Verdict
notethis.org shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | A minimal note-taking web app landing page prompting users to sign up or sign in; lacks pricing, legal, contact, or service detail. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 15 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 8.3 years oldRegistered history | Clear |
| Web archive | Archived since 2014Public history exists | Clear |
| Certificate | Encrypted connectionIssued by YR1 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2014.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Security Alert
Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
NoteThis.org presents a minimal web-based note-taking service offering account creation, sign-in, note sharing with friends and colleagues, and tab-based organization across devices; its apparent business model is to provide free user accounts, although monetization and operating details are not explained.
Scam/Impersonation Risk
The site presents a critical sensitive-interaction risk. External reputation evidence includes a confirmed blacklist status and multiple malicious detections, including detections by major security vendors. These signals are materially stronger than the site's limited benign behavioral observations and create a direct concern for credential submission. The homepage is also effectively a login-and-signup surface with little context about the service, while the real-world operator remains unverified. No conflicting legal-entity names or direct brand-impersonation finding were observed, but the confirmed blacklist and malicious detections constitute serious external contradictions.
- The homepage contains a sign-in form requesting an email address and password, alongside account-creation prompts.
- External reputation checks recorded 15 malicious detections and a confirmed blacklist status.
- Domain registration is dated 2018-05-10, with an age of 8.28 years; the registrar is GoDaddy.com, LLC.
- Historical records show first observation on 2014-12-18 and last observation on 2025-07-14, covering 12 years.
Regulatory Verification Notes
The homepage does not identify a legal operating entity, provide pricing or monetization information, or expose privacy, terms, licensing, or registration disclosures. This leaves the service's governance and regulatory position unclear rather than establishing a regulatory violation. The available evidence does not independently verify the operator's identity. No matching broker-reputation record was identified, but that absence is contextual only and is not a legal or licensing determination.
- The homepage states only “Simple note making for all of your devices,” “Create an account, it's free,” and note-sharing functionality.
- No privacy policy, terms of service, contact information, pricing, license claim, or registration number is visible on the captured page.
- The domain is served through AS14061, DIGITALOCEAN-ASN — DigitalOcean, LLC, US.
- The site's TLS certificate is issued by YR1 using DV validation and is valid to 2026-11-10.
What to Verify Next
Before any sensitive interaction, an independent operator identity should be established through corporate records and an independently sourced contact channel. Any applicable data-protection, software-service, or consumer-protection disclosures should be obtained directly from the operator and checked for consistency. Credential reuse should be avoided, and any account-protection decision should be based on confirmation that the service is genuinely operated by the expected entity.
- The homepage supplies an account signup and password-login workflow without accompanying legal or service documentation.
- The captured page has no external links providing an independent company profile, support route, privacy notice, or terms.
- The site's stated service purpose is limited to free note-taking and note sharing, with no explained commercial or governance model.
Summary Verdict
The website has a critical-risk posture for account access and other sensitive interactions. Its limited service context, unverified operator identity, and confirmed adverse external reputation signals do not support treating it as a trustworthy destination for credentials or financial activity.
Infrastructure Integrity
CDN/WAF protection is present, and the observed address was associated with the edge layer rather than an independently observable origin. This reduces direct origin exposure but is only a mitigating infrastructure characteristic and does not offset the site's adverse reputation findings.
Closing Assessment
The appropriate near-term posture is read-only observation only; credential submission, account creation, and financial interaction should be withheld unless independent identity and service legitimacy checks produce satisfactory results.
Written analysis generated 2026-08-19 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, page content, analysis engine, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE - The page presents a sign-in form, and the operator behind it could not be independently verified.Page content
rule:PAGE_TYPE_LOGIN_UNVERIFIED
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of notethis.org.
- The request stayed on notethis.org. It was not redirected to another domain. Clear
- Registration is published under GoDaddy.com, LLC. Clear
- DNS for this domain is served by binarymonster.com, across 2 name servers. Noted
- The registration is paid up to 2027-05-10. Noted
- The earliest public archive of this site is from 2014-12-18. Clear
- It is hosted on DIGITALOCEAN-ASN, from a server in US. Noted
Domain intelligence
| Registrar | GoDaddy.com, LLC |
|---|---|
| Hosting | DIGITALOCEAN-ASN - DigitalOcean, LLC, US |
| Country | US |
| Server IP | 159.89.45.238 |
| Name servers | ns1.binarymonster.com, ns2.binarymonster.com |
| SSL issuer | YR1 |
| SSL expiry | 2026-11-10 |
| Domain age | 8.28 years (continuous registration) |
| Domain expiry | 2027-05-10 |
| Archive first seen | 2014-12-18 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 15 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about notethis.org at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.