handcrafted websites & more

Fraud Warning

Someone is impersonating me and Raven’s Eye Design

Last updated: September 11, 2026

Someone is impersonating me, Chad Bush, and Raven’s Eye Design in an effort to steal money and website login credentials from my clients.

If you received an unexpected email claiming to be from me about website maintenance, security, compliance, licensing, SEO, domain renewal or other paid work, do not send money or provide login information until you verify the message.

The easiest way to verify an email from me

For example:

hello@ravenseyedesign.com — legitimate
chad@ravenseyedesign.com — legitimate

An address ending in @gmail.com@outlook.com@yahoo.com or another domain is not me, regardless of what appears before the @ symbol.

The sender may use my real name, Raven’s Eye Design, my logo, my phone number, my business address or information about your website. None of those things authenticates the sender. They are publicly available information and can be copied.

If you are ever uncertain, do not reply to the suspicious message to ask whether it is legitimate. Start a new email to hello@ravenseyedesign.com, call me using the phone number published on this website, or use the contact form on this website.

How I bill clients

An unexpected request to pay for urgent website work through an unfamiliar payment service, online store, peer-to-peer payment account or other new payment method should immediately raise a red flag.

I do not suddenly change my billing process because your website supposedly has an emergency.

If I recommend work that requires an additional charge, you are always welcome to verify it with me directly before paying anything.

Known fraudulent addresses

The following email addresses have been used to impersonate Raven’s Eye Design. This list is not exhaustive. Scammers can create new addresses easily, so an address not appearing here should not be assumed to be legitimate.

  • chad.raveneyedesign@gmail.com
  • chad.raveneyesdesign@gmail.com
  • infowixnotificationupdates@gmail.com

Again, the safest rule is simpler than memorizing this list:

What the scammer may claim

Fraudulent messages sent to my clients have included claims about supposed:

  • Website security problems
  • WordPress or plugin updates
  • SEO problems
  • Domain issues
  • Website “compliance”
  • Template or theme licensing
  • Problems that could supposedly cause a website to be flagged, restricted or shut down
  • Maintenance or technical work requiring immediate payment

The details may change. The underlying tactic does not: create a technical-sounding problem, make it seem urgent, and use my identity and my existing relationship with the client to make the request credible.

The scammer may also include real information or screenshots from your website or from my publicly available work.

That does not mean the scammer has access to your website.

Public websites reveal a great deal of technical information to anyone who looks. Screenshots, source code, WordPress information and other publicly accessible material can be used to make a fraudulent message look authoritative.

Examples

These are examples only. Do not assume a message is safe simply because it looks different. The scam is evolving (Click to enlarge).

What to do if you receive one

Do not reply to the sender, send money, provide website credentials, approve work or use payment links contained in the message.

Please:

  1. Preserve the original email.
  2. Mark it as phishing in your email application.
  3. Forward the message to hello@ravenseyedesign.com so I can add it to the evidence I am collecting.
  4. If possible, forward the original message rather than sending only a screenshot, because the email headers contain useful technical information.
  5. If you provided website credentials, contact me immediately so we can secure the account.
  6. If you sent money, contact your bank, credit-card company or payment provider immediately and report the transaction as fraud.

Please also share this warning with anyone in your organization who pays invoices, receives website-related email or has access to your website.

Has Raven’s Eye Design been hacked?

I have found no evidence that Raven’s Eye Design, my email or my client records have been compromised.

The evidence I have seen is consistent with a broader scam affecting the web-design industry in which criminals use publicly available information to determine which designers and clients work together.

Public portfolios are particularly useful for this. A designer’s portfolio identifies a client, links to the client’s public website, and that website frequently provides the contact information necessary to reach the business.

The scammer does not need to hack anybody to do that.

Receiving one of these messages therefore does not by itself mean that your website or account has been compromised.

This is affecting other web designers, too

This is not a scam invented specifically for Raven’s Eye Design.

Other independent designers and web agencies have reported strikingly similar impersonation campaigns in 2026, and 99designs has published a warning specifically describing scammers using portfolios, social profiles and website credits to identify relationships between designers and their clients.

The platforms, invented technical problems and payment methods vary, but the basic social-engineering attack is the same: impersonate someone the victim already trusts.

I wrote more about what has happened to my clients, what I have learned while investigating it, and why this particular scam can be surprisingly convincing here:

When in doubt, contact me

If something supposedly from me seems strange, urgent or unexpected, please verify it.

You will never annoy me by asking.

Raven’s Eye Design, LLC
Chad Bush
hello@ravenseyedesign.com
520.241.5494
ravenseyedesign.com

Again: If the email address does not end in @ravenseyedesign.com, it is not from me.

Want to work together?

Yes Let’s talk
Scroll to top