Thirteen small tools we use ourselves and have opened to everyone. No sign-up, no tracking. Files and passwords are processed in your browser and never uploaded; links and addresses are checked against open threat data.
For everyone. Most fraud starts with a link, a QR code or an attachment.
Passwords, breaches and what your connection reveals.
Checks we run during engagements, made self-service.
Small utilities we kept rewriting, so we published them.
Every week someone in our network — a student, a parent, an administrator at a college we work with — forwards us a message and asks “is this real?”. Usually it takes us two minutes and the same handful of checks. These pages are those checks, written down and automated, so you can run them yourself at 11 pm without waiting for a reply.
They are deliberately simple. A tool here will tell you what it found and why it matters; it will not pretend to certainty it does not have. When a check says “no red flags”, read it as “nothing we test for”, not “safe”.
Known limits: the breach-exposure search needs an API key we are still arranging; VirusTotal and AbuseIPDB rows show “Not enabled” until keys are added; the QR decoder needs a reasonably sharp photo.
Built and maintained by the Arventiq Labs team in Bengaluru. Free for anyone, source on GitHub (MIT). Results are indications, not verdicts. Something wrong? Tell us.