Instant threat intelligence powered by 12+ detection signals. Zero data retained. Free for personal use.
No account required. No data leaves your browser on the free tier.
Paste any URL or drag a QR code image. Supports all major image formats.
Domain reputation, TLD risk, entropy, shorteners, brand impersonation, phishing keywords and more.
Every signal contributes a weighted score. Results are colour-coded: Safe, Suspicious, High Risk, Critical.
Plain-English recommendation. Zero jargon. Know exactly what to do next.
Covering the most common attack vectors used in QR and URL-based phishing.
Detects typosquats and lookalike domains targeting 30+ major brands including Google, Apple, PayPal, and banks.
Flags URLs using redirect parameters (url=, next=, goto=) that mask the real destination.
Catches javascript: and data: URIs that can execute code directly in the browser.
Identifies 18+ shortening services (bit.ly, tinyurl, t.co…) that hide the real destination URL.
Flags algorithmically generated domains using entropy analysis and excessive domain length heuristics.
15 abused TLDs flagged: .tk, .ml, .ga, .cf, .gq, .xyz, .top and more commonly used in phishing campaigns.
Start free. Upgrade when you need history, API access, or team features.