Website: pentestgpt.ai/login
This result needs manual review before you rely on it.
First analyzed Nov 5, 2025 · Updated Sep 19, 2026
Think this is wrong? Dispute this verdict — free.
Detailed Analysis Report: Is https://signin.hackerai.co/?client_id=client_01JXJMN004P40WZ3BSMDHX4XN8 redirect_uri=https%3A%2F%2Fhackerai.co%2Fcallback state=Fe26.2*1*3e960510b4ffe4b4a7713e7d12df94b2f3d101ec93f335d86155b056bb298761*giXu5rc643AFkKIXAUEpVQ*yqE_c7DjFp-H5K_idxsApg5S1iyA8BxQgyKjZ6-9tXo3SBcY_4OpoZxQtg7DcR5MGeTzBxYXtbdOjvwviAytArhFsfa6kjwc9qYvOoBJWaKx7_4a2IpqDtsr95OQxZzE3-gLttpfZ3agsXjM7Mb_qA*1789876199718*bdeb0b880a5846f814407f879c411746e75991bb15a0d2dce15c93762a318c89*N003MexT5056E3JcbXWcwUMtFLjMnsuzqlykYZ2LEiw%7E2 authorization_session_id=01M2YECGDS62DPN6X9263M5F81 Safe and Legit? Website Overview and Purpose The analyzed page was the /login path rather than the homepage, so this report is anchored to that specific page experience. The scraped title was Sign in . The visible page appears to serve the following purpose: Credential Management. Visible on-page text referenced Sign in Sign in Email Continue with email OR Continue with Google Continue with Microsoft Continue with Apple Don t have an account? Sign up Terms of Service and Privacy Policy. . The content appears aimed at Users seeking penetration testing services. In classification terms, the page aligns most closely with Web Application and Login Portal characteristics. Content Quality and User Experience Key Experience Highlights The requested page path /login was preserved during scraping, so this review reflects that specific page rather than a generic homepage substitute. The scraped title was Sign in , which gives a direct signal about what the page presents to visitors. The visible page appears to serve the following purpose: Credential Management. The page appears aimed at Users seeking penetration testing services. No additional internal page content was needed for a baseline view of the visible experience. Observed transparency on accessible pages: contact signals were limited and policy signals were present . Additional observed context from the analysis included: Domain is 767 days old, which is relatively new and may indicate a lack of established trust | SSL certificate is valid, providing a secure connection, but does not guarantee legitimacy | The login page redirects to hackerai.co, which raises concerns about potential phishing or credential harvesting. Claims Verification and Red Flags Red Flags Detected From a cybercrime and cybersecurity perspective, the visible page content appears commercially transactional and is trying to move the visitor toward a purchase or service-order flow; looks tied to an external account or platform profile, which raises the impact if credentials or access are mishandled. Those observed behaviors do not prove fraud by themselves, but they do increase the importance of validating operator identity, payment safety, and account-handling practices before trusting the service. Finding: High-risk redirect to hackerai.co | Evidence: login process Finding: Missing contact information | Evidence: no contact details provided Finding: Missing terms of service | Evidence: no terms available Finding: Privacy policy present but lacks detail | Evidence: privacy policy link available but no content Caution Points Treat the page as a commercial offer: verify pricing, refund rules, payment handling, and dispute options before paying. If the service touches a third-party account or profile, avoid sharing raw credentials unless the workflow is independently verified and clearly documented. Read the available privacy or policy pages to understand liability, support scope, and what data the operator says it collects. Contact transparency appears limited, so treat support and dispute recovery as uncertain until independently verified. Verify operator identity, ownership trail, and off-site reputation before escalating from browsing to payment, login, or installation. Security Note: SSL is valid (issuer: WE1 ), VirusTotal reports 0/unknown detections, WebRisk status is CLEAN , SPF is missing , and DMARC is configured . Legitimacy and Reputation Assessment Technical and reputation evidence is secondary to the page-content review above, but it still matters. Domain age evidence indicates 2 year(s) based on whois . Archive continuity suggests archive continuity could not be verified in this run . Threat-intelligence checks currently show no direct malicious-engine consensus, while WebRisk is CLEAN . Reputation telemetry shows no meaningful Tranco ranking , and visible transparency signals are limited for contact details and present for policy/legal pages. Final Verdict and Recommendations The current result is warning with a trust score of 55/100 . Primary classification from this run: warning with score 55/100 in Web Application (Login Portal). Conclusion: Overall risk remains in warning territory, so users should require additional proof before trusting critical interactions. Exercise caution when using this site. Verify its legitimacy before entering any personal information.
pentestgpt.ai/login shows warning signs and has a trust score of 55/100, indicating potential risks.
Caution is advised when using pentestgpt.ai/login due to high-risk redirects and limited contact accountability.
Red flags include high-risk redirects to hackerai.co and missing terms and conditions.
A trust score of 55/100 suggests that pentestgpt.ai/login may not be entirely reliable.
Due to warning signs, it's advisable to be cautious and consider alternative sites.
You can report issues by checking for contact information on the site, although it may be limited.