Quick answer
Legitimate websites use HTTPS, have verifiable domain histories, and match the brand they claim to represent. The strongest red flag is a domain that looks like a real brand but is subtly different — one letter off, an extra word, or a different TLD.
What Our Tool Checks
Domain name vs. the brand it claims to be
HTTPS vs. HTTP
Domain age and registration patterns
Brand name consistency across the site
Presence of contact information, returns policy, and verifiable address
Common Warning Signs
Domain registered in the past few weeks
No contact page, or contact page lists only a form
Prices significantly below market rate
Poor grammar or inconsistent branding throughout the site
No returns, refund, or privacy policy
What Not to Submit
To protect your privacy, never paste these into any tool — and never submit passwords, OTPs, card numbers, bank logins, or private IDs.
Payment details on unverified sites
Login credentials for real accounts
Your government ID or passport scan
What to Do If Something Looks Suspicious
Search the brand name + 'review' or 'scam' before purchasing
Check domain age at whois.domaintools.com
Use Google Safe Browsing (google.com/safebrowsing/report_phish) to report fakes
If you already paid — contact your card issuer about a chargeback