalxtend-irn.com/en/my/dashboard displays red flags indicating potential scams.

What is the trust score of capitalxtend-irn.com/en/my/dashboard?

The trust score for capitalxtend-irn.com/en/my/dashboard is 35 out of 100.

Is capitalxtend-irn.com/en/my/dashboard safe to use?

Caution is advised when using capitalxtend-irn.com/en/my/dashboard due to limited contact accountability and missing policy disclosures.

What red flags are associated with capitalxtend-irn.com/en/my/dashboard?

Red flags include limited contact information, a missing privacy policy, and absent terms and conditions.

Can I trust capitalxtend-irn.com/en/my/dashboard?

Trust is questionable for capitalxtend-irn.com/en/my/dashboard; it is recommended to proceed with caution.

Are there user reviews for capitalxtend-irn.com/en/my/dashboard?

User reviews for capitalxtend-irn.com/en/my/dashboard are limited; caution is advised.

Verdict history

  • — Warning (automated reanalysis)

Technical Details

Registrar: GoDaddy.com, LLC
Domain Age: 3 years (1224 days)
TLS Certificate: Valid · issued by WE1 (DV) · expires in 48 days
Hosting: AS13335 Cloudflare, Inc. (US)
Email authentication: SPF missing · DMARC missing