Paste a suspicious email or text below. It's checked against the same red flags covered in your training modules — links, urgency language, sender mismatches, impersonated coworkers — with plain-language reasoning for every flag.
Message
Lets the tool read the receiving server's own SPF/DKIM/DMARC verdict and check for a spoofed Return-Path — the most reliable spoofing signals available.
🔒
Everything runs in your browser except two lookups (domain SPF/DMARC records, and a coworker name match against your own company's roster) — no message content ever leaves your browser.
Triage result
Awaiting input —
paste a message and run triage to see findings here.
paste a message and run triage to see findings here.