PhishGuard is a lightweight Flask web application that analyzes URLs for common phishing indicators without automatically visiting the destination.
git clone https://github.com/btwsalts/phishguard.git
cd phishguard
python3 -m venv .venv
source .venv/bin/activate
pip install -r requirements.txt
python3 app.py
Open http://127.0.0.1:5000.
The analyzer parses the URL locally and checks structural characteristics. Each indicator contributes a small heuristic weight to the final score.
http://192.0.2.10/login/verify
may trigger multiple indicators such as:
The result is presented as LOW, MEDIUM, or HIGH risk.
PhishGuard is an educational heuristic analyzer. A risk score does not prove that a URL is malicious or safe. It does not crawl pages, submit credentials, bypass protections, or automatically interact with destinations.
Only analyze URLs in contexts where you are authorized to do so. Treat suspicious links as untrusted and do not enter credentials into unknown websites.
Built by btwsalts as a cybersecurity and software-engineering learning project.