Message analysis
SMS, WhatsApp, email. Every phrase that applies pressure or asks for something sensitive is pulled out as evidence.
SCAMSHIELD / THREAT ANALYSIS
Paste a suspicious message or link. ScamShield breaks down the threat before you act — the score, the evidence behind it, and what to do next.
Have a screenshot? Use the full analyzerPNG, JPEG or WebP · up to 3 MB
THREE WAYS IN
The obvious tells are gone. Modern scams copy the exact tone and branding of organisations you already trust. So ScamShield looks past the surface to what the message is actually asking you to do.
SMS, WhatsApp, email. Every phrase that applies pressure or asks for something sensitive is pulled out as evidence.
Links are taken apart as text — never opened — to expose lookalike domains, buried subdomains and login-shaped paths.
Upload a screenshot of a chat or email. The text is read from the image, then scored by the same engine as a pasted message.
PNG, JPEG or WebP · up to 3 MB
TRY IT HERE
Edit the message and see ScamShield’s pattern checks respond as you type. These are the real rules the server runs first — running right here in your browser.
This is the deterministic layer only. The full analysis adds AI reasoning, an attack path and specific next steps.
HOW IT WORKS
You end up with more than a verdict — you end up understanding the message, which is what helps the next time one arrives.
Paste
Drop in a suspicious message, a link, or a screenshot. Nothing is stored unless you choose to save it.
Analyze
A deterministic security engine checks the structure, then AI reads the intent behind the words.
Understand
A risk score, the exact phrases that triggered it, and the attack path they lead to.
Act
Clear, specific next steps for that kind of scam — not a generic warning to be careful.
UNDER THE HOOD
An AI asked “is this a scam?” will answer confidently either way, and you have no way to check it. So the deterministic engine runs first and runs always. If the AI layer is unavailable, ScamShield still produces a complete report from pattern analysis alone — and tells you so.
User input
Message, URL or screenshot. Validated and size-limited before anything runs.
Deterministic security engine
Pattern rules and URL structure analysis. No AI involved, and it runs on every request.
AI analysis
Gemini reads intent and pressure. Submitted content is fenced as untrusted data, never obeyed as instructions.
Risk engine
Both scores are deduplicated, weighted and combined into one auditable number.
Structured threat report
Score, evidence, attack path and contextual actions — every claim traceable to a detected signal.
WHAT SCAMSHIELD DETECTS
Scams vary enormously in story and almost not at all in structure. These four mechanics carry most of them.
Deadlines, threats and countdowns exist to stop you checking with anyone else. A real organisation will let you call them back.
"Your account will be blocked today"
We compare the brand a message claims against the domain it actually links to, and flag the gap between them.
Says SBI → links to sbi-secure-login.example
URLs are parsed as text: raw IP hosts, punycode, buried subdomains, shorteners, login-shaped paths. Never opened.
verify.account.secure.xyz/login
Requests for passwords, OTPs, card details or a UPI PIN. An incoming payment never needs your PIN.
"Enter your UPI PIN to receive ₹5,000"
Turn a suspicious message into a clear answer in seconds.