False positive: defade.org "Request blocked — this dApp could be malicious" #517
SummaryOur domain defade.org (and API subdomain api.defade.org) is being flagged by Phantom's DeFade is a token risk-analysis platform for Solana and EVM chains (rug-risk scoring, We've verified defade.org does NOT appear in the public blocklist repo Likely trigger: we recently launched "Protected Trade", an integration with Definitive's Could you please review defade.org and remove the flag? Happy to provide anything that ExampleSteps to ReproduceThe flagging is intermittent - some requests from our origin trigger the block and
To attempt reproduction:
The concern: users who hit the warning on their first trade see our dApp labeled Phantom Version26.27.0 Is there an existing discussion for this?
|
Replies: 2 comments 2 replies
|
Hey, sorry you’re dealing with this — these intermittent false positives from the transaction-scanning layer are pretty frustrating, especially when the domain isn’t even on the public blocklist. Go through the official Domain and Transaction Warnings guide: A few other people in similar situations (new domains + non-standard signing patterns like gasless/Ed25519 or delegate approvals) got it cleared after following that process. Sometimes it also helps to make sure you’re using signTransaction first when there are multiple signers, and that transactions simulate cleanly with sigVerify: false beforehand. |
|
Please follow our domain and transaction warnings guide, including the linked review form if you need further assistance. Thanks! |

Please follow our domain and transaction warnings guide, including the linked review form if you need further assistance. Thanks!