Is this link spelled with the letters it appears to be?
Scam links swap in look-alike characters from other alphabets: a Cyrillic а for a Latin a, and the address reads as the real one. Paste a link and every character gets checked.
Nothing you paste leaves this page. The check runs entirely in your browser. There is no server to send it to, no account, no cookies, no analytics, and the page makes no network requests once it has loaded. It works offline.
What it looks for: alphabets mixed inside one name, whole names written in look-alike letters, accented stand-ins, invisible characters, punycode (xn--) names, and the two oldest tricks: a real brand parked before an @ or stacked in front of someone else's domain.
Where the list comes from: the look-alike characters are the Unicode Consortium's own published list (), built into this page, with a few extra near-misses scammers are known to use. Whose site a name belongs to is worked out with the Public Suffix List (), also built in. Unicode data © Unicode, Inc., used under the Unicode License; Public Suffix List © Mozilla, MPL 2.0.
What it cannot tell you: whether a correctly spelled site is honest. A clean result means the address is what it looks like, nothing more.