This company has verified ownership of the profile and can respond to reviews.
Verified Safe
Current checks lean positive for this site, supported by no major malware/phishing detections and standard payment methods, though a basic verification step is still sensible.
Trust signal radarNormalized trust signals for joinrubymd.comDomain Maturity: 97 daysDomain MaturityWarning Cleanliness: 0 detectionsWarningCleanlinessSafety Level: 0 negative tags, 2 warning signalsSafetyLevelPositive Signals: 2 positive signalsPositiveSignalsPopularity: Estimated low traffic without Tranco or social profile dataPopularityTrust Zone: .comTrust ZoneOperational Signals: 1 detected servicesOperationalSignalsLocation Credibility: Hosting country USLocation Credibility
Figure 1. Trust signal radar for joinrubymd.com. Larger shaded area indicates stronger trust signals.
Meta Verified, Cloudflare Browser Insights, Animate.css Framework, Nuxt Framework
Positive signals:
no major malware/phishing detections
the domain owner has claimed this profile
a Meta-verified presence
standard payment methods
an active SSL certificate (3 months)
Negative signals:
a relatively new domain (3 months)
Last checked August 27, 2026 at 10:08 PM by
Gridinsoft Trust Model v2.5.3
Share this report?
Independent Gridinsoft analysis
What Gridinsoft observed on Joinrubymd.com
A Gridinsoft threat analyst reviewed the site directly and documented the evidence behind this decision.
Current review
Review ID
GMA-20260827220842-d68bc385
Reviewed
by Gridinsoft Threat Analyst
Analyst finding
Safe
Evidence basis
First-party site analysisExternal vendor intelligence: Context only โ not used for this decision
The independent first-party review supports the Safe category for the reviewed public deployment of joinrubymd.com. The apex, www entry, 17 sitemap routes, redirects, appointment-page source, DNS, TLS, and repeated direct requests did not reproduce phishing, credential theft, an unrelated automatic redirect, an automatic harmful download, malware delivery, or another malicious object. The customer's rebrand and service-provider explanation was materially confirmed by the site's current terms and disclosures. Medication-related marketing remains visible, but it is not a reproducible security basis for the prior broad Suspicious Website classification.
Analyst findings
Info4
Info01
No harmful public-site behavior was reproduced
The reviewed apex, www entry, sitemap pages, redirects, appointment pages, and repeated requests consistently served the expected RubyMD content without an unrelated automatic redirect, credential-imitation flow, automatic harmful download, or malware-delivery behavior.
Info02
The Emberflow-to-RubyMD relationship is visible on the current site
The current terms identify Emberflow LLC as the operator doing business as RubyMD, the privacy page retains the Emberflow name, and current pages link to emberflowai.com. These first-party records support the claimed rebrand rather than an unrelated brand imitation.
Info03
Medication-related marketing is presented as clinic infrastructure
The site uses marketing language about GLP-1, peptide, and HRT clinics, while its own disclosure states that RubyMD provides administrative, technology, and operational services and that licensed providers deliver medical services and prescribe compounded medication. The reviewed language did not establish a malicious website or a specific harmful object.
Info04
No specific malicious object was identified
The current review did not identify a malicious URL, phishing receiver, credential-theft page, executable or archive download, payload, or hash. The stored broad Suspicious Website signature had no reproducible first-party basis in the reviewed public deployment.
Review 7 documented observations
View evidence
01Content
The HTTPS homepage and all 17 URLs listed in the current sitemap were reviewed. All 18 reviewed pages returned HTTP 200 after redirects and served coherent RubyMD telehealth-infrastructure, clinic-launch, booking, training, case-study, or testimonial content. One sitemap entry, /replay-page, redirected only to the same-site /replay2 route. No reviewed entry point produced an unrelated automatic redirect, automatic executable or archive download, credential imitation, or malware-delivery instruction.
HTTP status200
Final URLhttps://joinrubymd.com/
Page elementTitle: RubyMD - Start a Telehealth Business in 30 Days | 100 Clinics Built
Analyst observationThe root plus 17 sitemap URLs were reviewed; every page returned HTTP 200 after redirects, and no automatic off-domain redirect or executable or archive download was reproduced.
02Redirect
HTTP apex, HTTP www, and HTTPS www entry points converged on https://joinrubymd.com/. Repeated direct requests to the HTTPS homepage returned the same final URL and identical response content. No destination changed by request repetition or between the reviewed apex and www entry points.
Redirect destinationhttps://joinrubymd.com/
HTTP status200
Analyst observationThe only observed entry redirects normalized HTTP and www requests to the same HTTPS apex; repeated homepage requests returned identical content.
03Content
The current terms page, dated July 18, 2026, identifies the operator as Emberflow LLC doing business as RubyMD at joinrubymd.com. Current public pages also link to emberflowai.com, while the privacy page still uses the Emberflow name. The reviewed homepage describes RubyMD as providing administrative, technology, operational, marketing, clinical-network, pharmacy-integration, compliance, and payment infrastructure for telehealth clinic operators. This first-party content supports the claimed rebrand and service-provider relationship.
HTTP status200
Final URLhttps://joinrubymd.com/terms
Page elementTerms identify Emberflow LLC d/b/a joinrubymd.com as RubyMD.
Analyst observationCurrent RubyMD pages link to www.emberflowai.com, and the privacy page retains the Emberflow operator name.
04Content
The homepage explicitly states that RubyMD provides administrative, technology, and operational services; medical services are delivered by independent professional corporations and licensed providers; compounded medications are not FDA-approved and are dispensed only against a valid prescription. The same page also contains marketing copy about launching peptide, GLP-1, and HRT clinics and calls its funnel the best way to sell those treatment categories. The reviewed content therefore markets infrastructure for medication-related clinics but does not by itself establish that RubyMD directly dispenses medication or that the domain is malicious.
Page elementRubyMD provides administrative, technology and operational services.
Page elementMedical services are delivered by independent professional corporations and their licensed providers.
Page elementCompounded medications are not FDA-approved and are dispensed only against a valid prescription from a licensed provider.
Analyst observationThe homepage also advertises clinic infrastructure for GLP-1, peptide, and HRT programs; those marketing references are distinct from observed malware or phishing behavior.
05Form
The reviewed /apply and /booking source configured appointment-calendar components and ordinary telephone-input support through the site's LeadConnector platform. The served public markup did not expose a password, one-time-code, wallet-recovery, seed-phrase, private-key, executable-upload, or automatic-download flow. No appointment, inquiry, payment, medical intake, or other form was submitted during the review.
Final URLhttps://joinrubymd.com/apply
Page elementAppointment-calendar configuration and telephone-input support
Analyst observationNo password, one-time-code, recovery-secret, private-key, executable-upload, or automatic-download flow was identified in the reviewed public source; no form was submitted.
06TLS
The apex and www hosts resolved through Cloudflare delivery addresses and served the reviewed site. The apex certificate named joinrubymd.com and the www certificate named www.joinrubymd.com; both were issued by Google Trust Services and were valid for the current review period. Shared delivery addresses were treated as infrastructure facts, not as evidence about the private origin or a malicious payload.
DNS factjoinrubymd.com resolved to 162.159.140.166; www.joinrubymd.com resolved to 104.18.35.90 and 172.64.152.166.
Certificate factApex certificate: joinrubymd.com, valid 2026-08-12 through 2026-11-10; www certificate: www.joinrubymd.com, valid 2026-08-12 through 2026-11-10.
Analyst observationBoth HTTPS entry points served the expected RubyMD site through shared Cloudflare delivery infrastructure.
07Limitation
A fresh supported Gridinsoft scan reached the expected HTTPS homepage with HTTP 200. Before correction, the Suspicious Website result remained attached to a stored broad domain signature, while the current report listed no positive behavioral signal and supplied no exact malicious URL, phishing receiver, executable, archive, payload, or hash. Direct review of the current public deployment did not reproduce a first-party basis for retaining that broad warning.
HTTP status200
Public artifact URLhttps://gridinsoft.com/online-virus-scanner/url/joinrubymd-com
Analyst observationThe fresh Gridinsoft report contained no current positive behavioral signal and did not identify a specific malicious URL, receiver, file, payload, or hash.
Scope and limitations
The verdict applies to the public apex, www entry point, current sitemap pages, and public source reviewed at the recorded time; it does not guarantee future or newly added content.
No customer supplied an exact malicious URL, file, payload, hash, screenshot, or transaction for object-specific reproduction.
The review did not authenticate to private clinic, patient, provider, pharmacy, administrative, billing, or advertising accounts and did not enumerate private, unlinked, parameter-dependent, or newly created routes.
Appointment and inquiry configuration was inspected but no form was submitted; no payment, medical intake, prescription, account, or checkout workflow was completed.
The review did not verify medical licensure, pharmacy sourcing, HIPAA, LegitScript, advertising, revenue, testimonial, clinical, or legal claims and is not a medical, regulatory, privacy, or business-performance certification.
We reviewed joinrubymd.com and found mostly positive signals. Current checks lean toward a legitimate, lower-risk profile, although a few caution points still keep it short of a fully verified standing. The current trust score is 82/100. Key signals include no major malware/phishing detections. Verify key details before sharing personal information or relying on the site for important actions.
Figure 2.
Website screenshot for Joinrubymd.com.
2026-08-28 01:08:28
FAQ
Is joinrubymd.com safe?
Based on current analysis, joinrubymd.com appears to be generally safe. The final verdict also reflects manual expert review. Basic verification is still reasonable before relying on the site.
Why does joinrubymd.com look trustworthy?
Key factors include registrar information (Squarespace Domains LLC), hosting in US, and a relatively new domain (3 months). Major malware and phishing engines did not report active blacklist detections at the time of review. The trust score blends security detections, domain and infrastructure signals, and on-page behavior patterns. Taken together, these factors support a mostly positive trust assessment, although routine verification is still reasonable.
Joinrubymd Digital Footprints
A structured view of the site's detected themes, page signals, and related online footprint elements.
Reliable Payment Method
Payment processing utilizes established and secure payment systems including major credit cards, PayPal, or other recognized financial service providers. These payment methods typically offer fraud protection and dispute resolution mechanisms to safeguard consumers.
Quick Payment
Drugstore
Healthcare
Peptide Vendor
This site sells peptide products. Their quality, purity, and safety may not be independently verified, and limited regulatory oversight can increase consumer risk.
Meta Verified
This website is linked to a verified entity on Meta's platforms, helping to reduce the risk of impersonation or fraud.
Cloudflare Browser Insights
This website is proxied through Cloudflare's CDN/network and has Cloudflare Browser Insights enabled.
Animate.css Framework
Nuxt Framework
Young Domain
This site was registered recently, which limits historical reputation data and long-term trust signals.
Claimed Company Profile
The company behind joinrubymd.com has claimed its profile in the Gridinsoft portal and provided verified ownership details.
Domain Information
CreatedJune 9, 2026 at 11:25 PMUpdated: June 9, 2026 at 11:31 PM ยท Expires: June 9, 2027 at 11:25 PM
Domain Age3 monthsRecently Registered
RegistrantGridinsoft privacy protected
US (United States)
Domain StatusClient: Delete ยท Transfer ProhibitedDNSSEC: SIGNEDDELEGATION
Top Level Domain.comGeneric TLD
Technical Details
IP Address162.159.140.166
Hosting ProviderAS13335 Cloudflare, Inc.San Francisco, California, US
SSL CertificateWE1TLSv1.3 ยท Valid for: 3 months ยท from August 12, 2026 at 3:53 PM ยท to November 10, 2026 at 4:52 PM
Name Serversnsa1.squarespacedns.com nsa2.squarespacedns.com nsa3.squarespacedns.com nsa4.squarespacedns.com
Content Analysis
Website titleRubyMD - Start a Telehealth Business in 30 Days | 100 Clinics Built
Website descriptionThe Company Behind Million Dollar a Month Telehealth Businesses. Over 100 Clinics Built. Launch your own Telehealth business in just 30 days.
Primary Language
Mentioned hosts (19)
fonts.googleapis.comwww.joinrubymd.comjoinrubymd.comfast.wistia.combackend.leadconnectorhq.comembed-ssl.wistia.comskinnyrx.comassets.cdn.filesafe.spaceservices.leadconnectorhq.comfiles.manuscdn.comdosepop.comstcdn.leadconnectorhq.comcdn.filesafe.spacebringrx.comfonts.gstatic.com
and 4 more
Security Analysis
Detection SignaturesThese signatures are used to generate the security fingerprint below.
Verified ServicesThis domain has been verified by the following legitimate services and organizations, confirming authentic ownership and proper email security configuration.
Google Verification
Domain ownership verified by Google.
Security FingerprintUnique identifier based on site analysis
If you own Joinrubymd.com and want to challenge the trust score, please submit a review request via portal.gridinsoft.com. There you can claim your profile and add verified company/contact details. If you cannot access the portal, email legal(at)gridinsoft.com with proof of legitimacy and contact details. We never charge website owners for reviews or reconsideration requests. For more information, please review our Disclaimer.
A website report warns you. A PC scan protects you.
Unsafe sites can leave adware, unwanted apps, or hidden malware in downloads and browser settings. Run Gridinsoft Anti-Malware to check what may already be on this Windows PC.
Checks active threats, startup items, and suspicious downloads
Finds adware and unwanted apps linked to unsafe websites
Shows scan results before you decide what to remove
Your comment is currently undergoing moderation and will be published shortly.
Help protect others by sharing this page on social media! The more people who know about joinrubymd.com, the fewer chances they have to deceive someone else.Help others evaluate joinrubymd.com by sharing this page on social media!
Help protect others by sharing this page on social media! The more people who know about joinrubymd.com, the fewer chances they have to deceive someone else. Help others evaluate joinrubymd.com by sharing this page on social media!