About
Parses Received hops and common auth headers locally so you can see how a message reached the inbox.
How to use
Copy the full raw headers from your mail client. Do not paste the body alone.
What this tool checks
Extracts the Received chain and common auth headers. It answers which servers the message passed through.
How to read the results
Read Received from the bottom for the newest hop. Missing SPF/DKIM does not automatically mean forgery; it means this paste did not include them.
Limits and data handling
Local parsing only. Avoid pasting unnecessary body or attachments with the headers.
FAQ
Is the data uploaded?
No. Parsing stays in the browser.
Why is there no Received?
You may have copied subject and body only. You need the full source or “show original”.
Can it decide if this is phishing?
It can show the path and auth fields, but you still judge the sending domain and links. The tool does not auto-convict.
Related tools
- Email tools
- Gmail Address Check
Paste @gmail.com addresses (up to 10 per run).
- Outlook Authorized Mail Read
Format: email|refresh_token|client_id.
- SMTP Short Connection Test
Check the SMTP banner, STARTTLS, and connectivity.
- Domain MX Record Lookup
View a domain’s mail exchanger records.
- Domain DNS Record Lookup
Look up A / AAAA / CNAME / MX / TXT / NS.