Cloudflare displays a “Suspected Phishing” interstitial, even though the website is a legitimate Shopify e-commerce store and contains no phishing content.
This phishing warning only occurs on the root path (/).
All other URLs on the same domain work correctly and are not flagged, for example: • /en • /pages/bmw • Product and collection URLs
To keep the website accessible to customers, we have implemented a temporary Cloudflare redirect rule:
/ → /pages/bmw
If this redirect rule is removed or disabled, the phishing warning immediately reappears when visiting /.
Important notes: • Google Safe Browsing reports the site as clean • VirusTotal reports the site as clean • Cloudflare URL Scan reports no security risks • SPF, DKIM and DMARC are correctly configured • Email-related DNS records are DNS-only and not proxied • No phishing-related alerts appear in the Cloudflare dashboard • The issue began after a DNS migration to Cloudflare
This strongly indicates a false positive phishing classification affecting only the root path (/).
We are requesting a manual review of the root URL and confirmation that the phishing flag can be fully removed so the temporary redirect can be safely disabled.
Compra recambios y accesorios BMW 100% originales. Amplio catálogo: Pantallas radio Android, Bombillas LED H7 H8, Ojos de Ángel Eyes, Parrillas, Riñoneras, Pomos, Volantes y más. Expertos en BMW, calidad garantizada. ¡Mejora tu coche con los mejores productos!