withheldcollective.org
Appeared in the .org zone on Monday, October 5, 2026; by the end of that day the census found active website. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
The page does not impersonate Binance. It runs under its own 'withheld.' brand as a collective-complaint initiative, links to real regulators (VARA, ADGM, AMF), and its form is a GET to itself with hidden issue/notice fields and no password field. However, an anonymous, day-old site gathering 'case' details from people with restricted crypto funds fits the lead-generation shape of fund-recovery scams, so the intent cannot yet be judged.
The page is titled 'WITHHELD — Collective complaints about Binance fund restrictions' and contains a form ('Submit your case') that collects user data about Binance account issues. While the domain name (withheldcollective.org) does not impersonate Binance directly, the page prominently features Binance branding in its title and messaging, and the form posts to itself with hidden fields, creating a sealed-room shape typical of credential/data harvesting. However, the stated purpose—organizing a
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Monday, October 5, 2026

Same data as JSON: /api/zone/domain/withheldcollective.org. This page is not indexed by search engines and does not link to the site it describes.