postbox-tools
Free email checks: 24 blacklists, spoofing/BEC grade, redirect tracing, email spam test, WHOIS.
- 0.1.1
- Version
- remote
- Transport
- 8
- Tools
Security review
Review passedReviewed Jan 1, 2000.
- tools: 8 tools scanned
- metadata: scanned
No findings.
Tools (8)
check_blacklist
Check a domain against domain blacklists (Spamhaus DBL, SURBL, URIBL and others), or an IP address against 24 IP blacklists including Spamhaus ZEN, Barracuda and SpamCop. Checks the exact target given: domains are not resolved to IPs. Returns per-list listing status.
check_spoofability
Grade how exposed a domain is to email spoofing and business email compromise, from its public DNS (SPF, DMARC policy strength, alignment, live lookalike domains). Returns an A-F grade with findings.
trace_redirect
Follow a URL server-side through every HTTP redirect hop to its real final destination - per-hop status, IP, TLS and timing, plus phishing/deliverability flags (cross-domain jumps, https downgrades, meta/JS redirects). Fetching is SSRF-hardened (private ranges blocked, HTTPS-only, per-hop validation); how it works: https://redirect.postboxservices.com/
create_mailtest
Create a disposable test address for a full email deliverability audit (score /10: SPF, DKIM, DMARC + alignment, blacklists, reverse DNS, SpamAssassin content, Gmail/Yahoo bulk-sender compliance). The USER must then send an email from the system they want to test to the returned address, after which get_mailtest_result returns the score.
get_mailtest_result
Fetch the score and breakdown of a mail test created with create_mailtest, once the user has sent their email to the disposable address.
analyze_eml
Run a deliverability/content analysis on a raw RFC 822 email (.eml source: full headers + body). IMPORTANT LIMITS: with no live SMTP session, SPF, blacklist and reverse-DNS cannot be verified from a file - for the authoritative score use create_mailtest instead.
get_domain_age
Get a domain's registration date and age (young domains have weak sending reputation).
whois_lookup
WHOIS summary for a domain: registrar, created/updated/expires dates, nameservers, DNSSEC, status flags.