ScanTraceQR
Free redirect checker

Where does this link actually go?

Paste any shortened, forwarded or unfamiliar link and we'll trace the full redirect chain on our server — hop by hop — so you can see the real final destination before your browser ever visits it.

We fetch each hop from our server — your browser never opens the link.

What this is for

See before you click

Shortened and forwarded links hide their real destination on purpose — that's useful for legitimate marketing links, and exactly what makes them a favorite tool for phishing. A link that reads "bit.ly/invoice-2024" could land you on your bank's real login page, or on a lookalike built to steal your password. The only way to know is to see where it actually leads.

This tool follows the full redirect chain — every 3xx hop, in order — on our server, and shows you each intermediate URL plus the final page, without your browser ever loading any of them. If a chain quietly drops from https:// to http://, or ends somewhere unrelated to what the link claimed to be, that's worth noticing before you tap "allow" on anything.

Worried about a QR code instead of a text link? The same reasoning applies — read our guide on spotting malicious QR codes. And if you've found a link that's actively being used to phish or deceive people, report it — we review every report.

Behind the scenes

Why this is safe to run on a suspicious link

Every hop is resolved to an IP address and checked before we connect to it. If a link — or any redirect inside its chain — points at a private, internal or otherwise non-public address, we refuse to fetch it and tell you so plainly, rather than silently failing or, worse, letting a malicious link trick our server into probing an internal network on your behalf.

We also cap checks at 20 per hour per session, use a short timeout per hop, and never download more than the response headers we need. None of this requires an account.

Prefer transparent links?

Build links people can trust

If you're the one sharing links, the best defense against your audience being suspicious of them is transparency. ScanTraceQR's own link tracker and QR code generator give you click analytics on links you own and control — no disguised destinations, no surprise redirects.

Not sure yet what you need? Compare tools on our alternatives page, or create a free account to get started.

FAQ

Redirect checker questions

Is this safe to use on a suspicious or shortened link?

Yes. The check happens entirely on our server — your browser never visits the link. We resolve and fetch each hop ourselves and only show you the results.

Why was my check blocked?

If a link (or one of the redirects it leads to) resolves to a private or internal address — like a router, a localhost address, or an internal company server — we refuse to fetch it. That protection exists so this tool can't be abused to probe internal networks; it's not a sign your link is dangerous.

Is there a limit on how many links I can check?

Yes, 20 checks per hour per session to keep the tool available for everyone. If you hit the limit, wait a bit and try again.

What does "downgraded to HTTP" mean?

It means somewhere in the chain a secure https:// link redirected to a plain, unencrypted http:// page. That's a real warning sign — traffic on that hop can be read or tampered with in transit.

Does this tell me if the destination is malicious?

No — it shows you exactly where a link leads and every hop along the way, so you can judge for yourself before clicking. It doesn't scan the destination page for malware. If you spot something malicious, you can report it.

Why does the final URL matter more than the one I pasted?

Shortened and tracking links are designed to hide their real destination. Phishing pages especially rely on you never seeing the actual domain until it's too late — this tool surfaces it up front.