HTTPS and certificates
Redirect behaviour, encrypted transport, certificate validity, hostname coverage, issuer information and expiry risk.
Website trust signals
HIP groups website observations into signal families so each result can explain what was checked, what was found and how that evidence affected the outcome. No single positive signal proves a site is safe.
Signal families
Redirect behaviour, encrypted transport, certificate validity, hostname coverage, issuer information and expiry risk.
DNS records, mail-authentication posture and explicit ownership evidence. Domain control establishes control, not honesty or safety.
Available domain history, confirmed threat evidence, bounded feedback and reviewed reputation information, with provenance retained.
Privacy-safe structural observations such as login or payment fields, suspicious redirects, risky downloads and meaningful third-party changes.
Bounded risk labels for urgency, impersonation or credential pressure. HIP does not need to retain raw private page text to use these signals.
Optional provider results and HIP review evidence enter through a normalized boundary. Providers supply facts; HIP rules decide the result.
Evidence provenance