Got an email that feels off? Paste it below and Phixo gives you an instant verdict — checking the sender, the links, brand impersonation and the language of the message — and tells you exactly why. Same engine as our extension.
The Phixo extension runs this same analysis automatically on every email you open in Gmail and Outlook — so you're warned before you click. Free plan: 10 checks a day, no credit card. A one-time Google or Microsoft sign-in keeps your count tied to your account.
paypa1.com), brand names on the wrong domain, and sender reputation.Honest limits: a verdict is a strong signal, not a guarantee. A convincing scam sent from a freshly registered domain can still look clean, and pasted visible text (without raw headers) can't be checked for sender authentication. Treat a high-risk result as a reason to stop; treat a low-risk result as one good sign, not proof. If you've already clicked a link, start with our guide on what to do if you clicked a phishing link, and sharpen your eye with the 8 signs of a phishing email.
No. Your email is analysed in memory and discarded the moment the verdict comes back. We keep only a one-way fingerprint and the verdict itself — never the text of your email, and nothing is used to train models.
No — pasting the visible email (subject, sender, body) works and catches most phishing. Pasting the raw source (Gmail → Show original) adds sender-authentication checks (SPF, DKIM, DMARC) on top, so it's the strongest option when you can get it.
A low-risk verdict means none of the phishing signals fired — but no checker catches everything. Treat it as one good sign, not a guarantee, especially if the email asks for money, a password, or urgent action. When in doubt, verify the sender through a channel you already trust.
This page checks one email, when you paste it. The Phixo extension runs the same checks automatically on every email you open in Gmail and Outlook, so you're warned before you click — no copying and pasting.