83trust / 100
Check
by URL Safety in Security & trust
x402 APIPassing, checked 3 h ago
Score a URL for phishing risk before an agent opens or trusts it. Keyless, deterministic heuristics - typosquat / homoglyph of a known brand, punycode / mixed-script hosts, credentials-in-URL, raw-IP hosts, suspicious TLDs, over-deep subdomains - plus a best-effort domain-age check (young domains are a top phishing signal). Returns a 0-100 risk score, a SAFE / SUSPICIOUS / DANGEROUS verdict, and labelled reasons. No API keys, no LLM.
GET https://safe.cyberwarex.com/check
Last 30 days
All checks passedSome failedAll failedNot checked
- Uptime
- 100%
- Response time
- 258 ms typical, 258 ms slowest 5%
- Last check
- 3 h ago
- Next check
- any minute now
How to call it
# See the payment challenge (nothing is charged)
curl -i -X GET "https://safe.cyberwarex.com/check?url=https%3A%2F%2Fcoinbase.com.secure-login.xyz%2Fverify"import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { ExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";
const client = new x402Client().register(
"eip155:8453",
new ExactEvmScheme(privateKeyToAccount(process.env.AGENT_KEY)),
);
const pay = wrapFetchWithPayment(fetch, client);
// Not sure it's safe to pay? Preflight it first for $0.03:
// GET https://toolvet.app/api/v1/check?url=https%3A%2F%2Fsafe.cyberwarex.com%2Fcheck
const res = await pay("https://safe.cyberwarex.com/check?url=https%3A%2F%2Fcoinbase.com.secure-login.xyz%2Fverify");
console.log(await res.json());Example input
{
"url": "https://coinbase.com.secure-login.xyz/verify"
}Example output
{
"domain_age_days": 4,
"host": "coinbase.com.secure-login.xyz",
"labels": [
"brand_impersonation",
"suspicious_tld"
],
"reasons": [
"'coinbase' appears in the host but the domain is secure-login.xyz, not coinbase.com"
],
"registrable_domain": "secure-login.xyz",
"risk_score": 80,
"source": "heuristics + RDAP",
"url": "https://coinbase.com.secure-login.xyz/verify",
"verdict": "DANGEROUS"
}Security scan
- No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.
Recent checks
| When | Result | HTTP | Time | Price |
|---|---|---|---|---|
| 3 h ago | Passed | 402 | 258 ms | $0.003 |