Is u28737517.ct.sendgrid.net safe?
https://u28737517.ct.sendgrid.net/ls/click?upn=u001.aHBhXN-2BJm1I1-2Bodfplrmveek3XINiUlF8-2BschAaWWP9zgKWVxEz1lfrp-2BUCGl3WhZL53_ur4AbQQaegLwp1t4K9x8pFmCjGy4-2FlH0rbRy4OB8wAr2vbCluJF57lr2XD6wfTUTuU-2FVnHe4NE74q44gEz5QwqjSpZgMZ8ySvbl6gw7H9uAtZKsT9cij1dpr4Uc4wnGRToHSrTvEcNu9i-2BeGtjQogSUyPC59o0nK59ujzhtAE24gFGsaXnUw6JEjSExyqZzwKeWBYVD8O8Fheykeb-2F-2F-2FBg-3D-3D
Coveragecomplete4 of 4 applicable core capabilities
Safe email-tracking redirect with no detected threat
This URL acts as a cross-domain redirect rather than a standalone website. The resulting page presents ordinary account sign-in options and policy links, while security checks found no malicious or suspicious detections and no threat warning. No deceptive commercial or harmful operator mechanism is supported by the available evidence.
Where this site sits
- Dangerous1–20
- High Risk21–44
- Moderate Risk45–69
- Low Risk70–84
- Safe85–100
The score combines saved evidence strength and analysis quality. Coverage is reported separately.
01 · Investigation Brief
Investigation Brief
This URL acts as a cross-domain redirect rather than a standalone website. The resulting page presents ordinary account sign-in options and policy links, while security checks found no malicious or suspicious detections and no threat warning. No deceptive commercial or harmful operator mechanism is supported by the available evidence.
A redirect leading to an account page
Opening the target sends the browser to an external domain. The destination displays options to continue by phone, Google, or Apple, along with an email-or-username field.
The destination also exposes terms, privacy, help, developer, and business links. The evidence does not show a commercial checkout, download, subscription, or other monetized visitor flow.
Clean technical findings and no demonstrated customer harm
The URL received zero malicious and zero suspicious detections across 90 engines, and the separate browsing-safety check returned no threat warning.
The redirect itself warrants normal caution because the visible tracking address does not reveal the destination before opening, but the supplied evidence does not demonstrate phishing, malware, deceptive billing, or another customer-harm mechanism.
Why the score is 93
The score combines saved deterministic evidence with the grounded analysis available for this report. Coverage remains separate so missing sources cannot be mistaken for clean results.
02 · Security Evidence
Security evidence
Antivirus Engines
0/ 90
No detectionsFresh result
No detections across 90 engines
No antivirus engine in this saved scan raised an adverse result. This is one signal, not a guarantee.
- Malicious
- 0
- Suspicious
- 0
- Total
- 90
All 90 engine results
- 0xSI_f33d - unrated - Clean
- Abusix - clean - Clean
- Acronis - clean - Clean
- ADMINUSLabs - clean - Clean
- AILabs (MONITORAPP) - clean - Clean
- AlienVault - clean - Clean
- alphaMountain.ai - clean - Clean
- AlphaSOC - clean - Clean
- Antiy-AVL - clean - Clean
- ArcSight Threat Intelligence - unrated - Clean
- AutoShun - unrated - Clean
- Bfore.Ai PreCrime - unrated - Clean
- BitDefender - clean - Clean
- Bkav - unrated - Clean
- BlockList - clean - Clean
- Blueliv - clean - Clean
- Certego - clean - Clean
- ChainPatrol - unrated - Clean
- Chong Lua Dao - clean - Clean
- CINS Army - clean - Clean
- CRDF - clean - Clean
- Criminal IP - unrated - Clean
- CSIS Security Group - unrated - Clean
- CTX AI - clean - Clean
- Cyan - unrated - Clean
- Cyble - clean - Clean
- CyRadar - clean - Clean
- desenmascara.me - clean - Clean
- DNS8 - unrated - Clean
- Dr.Web - clean - Clean
- EmergingThreats - clean - Clean
- Emsisoft - clean - Clean
- Ermes - unrated - Clean
- ESET - clean - Clean
- ESTsecurity - clean - Clean
- Forcepoint ThreatSeeker - clean - Clean
- Fortinet - clean - Clean
- Fortra - unrated - Clean
- G-Data - clean - Clean
- GCP Abuse Intelligence - unrated - Clean
- Google Safe Browsing - clean - Clean
- GreenSnow - clean - Clean
- GreyNoise - unrated - Clean
- Gridinsoft - unrated - Clean
- Guardpot - unrated - Clean
- Heimdal Security - clean - Clean
- Hunt.io Intelligence - unrated - Clean
- IPsum - clean - Clean
- Juniper Networks - clean - Clean
- K7AntiVirus - unrated - Clean
- Kaspersky - unrated - Clean
- LevelBlue - clean - Clean
- Lionic - clean - Clean
- Lumu - unrated - Clean
- Malwared - clean - Clean
- MalwarePatrol - clean - Clean
- MalwareURL - unrated - Clean
- Mimecast - unrated - Clean
- Netcraft - unrated - Clean
- OpenPhish - clean - Clean
- PhishFort - unrated - Clean
- Phishtank - clean - Clean
- PREBYTES - clean - Clean
- PrecisionSec - unrated - Clean
- Quick Heal - clean - Clean
- Quttera - clean - Clean
- Rising - clean - Clean
- SafeToOpen - unrated - Clean
- Sangfor - clean - Clean
- Sansec eComscan - unrated - Clean
- Scantitan - clean - Clean
- SCUMWARE.org - clean - Clean
- Seclookup - clean - Clean
- Snort IP sample list - unrated - Clean
- SOCRadar - unrated - Clean
- Sophos - clean - Clean
- StopForumSpam - clean - Clean
- Sucuri SiteCheck - clean - Clean
- ThreatHive - clean - Clean
- URLhaus - clean - Clean
- URLQuery - unrated - Clean
- Viettel Threat Intelligence - clean - Clean
- VIPRE - unrated - Clean
- ViriBack - clean - Clean
- VX Vault - clean - Clean
- Webroot - clean - Clean
- Xcitium Verdict Cloud - clean - Clean
- Yandex Safebrowsing - clean - Clean
- ZeroCERT - clean - Clean
- ZeroFox - unrated - Clean
Security Scans
Checked against the browser threat feeds available to this scan — no hit.
03 · Investigation Story
Investigation story
What the site claims
X. It’s what’s happening / X
What we observed
Saved browser evidence recorded cross domain landing.
What independent research found
1 external finding were saved and compared with the page evidence.
What remains unverified
The checks completed, but ownership, business claims, and future site behavior can still change after this snapshot.
What kind of site and risk is this?
Threat category
No threat category confirmed
Service and business model
Unknown
Observed behavior
Evidence behind this classification
- 01The target redirects the browser to an external domain, so its final destination is not apparent from the tracking URL alone.
- 02Independent checks recorded no threat warning and zero malicious or suspicious detections across 90 engines.
- 03Independent checks recorded no threat warning and zero malicious or suspicious detections across 90 engines.
Web research findings
Independent findings for u28737517.ct.sendgrid.net, including public complaints, named review sources, registration records, and look-alike-domain evidence. A missing result is shown as unverified, never converted into a clean bill of health.
- Domain.Glassopen
"Parent domain registration belongs to SendGrid, Inc"
Reputation Sources
How this domain rates across independent threat-intelligence and blocklist providers.
04 · Domain & Infrastructure
Domain & infrastructure
The plumbing behind the site — who registered it, how it’s encrypted, where it’s hosted, and where it links out. A valid certificate or a calm server doesn’t mean the business is honest — scam sites pass these checks too. Use this to corroborate the verdict, not to overturn it.
Infrastructure map
How the saved page connected to the wider web.
- Domainu28737517.ct.sendgrid.net
- Redirects tox.com
- Hosted byCloudflare, Inc.
- Referencesabs.twimg.com · pbs.twimg.com
Domain Timeline
- Apr 20, 2009Domain registered
First appeared in WHOIS records — 17 years old today.
- Sep 9, 2026Saved security review — Reviewed as safe
This saved scan found no active threat signals in the checks it completed.
u28737517.ct.sendgrid.net has operated for years with no threat signals in this review — a long, stable track record, though it is never a guarantee on its own.
Contact Verification
Saved contact details can help identify the operator. Their presence supports traceability; it does not prove the business is trustworthy.
- No direct contact email found on the captured page.
Domain & Encryption
Redirect Chain
- 1302https://u28737517.ct.sendgrid.net/ls/click?upn=u001.aHBhXN-2BJm1I1-2Bodfplrmveek3XINiUlF8-2BschAaWWP9zgKWVxEz1lfrp-2BUCGl3WhZL53_ur4AbQQaegLwp1t4K9x8pFmCjGy4-2FlH0rbRy4OB8wAr2vbCluJF57lr2XD6wfTUTuU-2FVnHe4NE74q44gEz5QwqjSpZgMZ8ySvbl6gw7H9uAtZKsT9cij1dpr4Uc4wnGRToHSrTvEcNu9i-2BeGtjQogSUyPC59o0nK59ujzhtAE24gFGsaXnUw6JEjSExyqZzwKeWBYVD8O8Fheykeb-2F-2F-2FBg-3D-3D
- 2301https://www.twitter.com/cross-domain
- 3301https://twitter.com/cross-domain
- 4200https://x.com/cross-domain
Server Reputation
Referenced Domains
Outbound domains this page links to or loads resources from. Each links to its own security scan.
05 · Evidence Ledger
Evidence ledger
- Antiviruscomplete
- Browser threat feedcomplete
- Page contentcomplete
- Analysiscomplete
- Visual evidenceunavailable
The conclusion is supported by the evidence saved with this report.
Technical threat
unknownMalware, phishing, credential theft and hostile infrastructure.
No confirmed evidence in this dimension.
Operator / customer risk
unknownComplaints, withdrawals, business conduct and commercial traps.
No confirmed evidence in this dimension.
Source coverage and freshness
Status shows whether usable evidence was saved; finding shows what that evidence observed.
| Source | Result | Completion | Finding | Freshness |
|---|---|---|---|---|
| Antivirus | 0 of 90 engines flagged | Completed | No adverse finding | fresh · Sep 9, 2026 |
| Browser protection | No browser threat-list match | Completed | No adverse finding | Not available |
| Page content | Page fetched · HTTP 200 | Completed | No adverse finding | Not available |
| Visual evidence | The saved page capture was not reliable enough to use | Unavailable | No saved finding | Not available |
| Independent research | 1 independent finding were saved | Completed | No adverse finding | Not available |
- Antivirus
- Result0 of 90 engines flagged
- CompletionCompleted
- FindingNo adverse finding
- Freshnessfresh · Sep 9, 2026
- Browser protection
- ResultNo browser threat-list match
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Page content
- ResultPage fetched · HTTP 200
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Visual evidence
- ResultThe saved page capture was not reliable enough to use
- CompletionUnavailable
- FindingNo saved finding
- FreshnessNot available
- Independent research
- Result1 independent finding were saved
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
07 · Safety FAQ
Safety FAQ
Common questions, answered directly from the scan data above — so the answers reflect the saved verdict and evidence in this report.
Is u28737517.ct.sendgrid.net legit and safe?
Is u28737517.ct.sendgrid.net safe to use?
Could a legitimate site like u28737517.ct.sendgrid.net still be used in a scam?
Has u28737517.ct.sendgrid.net been flagged by antivirus engines?
Is u28737517.ct.sendgrid.net on any phishing or malware blacklists?
How old is the u28737517.ct.sendgrid.net domain?
Does u28737517.ct.sendgrid.net have a valid SSL certificate?
Where is u28737517.ct.sendgrid.net hosted?
How often is the u28737517.ct.sendgrid.net report updated?
08 · Final Verdict
Final verdict
Safe email-tracking redirect with no detected threat
The written conclusion remains part of the saved report.
This URL acts as a cross-domain redirect rather than a standalone website. The resulting page presents ordinary account sign-in options and policy links, while security checks found no malicious or suspicious detections and no threat warning. No deceptive commercial or harmful operator mechanism is supported by the available evidence.
09 · Community