Email Safety Checker
Upload an .eml file or paste raw email source to check sender identities, authentication results, links, attachments, and phishing warning signs.
Upload an .eml file or paste the raw email source. WhateverTools checks sender identities, reported SPF/DKIM/DMARC results, links, attachments, and common phishing warning signs entirely in your browser.
No strong warning signs found
This does not guarantee the message is safe. Review the evidence below before trusting the sender or clicking anything.
These are verdicts recorded in the email by the receiving mail system. WhateverTools does not re-run DNS checks or cryptographically re-verify DKIM.
SHOW TECHNICAL DETAILS
No technical details parsed yet.
PRIVACY NOTE: The email is read and analyzed entirely in this browser. WhateverTools does not upload or save the .eml file, message body, headers, links, or attachments. The checker is a risk assessment, not a guarantee that a message is safe.
What should I do if an email looks suspicious?
Do not click its links or open unexpected attachments. Verify the request using a phone number, website, or contact method you already trust. A passing SPF, DKIM, or DMARC result means the message authenticated as a domain; it does not prove that the message itself is harmless or that the sender's account was not compromised.