CertiLens — Phishing & Site Safety Checker

Real-time phishing detection with Certificate Transparency, header auditing, and DOM heuristics.

As of June 2026, CertiLens — Phishing & Site Safety Checker has 6 users and a 5.00/5 rating from 1 reviews in the Privacy & Security category.

Usersno change0%
6
6
Ratingno change0%
5.00
1 reviews
Reviewsno change0%
1
Version
2.1.0
Manifest V3

History

6 snapshots

Tracking since May 1, 2026.

8.45.52.5999999999999996May 1, 2026Jun 6, 2026
View as table
DateUsersRatingReviewsVersion
May 1, 20262.1.0
May 7, 20262.1.0
May 12, 202635.0012.1.0
May 18, 202655.0012.1.0
May 31, 202675.0012.1.0
Jun 6, 202685.0012.1.0
Now65.0012.1.0

Permissions & access

Permissions
activeTabstoragetabsdownloads
Host access
<all_urls>

Screenshots

CertiLens — Phishing & Site Safety Checker screenshot 1CertiLens — Phishing & Site Safety Checker screenshot 2CertiLens — Phishing & Site Safety Checker screenshot 3CertiLens — Phishing & Site Safety Checker screenshot 4CertiLens — Phishing & Site Safety Checker screenshot 5CertiLens — Phishing & Site Safety Checker screenshot 6

About

Real-time phishing detection that goes beyond the blocklist.

🛡️ CertiLens – Know If a Site Is Safe Before You Trust It

CertiLens analyzes websites the moment you visit them using six independent security engines — giving you a clear risk score in seconds, even for brand-new phishing sites that no blocklist has seen yet.

What CertiLens checks:
🔍 Certificate Transparency – Detects SSL certificates less than 30 days old. Phishing sites can't fake a certificate history they don't have.
📅 Domain Age – Most phishing domains are registered less than 90 days before they're used. CertiLens checks via RDAP, the structured standard built to replace WHOIS.
📋 Security Headers – Audits for CSP, HSTS, X-Frame-Options, and more. Real sites have them. Phishing pages almost never do.
✉️ Email Authentication – Missing SPF and DMARC records mean the domain can be spoofed in phishing emails sent to your contacts.
🌐 Threat Intelligence – Cross-references against URLScan.io's public database of flagged malicious sites.
🔤 Homograph Detection – Catches lookalike attacks offline: mixed Cyrillic and Latin scripts, punycode domains, and digit swaps like paypa1 vs paypal.

All six engines run at the same time. Total scan time: about 6 seconds.

🔒 Privacy first: CertiLens never collects, stores, or transmits personal data. Only the domain name is used for analysis. Everything else stays in your browser.

Built by a high school cybersecurity developer holding CompTIA Security+, Network+, and ITF+ certifications. Free and open source under GPL v3.

Source code: github.com/JalenTechHub/CertiLens

Technical

Version
2.1.0
Manifest
V3
Size
44.63KiB
Min Chrome
88
Languages
1
Featured
No

Metadata

ID
gfpmhgmpjefpkjgmiheafciplajjccbb
Developer ID
u0b0bca9ac55edc2c1bde8b215f7e4208
Developer Email
[email protected]
Created
Apr 30, 2026
Last Updated (Store)
May 1, 2026
Last Scraped
Jun 6, 2026

Data sourced from the Chrome Web Store · last verified Jun 6, 2026.