About this tool
Compare a contact from a message with an independently obtained official reference, locally and without claiming live registration or authenticity.
The Official Contact Verifier compares a contact detail taken from a message against a reference you looked up independently, and returns one of five verdicts: exact match, letter-case difference, related hostname, same origin with a different address, or simply different. Before comparing it strips zero-width and bidirectional Unicode characters — the invisible marks used to disguise a lookalike address — and flags any hostname using punycode (an xn-- label), which is how homograph domains are built. It handles hostnames, full URLs, email addresses, phone numbers and account handles, entirely in your browser: a string match is evidence the two values agree, not proof that the message or its sender is genuine.
Open Official Contact Verifier on AltFTool — it loads instantly in your browser.
Choose the Contact type — Website hostname, Complete web address, Email address, Phone number or Account handle.
Fill 'Independently obtained official reference' and 'Contact from the message', tick 'I obtained the reference independently', then press Compare locally.
Read the verdict, from 'Entered values match' through 'Related hostname, not exact' to 'Entered values differ', and use Download value-free report to save official-contact-comparison.json.
Zero-width and bidirectional Unicode marks are stripped before comparison and reported, so a padded lookalike cannot pass as identical.
A subdomain relationship, a case-only difference and a same-origin path change each get their own verdict instead of collapsing into a vague warning.
The comparison is gated behind an explicit confirmation that the reference was not copied from the message being checked — the failure mode that makes most manual checks worthless.
No. A match means only that the two strings you entered agree under the tool's normalization rules. It does not query any official directory, verify who owns the domain or number, detect a compromised account, or establish that the message is authentic. Always initiate contact yourself through a source you already trust.
Compare the ASCII hostname character by character, and treat any label beginning with xn-- as a warning sign — that prefix marks a punycode-encoded internationalized domain, which is how Cyrillic or Greek letters are used to imitate Latin ones. The tool flags punycode hostnames explicitly and also removes hidden zero-width characters before matching.
Because comparing a message's contact against a number printed in the same message proves nothing — a scam supplies both. The comparison stays locked until you tick the confirmation that the reference did not come from the message, caller, QR code, popup or link under scrutiny.
Five: a bare hostname, a complete http or https URL, one email address, a phone number of 7 to 15 digits with an optional leading + country code (spaces, dashes, dots and brackets are ignored), and an account handle with or without a leading @. Each input is capped at 2,000 characters.