northlinebank.app
Appeared in the .app zone on Monday, September 21, 2026; by the end of that day the census found active website about finance loans. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
Day-old .app domain serving a polished 'Secure Banking Portal' login for 'Northline Financial', an institution with no real-world presence; the password form posts to itself, there are no offsite links, and the footer/social icons are non-functional decoration — the classic fake-bank portal used to harvest credentials/PII or to show victims fictitious balances. No real bank brand is being impersonated, so it is fraud with an invented brand rather than brand phishing.
The page impersonates a bank login portal with 'Sign in to your account' credential form, branded as 'Northline Financial' with professional banking UI. The password form posts to itself with no offsite links and no genuine Northline Financial domain in evidence, matching the sealed-room phishing pattern designed to harvest email and password credentials.
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Monday, September 21, 2026

Same data as JSON: /api/zone/domain/northlinebank.app. This page is not indexed by search engines and does not link to the site it describes.