Not sure if an email is a scam? Forward it. We'll tell you.
Forward any suspicious email to Vaxif. We analyse the links, attachments, and sender, then reply with a phishing risk score and exactly what to do next.
check@vaxif.comFree plan includedNo credit card to start
Your account has been locked
We detected unusual activity. Verify your details within 24 hours or your account will be permanently suspended.
- Look-alike domain
paypa1.com - Dangerous attachment
invoice.pdf.exe - Failed SPF · DKIM · DMARC
sender spoofed
How it works
From suspicious to sure in three steps
- 1
Forward
Spotted a sketchy email? Forward it to your Vaxif address from a verified inbox.
- 2
We analyse
Our engine inspects every link, attachment, and header against dozens of phishing signals.
- 3
Get your report
You get a reply within seconds: a risk score, what we found, and clear steps to stay safe.
What we detect
Dozens of phishing signals, checked for you
Spoofed senders
Catches display-name spoofing, look-alike domains, and SPF/DKIM/DMARC failures.
Look-alike & IDN domains
Detects typosquats like paypa1.com and homograph attacks using look-alike characters.
Deceptive links
Flags URL shorteners, mismatched link text, raw-IP URLs, and credential-stealing pages.
Dangerous attachments
Identifies executables, macro documents, and double-extension files like invoice.pdf.exe.
Known threats
Cross-checks links against Google Safe Browsing's malware and phishing lists.
Urgency & credential bait
Recognises 'verify your account' pressure tactics designed to make you act fast.
The report
A clear verdict — and what to do about it
Every analysis comes back in plain language. No jargon, no dashboards to dig through — just a score, the reasons, and the next step.
- Phishing probability from 0–100%
- Every red flag we found, explained
- Tailored remediation steps
Subject: “Your account has been locked”
What we found
- Link domain "paypa1.com" closely resembles PayPal's real domain.
- Link text shows "paypal.com" but points to "paypa1.com".
- Attachment "invoice.pdf.exe" has a dangerous file type.
- Sender failed SPF, DKIM, and DMARC authentication.
Why Vaxif
Guesswork vs. a real verdict
Pricing
Start free. Upgrade when you need more checks.
Free
Free
5 analyses / month
- 1 email account
- 5 analyses / month
- Link & header checks
Basic
$9.00/mo
50 analyses / month
- 1 email account
- 50 analyses / month
- Instant processing
Pro
$19.00/mo
500 analyses / month
- 5 email accounts
- 500 analyses / month
- Instant processing
Premium
$29.00/mo
Unlimited analyses
- 20 email accounts
- Unlimited analyses
- Instant processing
FAQ
Questions, answered
How do I get a phishing email checked?
Forward the suspicious email to your Vaxif address from an inbox you've registered and verified. Within seconds you'll get a reply with the verdict.
How fast is it?
Most analyses complete in a few seconds. Paid plans are processed instantly; the free plan may be queued briefly at busy times.
Is it safe to forward a phishing email to you?
Yes. We never open links or run attachments — we inspect them statically in a sandbox. We analyse metadata and signals, and we don't keep the raw message content after analysis.
What about my privacy?
We store the analysis result and signals, not the raw email body or attachment bytes. The forwarded payload is discarded once the check is done.
What does the free plan include?
Five analyses per month, one verified email account, and our core link and header checks — enough to try the service and catch the obvious scams.
Can I cancel anytime?
Yes. Manage or cancel your subscription from the billing page at any time; you'll keep access until the end of the period.
Stop guessing whether an email is safe
Get a second opinion on any suspicious email in seconds. Start on the free plan today.
Start free- Links never opened
- Raw content discarded
- Replies in seconds