On September 15th 2026, San Francisco-based company TypeSafe released an AI model named “Jev” into limited early access. Jev is unusual in that it does not “talk.” Where a large language model generates text, Jev answers a fixed set of question types (pick one of these options, score this against these levels, answer yes or no, etc.) and returns a typed value with a confidence estimate. By September 18th, just three days later, Vercel clocked Jev as the fastest-adopted model in the history of its AI gateway. TypeSafe removed its initial waitlist on September 20th, but within just two days, the company had to pause new signups because it couldn’t keep up with demand. In the space of about a week, a name almost nobody had typed into a browser became one of the most searched terms in the industry.
A brand that becomes valuable overnight becomes a target overnight. One of the cheapest ways to take a piece of it is to register a domain that looks like it belongs to that brand. Some will park the domain and wait to resell it at a markup. Some run advertising on it and monetize the mistyped traffic. Some build a convincing copy of the real site to harvest credentials or API keys. Some configure mail on it and send invoices, support requests or recruitment offers that appear to come from the company. For 46 days, from August 14th to September 28th, we monitored the feed of all newly registered domain names and found those resembling Jev and fifteen other AI products and companies. Jev’s first lookalike domain, jev.quest, was registered on September 16th, the day after the model was announced. By September 28th there were 167 of them.
What Is Jev, And Why Domain Spoofing?
About Jev
Typesafe positions Jev as a “System One” model, more generically called a "decision model" or classifer. This means it is not a replacement for an LLM, but a fast, cheap layer for routine decision making inside software workflows. The company claims response times of 70 to 500 milliseconds and costs 40 to 400 times lower than a frontier model on comparable classification work. Because the answers are constrained to a schema defined in advance, TypeSafe argues the model cannot “hallucinate” or return something the calling code was not expecting. TypeSafe’s founders include Diogo Almeida, who spent about four years at OpenAI working on reinforcement learning.
Domain Spoofing
The techniques of domain spoofing are well worn. The simplest is to take the exact name and buy it on every extension the owner does not already hold, for example: jev.app, jev.cloud, jev.support. A second is the one-character typo, exploiting the fact that a meaningful fraction of people will mistype a name they have only just learned. A third substitutes lookalike characters, so that a zero stands in for an O or “rn” for an M. The fourth, and in practice the most dangerous, wraps the brand inside a longer, more plausible sounding name: jev-support.com, jevai-login.net, secure-jev.io.
When a user accidentally ends up at one of these sites, the consequences can range from giving clicks to ads set up on the dummy site to full exposure of PII, credentials and other sensitive information when entered into a fraudulent form or login window.
Data Analysis
For each keyword, we scanned every domain registered between August 14th and September 28th. We flagged each of the four specific kinds of resemblance types mentioned above. Every match was then resolved in DNS, recording whether the domain points at a server and whether it is configured to receive mail. We found that lookalike domains playing on the Typesafe and Jev brand names appeared immediately and grew rapidly in the weeks after launch.
“jev”
166 domains are the exact name jev on different TLDs. Those 166 domains sit on 166 distinct extensions, with no extension used twice. This is the signature of an automated run down a list of available top-level domains, buying the name on each one. The extensions cover nearly the whole generic namespace in what appear to be alphabetical batches: .accountants, .art, .asia and onwards. Alongside credible targets like .cloud, .software, .systems and .support, the sweep also took .wtf, .mom, and .dog, extensions no serious impersonation campaign would choose. This all gives a strong indication that the jev name was being bought in bulk, likely with the intent to resell some of them back to TypeSafe.

“jevai”
jevai returned 93 distinct domains. 40 domains are the exact name on another extension and 53 are typographic variants. One of those, jevaisecurity.com, is a direct impersonation of a Jev-related security product.
The names that really matter are hyphenated. Between the 17th and 26th of September, 22 domains of the form jev-ai.<extension> were registered, for example: .com, .space, .pro, .org, etc. Most sit behind Cloudflare, and seven even have Cloudflare Email Routing configured. These are fronted by a CDN and set up to receive mail, which is a materially different level of effort from buying a name and pointing it at an ad page. Hyphenation is also the highest-yield pattern for a short brand, because jev-ai.com reads as legitimate in a way that jevv.com does not.
“typesafe”
typesafe returned 35 domains and was first seen on September 17th. The interesting domains pair the company with the product, such as jev-typesafe.com, jev-typesafe.org, jev-typesafe.pro, typesafe-jev.com, and jev-ai-typesafe.com. This last domain is configured for inbound mail through Amazon SES. Two more, typesafe-ai-avis.fr and avis-typesafe-ai.fr, use the French word for “review” and follow the standard pattern for affiliate and review-bait pages that rank for a brand’s name before the brand itself does.

Across all three keywords, 24 domains have working mail on infrastructure someone configured deliberately. Only two of those 24 are in the jev scan. The volume is under jev, but the intent is under jevai and typesafe.
Jev Compared With Other AI Keywords
While it was in the news, Jev attracted lookalike registrations at roughly twice the rate of Claude, the most-targeted established AI brand in the set, and about two and a half times the rate of ChatGPT. Jev saw 13 new domains a day against Claude’s 6.7 and ChatGPT’s 5.4.
Product names attract far more impersonation than company names: claude drew 306 domains against anthropic’s 49, chatgpt 250 against openai’s 88, gemini 234 against deepmind’s 20. Squatters chase the word users type. On that basis, jev will keep carrying more risk than typesafe.
Perplexity drew only 47 domains, but 51% of them have real mail configured, 17 on Google Workspace. Although the volume is relatively small, the intent behind the lookalikes seems more focused.
Why It Matters
Timing Is Everything
Jev’s launch produced one of the fastest lookalike-domain responses we’ve measured so far: 167 domains in 13 days. That’s roughly twice the rate that the most-targeted established AI brands sustain.
A lookalike domain is worth what its traffic is worth, and traffic follows whatever people are currently searching. The registration curve in this data tracks the news cycle quite closely. The peak came when Jev was most talked about. A domain costs a few dollars and takes minutes to register. Nobody needs to know anything about the product, or even whether it will still exist in six months. Buy the name on fifty extensions, park them and wait. Some fraction will draw mistyped traffic, some fraction can be resold to the brand later. The 75 domain run on September 19th for Jev is that calculation executed at scale.
Any brand protection process that begins at launch is already a week behind. Jev’s first lookalike appeared the day after announcement, and 116 arrived in the first full week. Meanwhile, TypeSafe now has to decide which, if any, of the 166 extensions are worth buying back and at what price.
AI Fraud
New AI brands appear constantly and unpredictably. Users have no accumulated instinct for which domain is real. Someone who has used a bank for ten years knows what its address looks like. Someone who heard about Jev on Tuesday does not, and jev-ai.com and other variations are entirely plausible.
Signing up for an AI service typically means creating an account, entering payment details, and generating an API key. This API key is a credential that is long-lived, frequently pasted into code and directly convertible into compute an attacker does not have to pay for. A convincing fake signup page for an AI product is straightforwardly profitable in a way that a fake page for most other consumer software is not.

Secondly, while a parked domain waits for people to arrive, a mail-capable domain can go out to them. All the phishing and fraud vectors have more success when the sending domain closely resembles or contains the real one. Invoices from a vendor’s lookalike address, support replies to users who posted a problem publicly, recruitment approaches to engineers, “your API key is expiring” notices: the possibilities are wide-ranging. That’s why 24 Jev lookalike domains with deliberately configured mail actually presents a higher risk than the total 167 registrations.
Finally, when an AI model is accessed by hostname through an API, a lookalike domain can act as a man-in-the-middle proxy that relays traffic to the real service while logging every prompt, response and key that passes through. The user sees correct answers. The integration keeps working. Detection depends entirely on someone noticing that the hostname is wrong.

Conclusion
The window in which a brand becomes worth impersonating opens before the brand is ready to defend it, and attempts at impersonation flourish during times of massive public attention. Domain brand protection should be in place for a company as early as possible. By the time it is obviously needed, most of the namespace is already gone.
Protect your organization
Related breaches

Student Applications: How an Education Software Company Exposed Millions of Files




.jpg)
.jpg)