Phishing / Smishing Link Check
phishing_link_checkCheck links in a suspicious text or email before tapping them: extract URLs, follow shorteners to real destinations, and judge phishing signals like fake bank domains or APK downloads.
Instructions
Check the links in a suspicious text message (smishing) or e-mail before anyone taps them. Paste the whole message or a single URL: every link is extracted, followed through URL shorteners to its real destination, and judged on observable signals — domain age from RDAP, impersonation of Korean banks/couriers/telecoms/portals (brand keyword, lookalike spelling, or the brand domain worn as a subdomain), Android APK downloads, punycode, public phishing/malware feeds, and DechoNet's own impersonation tracking. Use this when a user asks whether a link or message is a scam. Verdicts: danger, suspicious, unreachable, official (lands on the brand's own domain), no_signals (no warning signs found — never present this as "safe"). Read-only: page bodies are never run and the message text is not stored; requires no API key; rate-limited. Returns per-link verdicts with reasons and a shareable report link.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| text | Yes | The suspicious message exactly as received (any language), or just the URL. Up to 5 links are checked. |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| links | Yes | ||
| verdict | Yes | danger | suspicious | unreachable | official | no_signals | no_links | |
| reportUrl | Yes |