Overview
Real-time phishing detection with Certificate Transparency, header auditing, and DOM heuristics.
Real-time phishing detection that goes beyond the blocklist. š”ļø CertiLens ā Know If a Site Is Safe Before You Trust It CertiLens analyzes websites the moment you visit them using six independent security engines ā giving you a clear risk score in seconds, even for brand-new phishing sites that no blocklist has seen yet. What CertiLens checks: š Certificate Transparency ā Detects SSL certificates less than 30 days old. Phishing sites can't fake a certificate history they don't have. š Domain Age ā Most phishing domains are registered less than 90 days before they're used. CertiLens checks via RDAP, the structured standard built to replace WHOIS. š Security Headers ā Audits for CSP, HSTS, X-Frame-Options, and more. Real sites have them. Phishing pages almost never do. āļø Email Authentication ā Missing SPF and DMARC records mean the domain can be spoofed in phishing emails sent to your contacts. š Threat Intelligence ā Cross-references against URLScan.io's public database of flagged malicious sites. š¤ Homograph Detection ā Catches lookalike attacks offline: mixed Cyrillic and Latin scripts, punycode domains, and digit swaps like paypa1 vs paypal. All six engines run at the same time. Total scan time: about 6 seconds. š Privacy first: CertiLens never collects, stores, or transmits personal data. Only the domain name is used for analysis. Everything else stays in your browser. Built by a high school cybersecurity developer holding CompTIA Security+, Network+, and ITF+ certifications. Free and open source under GPL v3. Source code: github.com/JalenTechHub/CertiLens
Details
- Version2.1.0
- UpdatedMay 1, 2026
- Size44.63KiB
- LanguagesEnglish
- DeveloperWebsite
Email
jalenjosephmail@gmail.com - Non-traderThis developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.
Privacy
This developer declares that your data is
- Not being sold to third parties, outside of the approved use cases
- Not being used or transferred for purposes that are unrelated to the item's core functionality
- Not being used or transferred to determine creditworthiness or for lending purposes