Verdict
cac.gov.cn appears legitimate.
Our checks found nothing pointing to fraud. Ordinary care still applies when you pay or sign in.
| What this site appears to be | Official Central Cyberspace Administration / National Internet Information Office portal page providing government news, policy documents, public notices, and resources on cybersecurity, information governance, personal data protection, and related events. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | None flagged itVirusTotal | Clear |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 12 years oldRegistered history | Clear |
| Web archive | Archived since 20144017 snapshots | Clear |
| Certificate | Encrypted connectionIssued by CFCA OV OCA | Noted |
The page as captured
No screenshot is retained for this report.
Key findings
- Automated classification: Not Scam.
- Domain age: more than 10 years (registration continuity).
- Public web-archive history exists since 2014.
- No flags from the reputation services TrustSniffer consulted at assessment time.
Full analysis
Overview
This website presents itself as the official Central Cyberspace Administration / National Internet Information Office portal, providing government news, policy documents, public notices, cybersecurity and information-governance resources, personal-data protection material, and related public-service content. Its apparent business model is a non-commercial government information service rather than a retail, financial, or interactive account platform.
Scam/Impersonation Risk
No contradictions were observed, including no phishing, impersonation, conflicting legal identities, or confirmed malicious reputation findings. The homepage’s government/public-service content is coherent with the stated institutional purpose, and its sustained historical presence and clean external reputation are consistent with an established website. The site’s apparent identity is supported by its own institutional presentation and technical continuity, although the real-world operator is not independently verified. No contact-channel integrity anomaly was identified.
- The homepage identifies the Central Cyberspace Administration / National Internet Information Office and publishes government news, policy documents, cybersecurity material, and public notices.
- The domain-history record shows registration continuity from 2014, with an age of 11.613963039014374 years.
- The archive contains 4,017 snapshots spanning 2014-12-31 to 2026-08-10, covering 13 tracked years.
- External reputation checks recorded 0 malicious detections, 0 suspicious detections, and no phishing-site finding; the domain is within the global top one million by traffic presence.
Regulatory Verification Notes
The site’s content and stated function are governmental and informational, so a commercial financial or trading license would not ordinarily be expected for the observed use case. The homepage clearly presents an institutional identity, but independent verification connecting the website to a real-world operator remains incomplete. The site does not present a commercial license number or regulated-service framework; this is a limited disclosure point rather than evidence of deception. Any proposed use beyond public information access should therefore be assessed against the relevant government authority or registry.
- The homepage title and institutional content identify the Central Cyberspace Administration / National Internet Information Office.
- The displayed subject organization on the transport certificate is the Cyberspace Administration Office of China / National Internet Information Office, with OV validation.
- The site’s TLS certificate was issued by CFCA OV OCA and is valid through 2027-01-06.
- No commercial license claim or license number appears in the observed business-model and page-content records.
What to Verify Next
Before any credential or payment interaction, the responsible institution should independently confirm that the accessed domain is the intended government domain through an official government directory or an offline administrative channel. Where an interaction involves a service outside ordinary public information access, the applicable authority, terms of service, data-handling provisions, and payment protections should be confirmed independently. Contact details should be validated through an independently sourced official channel rather than relying solely on page content.
- The homepage contains no login form, sensitive form, or form destination identified as untrusted.
- Behavioral testing recorded 0 external XHR requests, 0 non-whitelisted external posts, and 0 wallet-connection runs.
- The observed page category is Government / Public Service, with no evident commercial monetization.
Summary Verdict
Available evidence is consistent with an established, apparently legitimate website with a high-trust, low-risk posture and no observed scam or impersonation contradictions. The classification is strong for ordinary public information access, while independent operator identity verification remains a distinct and unresolved assurance point.
Infrastructure Integrity
The site does not use a detected CDN or WAF edge and resolves to a single identified infrastructure endpoint. Hosting resolution records AS24547, CMNET-V4HEBEI-AS-AP / Hebei Mobile Communication Company Limited in China; the server sensor separately records AS4134, CHINANET-BACKBONE, also in China. This infrastructure is technically coherent with a directly hosted government portal but should be treated as a mitigating technical context, not as proof of institutional legitimacy.
- Hosting resolution: AS24547 — CMNET-V4HEBEI-AS-AP / Hebei Mobile Communication Company Limited, China.
- Server sensor: AS4134 — CHINANET-BACKBONE, China.
- Infrastructure records show 1 unique IP, 0 detected edge IPs, and 1 likely origin IP.
- Transport security uses an OV certificate issued by CFCA OV OCA, valid to 2027-01-06.
Closing Assessment
Ordinary public information access is proportionate to the observed risk posture; any credential or payment interaction should first undergo independent confirmation of the responsible entity, applicable terms, and available payment protections.
Written analysis generated 2026-08-13 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
No rule findings contributed to this verdict.
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 55/100 |
| Identity verification confidence | 60% |
- Identity verified on page
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of cac.gov.cn.
- The request stayed on cac.gov.cn. It was not redirected to another domain. Clear
- The earliest public archive of this site is from 2014-12-31. Clear
- It is hosted on CHINANET-BACKBONE, from a server in CN. Noted
Domain intelligence
| Registrar | Not available |
|---|---|
| Hosting | CHINANET-BACKBONE - No.31,Jin-rong Street, CN |
| Country | CN |
| Server IP | 240e:cf:8800:37:2:0:8000:10 |
| Name servers | Not available |
| SSL issuer | CFCA OV OCA |
| SSL expiry | 2027-01-06 |
| Domain age | 11.61 years (continuous registration) |
| Domain expiry | Not available |
| Archive first seen | 2014-12-31 |
| Archive snapshots | 4017 |
| Reputation | VirusTotal: 0 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about cac.gov.cn at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.