← Back to Home

Is shopvexaru.com/products/christmas-tree-kit Legit or a Sca

Website: shopvexaru.com/products/christmas-tree-kit

Screenshot of shopvexaru.com/products/christmas-tree-kit

Safety Score How we score →

55/100
Caution

shopvexaru.com/products/christmas-tree-kit scores 55/100 (categorized as e-commerce, a 87-day-old domain, 4 red flags recorded): review the findings below before trusting it.

First analyzed Sep 11, 2026 · Updated Sep 11, 2026

Think this is wrong? Dispute this verdict — free.

Why this score

  • Canonical verdict: Warning with a 55/100 final score.
  • Outcome confidence is Medium with Known evidence state.
Final score
55/100
Canonical published score used on the public result page.
Final status
Warning
Published backend status from the canonical read model.
Raw AI score
55/100
Content-review score before canonical guardrails and publication checks.
Score source
openai
Recorded by the canonical guardrail pipeline.
Confidence
Medium
Confidence attached to the published canonical outcome.
Positive signals
  • [SSL VALIDITY] The site has a valid SSL certificate, indicating secure connections for users.
  • [TRANSPARENCY] Contact & Legal Signals Confirmed | Contact and legal signals were confirmed from captured pages.
Caution signals
  • [DOMAIN AGE] Relatively Young Domain | The domain is relatively new compared with established services.
  • [SECURITY] Email-authentication posture is incomplete (SPF: missing, DMARC: configured)
  • [SUSPICIOUS SCRIPT] High severity risk detected for potential credential/session exfiltration.
  • [DOMAIN AGE] The domain is very new (87 days), which may indicate a lack of established trust.
Evidence summary
Confidence: Medium
Evidence state: Known
Review status: None

AI Analysis Results

Category: e-commerce
About this website:

Detailed Analysis Report: Is https://www.shopvexaru.com/products/christmas-tree-kit Safe and Legit? Website Overview and Purpose The analyzed page was the /products/christmas-tree-kit path rather than the homepage, so this report is anchored to that specific page experience. The scraped title was 🎄✨ DIY Beaded Christmas Tree Kit – 🎅Create Your Own Sparkling Holiday Decoration . The visible page appears to serve the following purpose: selling DIY craft kits. Visible on-page text referenced LET BUY NOW Freeship Free on orders over $999 Moneyback Money back guarantee Boxback Return within 30 days Buy More Save More Recommended Buy 2 Regular price $75.98 $159.96 Most Popular Buy 3 Save 10% in total order $111. . The content appears aimed at craft enthusiasts, holiday decorators. In classification terms, the page aligns most closely with e-commerce and crafts characteristics. Content Quality and User Experience Key Experience Highlights The requested page path /products/christmas-tree-kit was preserved during scraping, so this review reflects that specific page rather than a generic homepage substitute. The scraped title was 🎄✨ DIY Beaded Christmas Tree Kit – 🎅Create Your Own Sparkling Holiday Decoration , which gives a direct signal about what the page presents to visitors. The visible page appears to serve the following purpose: selling DIY craft kits. The page appears aimed at craft enthusiasts, holiday decorators. Supplementary review also reached 1 internal page(s), which helped confirm policy/contact material beyond the first page. Observed transparency on accessible pages: contact signals were present and policy signals were present . Additional observed context from the analysis included: The domain is only 87 days old, which raises concerns about its longevity and reliability | Contact information is available, including a physical address and customer support email, but the absence of a terms of service page is noted | The site has a valid SSL certificate, indicating secure connections for users. Claims Verification and Red Flags Red Flags Detected From a cybercrime and cybersecurity perspective, the visible page content appears commercially transactional and is trying to move the visitor toward a purchase or service-order flow. Those observed behaviors do not prove fraud by themselves, but they do increase the importance of validating operator identity, payment safety, and account-handling practices before trusting the service. Finding: High severity risk detected for potential credential/session exfiltration. Finding: The domain is very new (87 days), which may indicate a lack of established trust. Caution Points Treat the page as a commercial offer: verify pricing, refund rules, payment handling, and dispute options before paying. Read the available privacy or policy pages to understand liability, support scope, and what data the operator says it collects. Test the listed support channel with a low-risk question before any irreversible payment or account action. Verify operator identity, ownership trail, and off-site reputation before escalating from browsing to payment, login, or installation. Security Note: SSL is valid (issuer: ZeroSSL RSA DV SSL CA 2 ), VirusTotal reports 0/unknown detections, WebRisk status is CLEAN , SPF is missing , and DMARC is configured . Legitimacy and Reputation Assessment Technical and reputation evidence is secondary to the page-content review above, but it still matters. Domain age evidence indicates 87 day(s) based on rdap . Archive continuity suggests archive continuity could not be verified in this run . Threat-intelligence checks currently show no direct malicious-engine consensus, while WebRisk is CLEAN . Reputation telemetry shows no meaningful Tranco ranking , and visible transparency signals are present for contact details and present for policy/legal pages. Final Verdict and Recommendations The current result is warning with a trust score of 55/100 . Primary classification from this run: warning with score 55/100 in e-commerce (crafts). Conclusion: Overall risk remains in warning territory, so users should require additional proof before trusting critical interactions. Verify the legitimacy of the site and read customer reviews before purchasing.

Risk Assessment: Caution
⚠️ Red Flags:
  • [DOMAIN AGE] Relatively Young Domain | The domain is relatively new compared with established services.
  • [SECURITY] Email-authentication posture is incomplete (SPF: missing, DMARC: configured)
  • [SUSPICIOUS_SCRIPT] High severity risk detected for potential credential/session exfiltration.
  • [DOMAIN_AGE] The domain is very new (87 days), which may indicate a lack of established trust.
📊 Analysis Reasons:
  • [DOMAIN_AGE] The domain is only 87 days old, which raises concerns about its longevity and reliability.
  • [SSL_VALIDITY] The site has a valid SSL certificate, indicating secure connections for users.
  • [SUSPICIOUS_SCRIPT] A potential credential/session exfiltration path was detected, which is a significant security concern.
  • [TRANSPARENCY] Contact & Legal Signals Confirmed | Contact and legal signals were confirmed from captured pages.
🏢 Brand Evidence:
  • Company name Vandrex LLC is listed in the contact information.
  • Page links repeatedly to expected brand domain shopvexaru.com
Score Source: openai
AI Confidence: medium

Frequently asked questions about shopvexaru.com/products/christmas-tree-kit

Is shopvexaru.com/products/christmas-tree-kit a scam?

Warning signs have been detected, so use caution when shopping.

Is shopvexaru.com/products/christmas-tree-kit safe to use?

The site shows warning signs; it's advisable to be cautious.

What is the trust score for shopvexaru.com/products/christmas-tree-kit?

The trust score is 55 out of 100, indicating potential risk.

What red flags are associated with shopvexaru.com/products/christmas-tree-kit?

Red flags include a relatively young domain and incomplete email authentication.

Should I buy from shopvexaru.com/products/christmas-tree-kit?

Proceed with caution, as the site has shown warning signs.

Can I trust shopvexaru.com/products/christmas-tree-kit?

Trustworthiness is questionable; be alert to potential risks.

Verdict history

  • — Warning (automated reanalysis)

Technical Details

Registrar: Name.com, Inc.
Domain Age: 87 days
TLS Certificate: Valid · issued by ZeroSSL RSA DV SSL CA 2 (DV) · expires in 65 days
Hosting: AS16509 Amazon.com, Inc. (US)
Email authentication: SPF missing · DMARC present