- Live
NextAct
Verify before you act.
A decision-support tool for the moment before you click, pay or share a code. It turns a suspicious message, link, document or payment request into claims, evidence, contradictions, unknowns, a risk level and the safest next step.
- Next.js
- TypeScript
- pnpm monorepo
- Zod
- Drizzle
- Vitest
- Manifest V3
- 1Claims
- 2Evidence
- 3Contradictions
- 4Unknowns
- 5Risk
- 6Safest next step
A result never says “safe”. The strongest one says no material risk was observed, and shows which facts were verified.
- Case-submission and browser-extension APIs
- Workspace-scoped database access
- SSRF-controlled URL, DNS and TLS evidence collection
- Adversarial API tests and GitHub Actions checks
- Docker and Compose configuration
- AI adapter interfaces with redaction and output validation
- Next.js App Router web app with versioned API handlers
- Deterministic analyzers for URLs, text, email, DNS, RDAP and TLS
- Versioned risk engine. The AI layer can explain but never sets the risk level
- Shared Zod contracts across API, engine and AI layer
- Chrome and Edge extension (Manifest V3) that checks a page on an explicit click
- Public check is live at nextact.tech
- Production smoke suite: 133 of 133 checks passing (recorded 28 Sep 2026)
- Detection quality has not yet been independently validated
