SAFE

No specific threat detected

OpenMoji.org is a legitimate 8-year-old open-source emoji project with clean scans and academic backing.

Security Review

Is openmoji.org legit or a scam?

OpenMoji.org is a legitimate 8-year-old open-source emoji project with clean scans and academic backing.

OpenMoji.org is a legitimate open-source emoji library. The domain is 8.4 years old, carries zero antivirus detections, and is backed by an academic project at a German design university.

Cross-checked against 9 completed checks — none raised a concern
openmoji.orgScanned 1h ago
94/100
Trust score
0 = danger · 100 = safe
SAFE
Score breakdown
Heuristics 87·MT 94
Screenshot of openmoji.orgSee the live page ↓
Positive signals (5)
Antivirus clearNot on major blacklistsDomain is 8 years oldEncrypted connectionClean server reputation

Analysis Summary

Threat Intelligence
0/92
All engines report clean
Domain Age
8 years old
Registered Feb 7, 2018

Website Preview

Screenshot of openmoji.org
LIVE RENDER
openmoji.org

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Visual analysis

We capture a fresh screenshot of the live page and ask a vision model to look for scam visual patterns — fake trust badges, countdown timers, overlay pop-ups, and visual clones of legitimate brands.

0
/ 100
No visual red flags

No scam visual patterns detected

The website appears to be a legitimate, well-maintained open-source resource for emoji design and development.

Visual risk0/100

What our vision model saw

3 signals

The page presents as a legitimate open-source project repository for emoji assets.

Professional layout with clear navigation, search functionality, and consistent branding.

No evidence of urgency tactics, fake security badges, or suspicious overlays.

Intelligence

Editorial security brief
Intelligence
Low observed risktrust94/100
95%
Confidence
The site presents itself as an open-source emoji library created by students and professors at HfG Schwäbisch Gmünd in Germany. The domain was registered in February 2018 and has maintained a clean record across 92 antivirus engines and browser blocklists. The page loads a professional, functional interface with clear navigation, search, and licensing information under CC BY-SA 4.0. External links point to GitHub, social platforms, and the university site, consistent with a real academic project. No scam reports, complaints, or malicious indicators appear in the evidence package. The combination of age, clean infrastructure, and documented academic origin supports a safe verdict.
Positive Signals
5
  • Domain registered 8.4 years ago with stable registrar history.
  • Zero detections across 92 antivirus engines and clean browser blocklists.
  • Hosted on infrastructure with zero abuse reports.
  • Backed by documented academic project at HfG Schwäbisch Gmünd.
  • Positive trust assessment from independent review sources.
Investigation notes

Page Content

The captured page displays a clean, professional interface for an open-source emoji library. It offers SVG, PNG, and font downloads under the CC BY-SA 4.0 license and lists 4,495 emojis across standard and special-interest categories. Navigation includes Library, Participate, Samples, FAQ, and About sections. The footer shows an imprint link and the Creative Commons license notice.

Infrastructure

The site resolves to IP 92.205.171.21 with an abuse score of 0/100 and no abuse reports. SSL is valid and issued by Let's Encrypt with 58 days remaining. One cross-domain redirect occurs but stays within the same domain family. No login forms, countdown timers, or push-notification prompts are present.

Domain History

The domain was registered on 2018-02-07 through Mesh Digital Limited and is now 8.4 years old. WHOIS privacy protection is disabled. The project is described as an academic initiative from HfG Schwäbisch Gmünd in Germany rather than a commercial business, so no company registration appears in business registries.

Web Reputation

Zero of 92 antivirus engines flagged the site. Browser blocklist feeds returned clean. One positive review from Scam Detector states the domain is authentic and safe. No scam reports, complaints, or negative mentions were located. The project maintains an active GitHub presence and is referenced in design and developer communities as a legitimate resource.

What this means for you

The site is a safe, established open-source resource. You can download the emoji assets without security concerns. As with any open-source project, review the CC BY-SA 4.0 license terms before commercial use.

Recommendation
The site is safe to visit and download emoji assets from. Review the CC BY-SA 4.0 license if you plan to use the graphics commercially.
Editorial assessment
SpecificEvidence-led

Web Research Findings

Independent findings for openmoji.org, including public complaints, named review sources, registration records, and look-alike-domain evidence. A missing result is shown as unverified, never converted into a clean bill of health.

Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Not a clone
No well-known site's layout or branding detected here.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
1 positive
Key findings
5 headline facts from open-web research
  • OpenMoji is a legitimate, community-driven open-source project providing a library of emojis under the Creative Commons Attribution-ShareAlike 4.0 International (CC BY-SA 4.0) license.
  • The project was initiated by students and professors at the HfG Schwäbisch Gmünd (Design University) in Germany.
  • The website is widely recognized in the design and development community as a source for free, open-source emoji assets.
  • The project maintains an active presence on GitHub, where it manages contributions, documentation, and issue tracking.
  • Security analysis platforms, such as Scam Detector, have assigned the domain a high trust score, noting no evidence of malicious activity or phishing.
Positive reviews (1)
Public quotes that support the operator's credibility.
  • Scam Detectoropen

    "openmoji.org is an authentic, safe website, given all the risk factors and data numbers analyzed in this in-depth review."

Research summary
Editorial synthesis of the sourced facts above

Search of scam-report databases and consumer-review sites found no scam reports or complaints for openmoji.org. One independent review source (Scam Detector) explicitly states the site is authentic and safe. The project is documented as an academic open-source initiative from HfG Schwäbisch Gmünd in Germany with an active GitHub presence.

Domain Timeline

  1. Feb 7, 2018
    Domain registered

    First appeared in WHOIS records — 8.4 years old today.

  2. Jul 22, 2026
    Latest security review — Reviewed as safe

    This scan re-ran every check and found no active threat signals.

openmoji.org has operated for years with no threat signals in this review — a long, stable track record, though it is never a guarantee on its own.

Threat Detection

Antivirus Engines

Clean pass · verified
Clean across 92 engines

We cross-check every URL against our antivirus network of 92 malware and blacklist engines. None of them flagged this URL in the last scan.

0Malicious0Suspicious56Harmless92Engines
Clean
Kaspersky
Clean
Bitdefender
Clean
Microsoft
Not queried
ESET-NOD32
Not queried
Avira
Not queried
Sophos
Clean
Fortinet
Clean
Google Safebrowsing
Not queried
Emsisoft
Clean

No engine detections. The URL passed every antivirus and blacklist engine we queried in this scan. Stay vigilant — AV coverage is only one signal among many.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
VirusTotal
Not listedCheck ↗
AbuseIPDB
Not listedCheck ↗

Technical Details

The plumbing behind the site — who registered it, how it’s encrypted, where it’s hosted, and where it links out. A valid certificate or a calm server doesn’t mean the business is honest — scam sites pass these checks too. Use this to corroborate the verdict, not to overturn it.

Contact Verification

We fetched the page and looked for real-world contact details. Legitimate businesses almost always publish an email on their own domain, a phone number, and a postal address. Scam shops usually don't.

What We Found
No clear contact details on the page
Emails on site's domainNone
Phone numbersNone
Postal addressNot listed
Linked social profiles10
Signal Summary
Several contact red flags
  • No contact email found anywhere on the page.
  • No phone number listed on the page.
  • No postal address visible on the page.
  • Links to 13 social profiles.

Domain & Encryption

Domain History
Age8 years old
RegistrarMesh Digital Limited
RegisteredFeb 7, 2018
ExpiresFeb 7, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.2
IssuerLet's Encrypt · YR2
ExpiresSep 19, 2026 (58d)
Self-signedNo
Hosting & Technology
HostingHost Europe GmbH
Server locationFR
Web serverApache

Redirect Chain

Hops
1
Cross-domain
No
Lookalike
No
Punycode
No
  • 1301http://openmoji.org/
  • 2200https://openmoji.org/

Server Reputation

Abuse Intelligence
Confidence score0%
Reports on file0
ISPHost Europe GmbH
Usage typeContent Delivery Network

Referenced Domains

Outbound domains this page links to or loads resources from. Each links to its own security scan.

What to do

Still, stay alert

No major threat indicators — but a clean scan does not guarantee every page is safe, and phishing emails routinely spoof real domains.

  • Double-check the exact URL in your address bar

    Confirm you are actually on openmoji.org and not a lookalike like o-penmoji.org.com or an IDN homoglyph.

  • Use a password manager

    Password managers only auto-fill on the exact domain they were saved for — they refuse to fill lookalike domains, which is the single best phishing defence.

  • Discuss this site on the forum

    If you have first-hand experience with this site — good or bad — share it with the MalwareTips community.

    Open

Final Verdict

94
Trust / 100
Final Verdict·openmoji.org
SAFE

OpenMoji.org is a legitimate open-source emoji library. The domain is 8.4 years old, carries zero antivirus detections, and is backed by an academic project at a German design university.

The site is safe to visit and download emoji assets from. Review the CC BY-SA 4.0 license if you plan to use the graphics commercially.

AV engines
92
Domain age
8 yrs
Flagged
0
Scan another URL
Security review completemalwaretips.com/url-scan

Safety FAQ

Common questions, answered directly from the scan data above — so the answers always reflect the latest verdict on this page.

  • Our automated security review found no threat indicators on openmoji.org, so it appears legitimate. All 92 antivirus engines we queried report it clean, and the domain is 8.5 years old, registered on February 7, 2018 — established domains are far less likely to be scams. Even so, always double-check the exact address in your browser, because phishing emails routinely spoof real, trusted domains like this one.
  • openmoji.org passed our automated checks with a trust score of 94/100. No antivirus engines or major blacklists flagged it at the time of the last scan, and its signals line up with an established, legitimate site. Treat any unexpected login prompt or payment request on it with the same caution you would anywhere.
  • Yes — and this is worth understanding. Even trustworthy domains get spoofed in phishing emails (a fake message that only looks like it's from openmoji.org), and legitimate sites are occasionally compromised on specific pages. A clean verdict means the site itself checks out today; it does not mean every email or link claiming to be from openmoji.org is genuine. Always reach the site by typing the address yourself rather than clicking links in unexpected messages.
  • No — all 92 antivirus and blocklist engines in our malware network currently report openmoji.org as clean. That's a good sign, though antivirus coverage is only one of the many signals we weigh, and brand-new scam sites can appear clean before vendors catch up.
  • No — openmoji.org is not currently on the major browser blocklist feeds that Chrome, Safari, Firefox, and Edge rely on. Note that blocklists can lag behind brand-new scam domains, so "not listed" is reassuring but not a guarantee on its own.
  • openmoji.org is 8.5 years old, registered on February 7, 2018 through Mesh Digital Limited. A multi-year registration history is one of the stronger signals against a scam, though it's never a guarantee on its own — established domains can still be misused.
  • Yes — openmoji.org presents a valid TLSv1.2 certificate issued by Let's Encrypt · YR2, valid for another 58 days. Important caveat: SSL only encrypts the connection between you and the site — it does not verify who runs it. Almost all scam sites now have valid SSL too, so a padlock alone never means "safe".
  • openmoji.org resolves to an IP operated by Host Europe GmbH in FR (Content Delivery Network). Hosting location alone doesn't make a site good or bad — but hosting that doesn't match a brand's claimed country, or that sits on networks known for abuse, is one of the many signals we weigh alongside the verdict above.
  • This report is a record of the scan run on July 22, 2026, and the verdict reflects that point in time. Scam sites change fast — they can go live, get flagged, or vanish within days — so if you believe something about openmoji.org has changed, MalwareTips staff can run a fresh scan that re-checks every signal from scratch and republishes an updated verdict.
Recently scanned

Other Safe reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
This automated risk assessment reflects the evidence available at scan time. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.