Skip to content

Testing your integration

For you to validate that your Phisherman integration is working, we provide a selection of URLs you can use for functional testing, these will trigger as a real phish would.

NOTE

Please use only the URLs listed below for testing, never live/known phishing sites

The following URLs can be used for testing:

URLStatus
https://suspicious.test.phisherman.ggTriggers as a suspicious site
https://verified.test.phisherman.ggTriggers as a verified, malicious site
https://unknown.test.phisherman.ggTriggers as an unknown site

Expected Responses

Below are the expected responses when using the v2 Check Domain v2 endpoint.

suspicious.test.phisherman.gg

HTTP Code:

200

Body:

json
{
    "classification": "suspicious",
    "verifiedPhish": false
}
verified.test.phisherman.gg

HTTP Code:

200

Body:

json
{
    "classification": "malicious",
    "verifiedPhish": true
}
unknown.test.phisherman.gg

HTTP Code:

200

Body:

json
{
    "classification": "unknown",
    "verifiedPhish": false
}