Heuristic analysis of a URL for phishing and malware signals: raw IPs, punycode homographs, suspicious TLDs, URL shorteners, embedded credentials, and more. Runs entirely in your browser.
Paste any link — we never fetch it, just analyze the text
Traffic to this URL is sent unencrypted. Avoid entering credentials.
This TLD is frequently abused for spam, phishing, and malware distribution.
‘login’ in URL — verify the domain is legitimate before entering credentials
‘verify’ in URL — common phishing lure
‘account’ in URL — confirm the domain matches the brand
Heuristic, not a verdict
This tool checks the URL text only — it does not visit the page or check reputation databases. A high score does not guarantee safety; a low score may flag legitimate URLs (e.g. internal IP-based admin panels). Always apply judgment.