One of our Development Website has been reported as unsafe

Al Dommes 0 Reputation points
2026-10-01T14:30:56.4566667+00:00

I have filled out the More Information and "Report that this site doesn't contain any phishing threats" for two weeks and the site is still blocked. How do I get this removed? This is impacting our client testing and the first email stated it would be removed after review in 24 hrs. This has been now two weeks later and still listed.

Microsoft Security | Microsoft Defender | Microsoft Defender for Office 365
0 comments No comments

1 answer

Sort by: Oldest
  1. AI answer

    2026-10-01T14:31:10.1133333+00:00

    If the site is still blocked after submitting Report that this site doesn't contain (malware/phishing) threats and waiting two weeks, use the next escalation paths that are documented for false positives:

    1. Submit the site through the WDSI file submission portal: https://www.microsoft.com/en-us/wdsi/filesubmission
      • This is specifically listed as a way to report a site that was incorrectly blocked.
      • Include the blocked URL and details showing why the site is safe.
    2. If the block is being shown in Microsoft Edge, use the false-positive reporting link on the Edge block page.
      • Microsoft documents this as the way to report sites deemed dangerous by SmartScreen.
    3. If the block is coming from Microsoft Defender for Endpoint Web Content Filtering, an administrator can review the blocked domain in the Defender portal and:
      • go to the Domains tab of the WCF reports,
      • select the ellipsis next to the domain,
      • choose Dispute Category,
      • set the priority and provide the suggested category and details.
    4. If the original SmartScreen report has already generated a confirmation message from the SmartScreen Reputation Group, reply to that message to present the urgency and request follow-up. Microsoft documents this as the path when the issue is urgent or a response is needed after investigation.

    To reduce the chance of the site being blocked again, Microsoft recommends:

    • enabling HTTPS with a valid certificate,
    • blocking iframes from loading unknown third-party content,
    • using Content Security Policy (CSP) and other secure response headers,
    • regularly scanning for web shells, trojans, and suspicious uploaded files,
    • avoiding frequent hosting or DNS changes that can affect domain reputation.

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.