The full tour

Everything Sender Registry checks, in one place.

Forward one suspicious email and it is broken down into real evidence, never a black-box score. Behind that single action sits a deep investigation of the sender, the message, your own domain, and everything the network already knows. Here is the complete picture.

No account, no card. Or see the plans →

Inside a single email

Every forwarded email, taken apart.

The moment an email reaches us it is pulled apart into its real parts. Who actually sent it, whether it passes its own authentication, where its links really go, what its attachments are, and whether any of it has been seen before.

That includes going to look. We follow the links and examine the page waiting at the other end, inside our own systems rather than on your computer. If it asks for a password, we check whether that password would be sent off to a different website, and whether the page titles itself as a company it does not belong to. You can hover a link and read the domain. You cannot safely go and see what is there.

You get a plain-English verdict with three separate answers that are never merged into one: how risky the email is, how confident we are, and what the wider network has independently confirmed.

ASSESSMENT · forwarded email
⚠ HIGH RISK Do not act
Looks like a supplier invoice, but the reply address and the payment link do not match the real company.
RISK
78/100
CONFIDENCE
91%
NETWORK
CORROBORATED
EVIDENCE
Reply-To domain differs from the sender +25
Payment link redirects 3 times before its real destination +18
Reported by 2 other organisations network
Sender identity and spoofing
Authentication (SPF, DKIM, DMARC)
Domains and lookalike variants
Links and full redirect chains
Fake sign-in pages
QR code destinations
Attachments
Disposable and throwaway senders
Risky top-level domains
Unsubscribe risk
Conversation-hijack detection
Confirmed fraud payees
Mail type and suspected spam
Cold outreach
Protect your own domain

Not just the mail arriving at you. The mail going out as you.

Most email security only looks at what lands in your inbox. Sender Registry also watches the other direction: whether someone can forge your domain, whether a lookalike of it has been registered, and whether a supplier you trust has been taken over.

You get a plain grade for your own domain with the exact fix, continuous monitoring of who is sending as you, and a verified public record so anyone can confirm a genuine email really came from you. You can also publish a checking address your own customers forward suspicious email to, so you hear about a fake in your name from the people who received it. See how that works.

DOMAIN GRADE · yourcompany.com
B
71 / 100
Good, with room to improve
SPF Pass
DMARC p=none
Move DMARC to p=quarantine to stop anyone forging your domain. We give you the exact record.
Domain Security Grade (A to F)
DMARC Monitoring
Verified Sender
Checking address for your customers
Impersonation Radar
Compromised-supplier detection
The network effect

One person spots it. The whole network remembers it.

A free checker looks at one email in isolation. Sender Registry checks every email against everything the network has already seen. A sender first reported months ago is recognised instantly. A new campaign is matched back to older reports that suddenly make sense.

Every report makes the next verdict sharper, for everyone. This is the part a standalone tool can never copy, and it is why a verdict here carries a separate rating for how far the network has independently confirmed it.

NETWORK CONFIRMATION
UNSEEN
OBSERVED
CORROBORATED
NETWORK CONFIRMED
VERIFIED
First seen 27 June. Moved earlier when 3 older reports were matched back to this campaign.
Network confirmation
Retrospective intelligence
Campaign intelligence and naming
Ask the Network
Repeat-offender tracking

Free tools anyone can use.

No account, no card. Use them on their own, or as a way into the full product.

Wider reach, built in.

National reporting

With your consent, a genuine threat is forwarded on to the appropriate national cyber-reporting service on your behalf.

Gateway Blocklist

A live feed of network-confirmed bad senders your email gateway can consume directly, so a known threat is stopped before it arrives.

Signals API · developers

Real-time disposable, malicious and spoofability checks for developers to build into their own signup and checkout flows.

Common questions

Straight answers to what people ask most.

What does Sender Registry actually check in an email?

The sender identity and whether the message passes its own authentication, every link followed through its full redirect chain, QR code destinations, attachment types and fingerprints, whether the domain is a lookalike of one you trust, and everything the wider network already knows about it. You get a plain verdict, not a black-box score.

Do I need an account to use it?

No. Forward a suspicious email to the reporting address, or use the free public tools, with no account and no card. The business monitoring features and deeper history are the paid tiers.

How is this different from my spam filter?

A spam filter guesses whether a message is unwanted and hides it. Sender Registry investigates a specific email you are unsure about and hands back real evidence and a plain verdict, including the fraud a spam filter waves through because it is well written and comes from a clean domain.

Does it protect my own domain too?

Yes. It grades your domain from A to F with the exact fix, monitors your DMARC reports, watches for lookalikes of your brand, and lets you publish a verified record so people can confirm a genuine email from you.

What makes the verdict trustworthy?

Three separate answers that are never merged: how risky the email is, how confident we are, and what the network has independently confirmed. Not previously seen is never presented as safe.

See it on your own email.

Forward a suspicious email to the address below and get a plain-English verdict back. No account, no card.

Or see the plans →