Hello Vercel Community,
We are experiencing an issue where our legitimate financial/payment application app.simexpay.com is currently being blocked by Vodafone UK (one of the largest mobile networks in the UK) via their network security filters.
Upon running a deep security audit across global threat databases, we discovered that 4 security vendors have flagged our domain as a false positive, which is likely triggering the Vodafone UK network block:
- BitDefender: Flagged as Phishing (False Positive)
- G-Data: Flagged as Phishing (False Positive)
- Sophos: Flagged as Malware (False Positive)
- Webroot: Flagged as Malicious (False Positive)
All other 60+ major security vendors (including Google Safe Browsing, ESET, Fortinet, and Symantec) report our domain as completely Clean.
1. Current Technical Status
Our application is completely healthy and correctly configured on Vercel:
- DNS Resolution: Resolving perfectly to Vercel’s global Anycast IPs (
216.198.79.1and64.29.17.1). - SSL/TLS & Server: The wildcard certificate completes successfully and returns
HTTP/2 200 OKfrom Vercel edge servers (fra1Frankfurt region).
2. Actions Taken
We have already submitted official False-Positive/Dispute forms directly to BitDefender, G-Data, Sophos, and Webroot to have our domain cleared from their blacklists.
Our Request:
Since we are a legitimate financial application for UK SMEs, these false flags are severely impacting our users on Vodafone UK.
- Has anyone in the community dealt with false-positive phishing/malware flags on Vercel shared IPs or domains recently?
- Are there any recommendations on how to expedite the delisting process with these specific vendors (BitDefender/Sophos/Webroot) so that UK ISPs like Vodafone sync their databases and unblock us faster?
Thank you in advance for your guidance!