⚠️ Phishing Detector
Paste a suspicious email address, URL, or domain. We'll check domain age, authentication records, reputation, and known threat indicators.
Drop a suspicious .eml file to extract the sender
Or type/paste an address below
About the Phishing Detector
The phishing detector analyzes an email or URL for the tell-tale signs of a scam: deceptive links, mismatched sender domains, urgency and pressure tactics, suspicious attachments, and known malicious patterns. It gives you a quick, plain-language risk assessment so you can decide whether a message is safe.
Phishing is the starting point for the majority of successful cyberattacks and account takeovers. Attackers rely on you acting fast without checking. Running a suspicious message through an objective analysis buys you a moment to catch what a rushed glance would miss.
Paste the content or link you are unsure about to get an instant, private evaluation. When in doubt, never click — check first.
Frequently asked questions
How can I tell if an email is phishing?
Look for mismatched or lookalike sender domains, links that do not go where they claim, urgent or threatening language, unexpected attachments, and requests for passwords or payment. Any of these is a warning sign.
Is this email a scam?
If a message pressures you to act immediately, asks for credentials or money, or comes from an address that does not match the real organization, treat it as a likely scam and verify through official channels.
What should I do if I received a phishing email?
Do not click links or open attachments. Report it to your email provider or IT team, then delete it. If you already clicked, change affected passwords and enable two-factor authentication.