Is stellaplus.xyz/ safe?

dangerouslow confidence
6/100

context safety score

A score of 6/100 indicates severe risk signals were detected. This entity exhibits patterns strongly associated with active threats.

identity
5
behavior
25
content
0
graph
37

10 threat patterns detected

high

tls connection failed

Could not establish TLS connection

medium

encoded payload

suspicious base64-like blobs detected in page content

medium

credential harvesting

credential form posts to an off-domain endpoint (may be legitimate SSO/OAuth)

medium

malicious redirect

script/meta redirect patterns detected in page source

medium

cloaking

Page checks user-agent for bot/crawler strings to serve different content

high

cloaking

Page conditionally redirects based on referrer or user-agent

critical

exfiltration

JavaScript exfiltrates cookies via fetch/XHR

critical

exfiltration

JavaScript appears to implement keylogging with exfiltration

high

exfiltration

JavaScript intercepts form submissions to exfiltrate data

medium

js obfuscation

Very long base64 or hex string assigned in JavaScript — likely encoded payload

API

curl https://api.brin.sh/domain/stellaplus.xyz%2F

frequently asked questions

Common questions about this domain and how brin protects your agent.

Is stellaplus.xyz/ safe for my agent to use?

stellaplus.xyz/ currently scores 6/100 with a dangerous verdict and low confidence. brin scored this domain so your agent can decide whether to consume it. Higher scores mean lower risk; lower scores mean your agent should not proceed without review.

How does brin protect my agent?

Instead of restricting what your agent can do, brin scores every piece of external content before your agent acts on it. Your agent keeps its full capabilities — it just never consumes dangerous content. One API call before every action is all it takes.

How should I interpret the score and verdict?

Use the score as a policy threshold: 80–100 is safe, 50–79 is caution, 20–49 is suspicious, and 0–19 is dangerous. Teams often auto-allow safe, require human review for caution/suspicious, and block dangerous.

How does brin score this domain?

brin evaluates four dimensions: who published it (identity), how it behaves (behavior), what's actually in it (content), and who else trusts it (graph). Most lookups are resolved by static analysis and registry metadata. When deeper investigation is needed, brin runs its own agent to check for prompt injection, hidden instructions, and social engineering.

Why does brin score external content instead of restricting agents?

The default approach to agent security is guardrails — restrict what the agent can do. It works, but it cripples the agent. brin takes a different approach: let agents operate with full capability and score every piece of external context they consume. You get safety without sacrificing capability.

Can I rely on a safe verdict as a guarantee?

No. A safe verdict means no significant risk signals were detected in this scan. Assessments are automated and point-in-time. Combine brin scores with your own controls and periodic re-checks.

Learn more in threat detection docs, how scoring works, and the API overview.

Last Scanned

April 17, 2026

Verdict Scale

safe80–100
caution50–79
suspicious20–49
dangerous0–19

Trust Graph

Disclaimer

Assessments are automated and may contain errors. Findings are risk indicators, not confirmed threats. This is a point-in-time assessment; security posture can change.

start protecting your agents.

integrate brin in minutes — one GET request is all it takes. query the api, browse the registry, or download the full dataset.