Paste a link from an email, text or message. We check where it really goes, look-alike domains, the domain’s age and phishing and malware lists, without you opening it.
Our server opens the link for you, so you do not have to. No check can promise a link is safe.
How it works
Paste a link from an email, text or message. Our server opens it for you and looks for the signs of phishing.
Copy the link (right-click or long-press, then copy link) and paste it here. Do not open it first.
We read the address for tricks, follow every redirect, look at the page it ends on, check the domain’s age and look it up on threat lists.
You see a verdict and the reasons behind it, in plain words.
What we check
The more signs a link shows, the more likely it is a scam.
Brand names on someone else’s domain, swapped letters like paypa1.com, and letters from other alphabets.
Short links, an @ in the address, bare IP addresses and links inside links.
Every hop the link takes, and the site it really ends on.
Most phishing domains are only days or weeks old.
Spamhaus DBL, SURBL and URIBL, plus Google Safe Browsing when it is turned on.
Sign-in forms that use a brand name on the wrong domain, or send what you type to another site.
Stay safe
No checker can catch every new scam. These habits do.
01
Look at the part just before the first single slash: in paypal.com.secure-login.xyz/ the real domain is secure-login.xyz.
02
Messages that say your account is locked, a parcel is held or a payment failed are the most common phishing lures.
03
When in doubt, type the company’s address into your browser or use its app instead of the link.
More tools
Is a site down for everyone, or just you? Test it from 44 countries.
Check an IP or domain against 17 email blocklists.
Check a domain’s SPF, DKIM, DMARC and blocklists.
A link to a fake page made to look like a bank, shop, delivery company or email provider, so that you type in your password, card or other details. The page sends what you type to the scammer.
Not necessarily. New phishing pages appear every minute and some only show themselves to real visitors. If a message pressures you to act fast, go to the company’s site by typing its address yourself instead of using the link.
Yes. Pasting a link does not open it on your device. Our server fetches the page and only reads its address, redirects and a little of its content.
Change that password straight away, and on every other site where you used it. Turn on two-step verification. If you entered card or bank details, call your bank using the number on your card.
Phishing sites are blocked quickly, so scammers register new domains all the time. Most phishing domains are only days or weeks old, while the real sites of banks and shops are many years old.
Try it
Paste it here before you click it.
More tools: Website checker · DNS checker · IP blacklist check · Domain scanner · Mail tester