Open Terminal - 35% Cashback →

Is padre.gg Safe? Why the Scanners Contradict Each Other (2026)

By Concept211 (@Concept211)Updated: August 6, 202611 min read
Table of Contents

If you search "is padre.gg safe" you get a set of automated trust scores that flatly disagree with each other, several of them about the same company. That is not a useful answer, so here is a real one, including the parts that are genuinely unflattering.

padre.gg is real and it is Terminal, the trading app pump.fun bought in October 2025. The scanner scores contradict each other so completely that one of them rates the marketing site "Very Likely Safe" and the app subdomain "Very Likely Unsafe," which tells you about the scanner rather than the site. The genuine risks here are not phishing clones. They are a 20% default slippage setting, no password recovery, a discarded token, and an active RICO class action.

The contradiction, laid out

These are the results that rank for trust queries about this product, as of 6 August 2026.

SourceDomainVerdict
ScamAdvisertrade.padre.gg"Very Likely Unsafe", trust score 0
ScamAdviserpadre.gg"Very Likely Safe"
Scam Detectorpadre.gg14.1/100, "High-Risk"
Gridinsofttrade.padre.ggFlagged as phishing, 19/100
BitDefendertrade.padre.ggClean
Kasperskytrade.padre.ggClean
ESETtrade.padre.ggClean
Sophostrade.padre.ggClean
Google Safebrowsingtrade.padre.ggClean

Two separate contradictions sit in that table. ScamAdviser rates one company's apex domain safe and its own application subdomain as bad as its scale allows. And on padre.gg specifically, ScamAdviser says "Very Likely Safe" while Scam Detector says "High-Risk," which are not close to the same claim.

Meanwhile Gridinsoft calls it phishing at 19/100, and the five engines that maintain actual phishing and malware blocklists return Clean. Those engines are the ones your browser and your antivirus consult. If trade.padre.gg were running a credential harvester, Google Safebrowsing would be the first to know and Chrome would show you a red interstitial. It does not.

Why heuristic scanners produce results like this

Your concern is reasonable. A trust score of 0 is alarming and you should not have to be a domain forensics hobbyist to interpret it. But it helps to know what these tools are measuring, which is almost never the content of the site.

ScamAdviser, Scam Detector and Gridinsoft are automated scoring services. They rank well for "is X safe" queries because they generate a page for every domain in existence. The inputs are things like WHOIS registration age, registrar and hosting reputation, TLD reputation, SSL configuration, whether the operator hides contact details, keyword categories on the page, and the shape of the backlink profile. There is usually no human involved.

Terminal trips several of those signals for reasons unrelated to whether it will steal from you:

Subdomains get scored on their own. trade.padre.gg has no independent WHOIS record, no independent age, and a thin link profile compared with the apex. Score the apex and the subdomain with the same algorithm and you get different numbers from identical underlying reality. That single quirk explains the "Very Likely Safe" versus "Very Likely Unsafe" split better than anything else.

Crypto keywords carry a penalty. Any page combining wallet, trading and token terminology sits in a category where the base rate of real fraud is high. Scanners weight that heavily and they are not wrong to, but the penalty lands on legitimate crypto products and fraudulent ones alike. The .gg suffix does not help either. It is Guernsey's country code, popular with gaming and crypto projects, and it carries worse baseline statistics than .com.

Then there is the backlink profile, which is probably the largest factor and the one nobody explains. Roughly 70 to 80% of the Padre and Terminal material on Reddit is referral link spam, and the same pattern runs through YouTube descriptions, throwaway blogs and comment sections. Link-based reputation systems read a mention profile made mostly of low-quality sites pushing an identical tracking link as a spam signature, because for most domains that is exactly what it is. Terminal's referral program pays 35% of trading fees, which is generous enough to have produced an enormous volume of that footprint.

Where this leaves the scanners

None of this makes the scanners malicious or even useless. It makes them a smoke detector, not an investigation. A low score is a reason to check further. It is not a finding, and when two of them contradict each other on the same company's own domains, neither number is carrying information you should act on.

Settling it with evidence instead

Here is what can actually be verified about who runs this thing.

The app is one application behind several addresses. As of 6 August 2026, terminal.pump.fun and trade.padre.gg serve a byte-identical JavaScript bundle, down to the filename (assets/index-ox6lYmnW.js, about 4.5 MB; the filename changes on each redeploy). A phishing clone does not serve the operator's own build. Two front doors, one product.

The company is registered and identifiable. Terminal is operated by Baton Corporation Ltd, trading as Pump.Fun, UK company number 14743013, a private limited company incorporated in England and Wales on 20 March 2023. Its directors are Alon Cohen, Dylan Kerler and Noah Tweedale, all named publicly and all filed at Companies House. This is not an anonymous operation.

Custody is non-custodial and third party verifiable. Wallet keys are managed through Turnkey, built by Coinbase's custody team, and Turnkey's involvement shows up in the site's own content security policy (export.turnkey.com, import.turnkey.com) rather than only in marketing copy. Our Terminal custody and private key guide covers how that works and where it stops protecting you.

The acquisition itself is on the record too. Pump.fun bought Padre on 24 October 2025 and renamed it Terminal, reported by The Block and CryptoBriefing among others and announced by both companies on X. What changed and what did not is covered in our Terminal formerly Padre article.

And nothing has gone wrong that anyone has documented. We found no reported breach, exploit or user fund loss affecting Terminal, padre.gg or trade.padre.gg in 2026.

The 'Padre was hacked' claim is unverified

It circulates, and we went looking for it repeatedly. There is no incident report, no post-mortem, no news coverage and no Reddit thread from anyone who lost funds. What does exist from the same period is Solareum, a different Solana Telegram trading bot that shut down after roughly $523,000 was drained from 300 or more users, later tied by the DOJ to a North Korean developer, and a wave of private key leak accusations aimed at BONKbot, which BONKbot denied. Those are the likely source of the confusion. We are not going to publish a hack that we cannot find evidence of, and neither should anyone else.

Get 35% Cashback Instead of 10%

Terminal pays cashback on your trading fees, in SOL, on every trade. Sign up directly and the rate is 10%. Sign up through a referral link and it is boosted to 35%.

Open Terminal with 35% Cashback

The four official domains

All four are live, all four serve official product, and none of them redirects to a single canonical address. That is the actual root of the confusion, and it is pump.fun's doing rather than an attacker's. The one to use is terminal.pump.fun, because it is the address pump.fun is standing behind.

DomainWhat it isUse it?
terminal.pump.funCurrent, correctly branded front doorYes, treat this as canonical
trade.padre.ggByte-identical app, legacy addressWorks, branding is stale
padre.ggMarketing site, still branded PadreFine, but it is not the app
app.padre.ggLegacy Padre V1, still onlineAvoid, this is the old version

Anything else is not official.

The lookalikes that are live right now

These exist, they rank in search, and some of them surfaced organically while we were researching this page:

  • padregg.org is a full clone of the Padre marketing site. Its social links point at the wrong handles entirely, discord.gg/padre rather than the real discord.gg/padreapp, and its "Launch App" buttons go nowhere. The mismatched Discord invite is the clearest tell.
  • padre-trade.com
  • padre.cash
  • padre-terminal.xyz

How to not get caught

Bookmark the address you use and reach the app from that bookmark rather than from a search result or a Discord link. Check the address bar before you enter a password. And remember that nobody will ever legitimately ask you to migrate funds to a new domain, verify a wallet, or claim a pump.fun airdrop, because there is no airdrop.

One more: Terminal's live support invite is discord.gg/h6ZH2BaYJu, which differs from the discord.gg/padreapp in the old documentation. Use the invite in the app. Support is Discord tickets only and no agent will ever DM you first.

The risks that are actually worth your attention

If you came here worried about phishing, that is the wrong worry. Here are the right ones, and they are the reason this page is not a puff piece.

The 20% default slippage setting

This is the one that empties small accounts, and it is not hypothetical. A user on r/solana in February 2026 watched their balance drift from $40 to $30 and posted "somehow it says I bought $16 worth and sold it all for $2 how is that even possible." The next day they worked it out themselves: "the starting slippage is automatically 20% so change it if you are using low amounts of money." A second user hit the same wall a month later. Support never appeared in either thread and the official docs never mention it. Full write-up: why small trades lose money on Terminal.

No password recovery, at all

Your private keys are encrypted with a password that Terminal does not store, which is good for custody and unforgiving for you. There is no reset flow anywhere in the app. Padre's documentation stated it directly: there is no way to recover a forgotten password, and the recommendation is to export your private keys and store them offline. Nobody complains about this in public yet, because the failure is silent right up until it is total.

The PADRE token precedent

When pump.fun acquired Padre, the PADRE token lost all platform utility with no replacement and fell roughly 80%. Holders called it a rug pull. Pump.fun took a snapshot on 24 October 2025 and let holders claim PUMP as compensation, and that window closed on 30 December 2025. Judge it how you like, but it is a data point about how this company treats a token when a corporate decision makes it inconvenient, and the promised pump.fun community airdrop still had not arrived a year after it was announced.

The RICO class action

Aguilar v. Baton Corporation Ltd, case 1:25-cv-00880-CM in the Southern District of New York, is an active consolidated class action. The second amended complaint was filed on 7 January 2026. It names Baton, its three founders, Solana Labs, the Solana Foundation, several Solana executives, and 25 anonymous influencer defendants, alleging RICO violations, Securities Act claims under sections 12(a)(1) and 15, and unjust enrichment, under the theory of a "Solana-Pump.Fun Racketeering Enterprise." Alleged aggregate retail losses run to $4 billion to $5.5 billion. Relief sought includes treble damages and the appointment of a federal equity receiver over Baton's operations.

To be clear: these are allegations, nothing has been proven, no trial date is set, and the most recent docket activity was 14 April 2026. But a receiver over the operating company is the kind of outcome that would matter to anyone holding a balance on the platform, and you should know the request is on the table.

Corporate housekeeping

Baton's accounts at Companies House are overdue. The last filed accounts cover the period ending 31 March 2024, and the next set, for the year to 30 September 2025, was due on 30 June 2026 and had not been filed as of 6 August 2026. For a company that raised $1.3 billion, that is a compliance flag worth noting. Separately, the UK FCA geo-blocked pump.fun in December 2024, and reports of two layoff waves during 2026 have gone unanswered by the company.

And the pattern in the incidents that did happen

Both confirmed pump.fun compromises were social media account takeovers rather than platform failures. Its X account was hijacked in February 2025 to promote a fake governance token, and its Instagram in April 2026. User funds were unaffected both times. The useful takeaway is not that pump.fun is unsafe, it is that announcements posted from a company's social accounts are the least trustworthy thing in crypto, including that company's own.

Do not use coinproven.com as a source

It ranks for these queries and it should not be trusted. Its review of this product asserts that 32% of trades fail, with no citation of any kind and no methodology. It cites a Trustpilot rating for a page that does not exist. Its comment section is signed with names like "Kathy Wood." The whole thing reads as generated rather than researched, and the fake statistic in particular is now being repeated elsewhere as though someone measured it. Nobody did.

That is the wider problem with this entire query. Between synthetic review sites, contradictory automated scores and Reddit threads that are 70 to 80% referral spam, the honest answer to "is padre.gg safe" is buried under content that was never written to answer it.

Get 35% Cashback Instead of 10%

Terminal pays cashback on your trading fees, in SOL, on every trade. Sign up directly and the rate is 10%. Sign up through a referral link and it is boosted to 35%.

Open Terminal with 35% Cashback

The bottom line

padre.gg is real, it is Terminal, and it is run by a UK registered company with named directors on infrastructure you can verify from the browser. The scanner scores warning you off are heuristic outputs that contradict each other, and the phishing risk they gesture at is not where this platform will cost you money.

What will cost you money is a 20% slippage default nobody warns you about, a password with no recovery path, and the ordinary business of trading memecoins on a platform whose parent is defending a racketeering suit. Trade from a dedicated wallet with an amount you accept losing, fix the slippage setting before your first buy, export your keys the day you create them, and bookmark terminal.pump.fun so a search result never gets the chance to send you somewhere else.

If you are signing up, the cashback rate is set permanently at signup by whether a referral code was stored, which is worth understanding before you click anything. Our fees guide covers the 1% trading fee and how it stacks with pump.fun's own 1.25%, and the referral page explains the 10% versus 35% split. If a trade fails while you are getting set up, the error message guide has the full catalog of what the app's warnings actually mean.

Frequently Asked Questions

padre.gg is an official domain for Terminal, the trading terminal pump.fun acquired in October 2025. It is operated by Baton Corporation Ltd, UK company number 14743013, and wallet custody runs on Turnkey. No security incident affecting Terminal has been reported in 2026. The automated trust scores that rank for this query disagree with each other and should not be treated as evidence either way.

ScamAdviser scores trade.padre.gg as Very Likely Unsafe with a trust score of 0 while scoring padre.gg as Very Likely Safe, despite both being the same company serving the same product. That contradiction is the clearest sign the score is a heuristic output rather than a finding. Subdomains are frequently scored separately from the apex domain, and crypto keywords plus an affiliate-heavy backlink profile push the number down.

Four: terminal.pump.fun, trade.padre.gg, padre.gg and app.padre.gg. terminal.pump.fun and trade.padre.gg serve a byte-identical JavaScript bundle, meaning they are literally the same application. padregg.org, padre-trade.com, padre.cash and padre-terminal.xyz are not official and are live in search results right now.

No security incident affecting Terminal or padre.gg has been reported in 2026. The claim that Padre was hacked in early 2025 appears in a few places and we could not verify it anywhere. It looks like a conflation with Solareum, a different Solana Telegram bot that lost around $523,000, and with private key leak claims aimed at BONKbot during the same drain wave.

Yes. Aguilar v. Baton Corporation Ltd is an active consolidated class action in the Southern District of New York, case 1:25-cv-00880-CM, with a second amended complaint filed on 7 January 2026. It alleges RICO violations and securities claims, names the founders and Solana Labs among defendants, and seeks a federal equity receiver over Baton's operations. The allegations are unproven and no trial date is set.

Disclaimer: This content is for informational purposes only and does not constitute financial advice. Trading memecoins involves substantial risk of loss, and most of them go to zero. Past performance is not indicative of future results. Always do your own research before trading. This site contains referral links: signing up through our 35% cashback referral link earns us a share of the trading fee Terminal already charges, at no extra cost to you, and raises your own cashback rate from 10% to 35%.

Ready to Start Trading?

Sign up to Terminal through our link and your cashback rate is 35% instead of 10%, paid in SOL on every trade.

Open Terminal with 35% Cashback