phishguard

🛡️ PhishGuard

Defensive URL Analysis · Phishing Indicators · Web Security

PhishGuard is a lightweight Flask web application that analyzes URLs for common phishing indicators without automatically visiting the destination.

Features

Tech Stack

Run Locally

git clone https://github.com/btwsalts/phishguard.git
cd phishguard
python3 -m venv .venv
source .venv/bin/activate
pip install -r requirements.txt
python3 app.py

Open http://127.0.0.1:5000.

How It Works

The analyzer parses the URL locally and checks structural characteristics. Each indicator contributes a small heuristic weight to the final score.

Example

http://192.0.2.10/login/verify

may trigger multiple indicators such as:

The result is presented as LOW, MEDIUM, or HIGH risk.

Important Limitations

PhishGuard is an educational heuristic analyzer. A risk score does not prove that a URL is malicious or safe. It does not crawl pages, submit credentials, bypass protections, or automatically interact with destinations.

Roadmap

Security Note

Only analyze URLs in contexts where you are authorized to do so. Treat suspicious links as untrusted and do not enter credentials into unknown websites.

Author

Built by btwsalts as a cybersecurity and software-engineering learning project.