Scan URLs for Security Threats with urlscan.io & GPT-4o mini

Automates URL threat scanning via webhook using urlscan.io, AI-powered analysis with GPT-4o mini for risk scoring and verdict, and Gmail alerts with results, screenshots, and links.

n8n
Scan URLs for Security Threats with urlscan.io & GPT-4o mini

This n8n workflow provides an automated security scanning solution for URLs. It starts with a webhook that accepts a POST payload containing a URL (e.g., { "url": "https://example.com" }). The workflow submits the URL to urlscan.io API, which performs a scan and returns a scan ID and initial JSON data. A 30-second wait node allows time for urlscan.io to generate full artifacts like screenshots and reports.

Next, GPT-4o mini (via OpenAI) analyzes the scan results, classifying the URL as malicious, suspicious, or benign. It assigns a 1-10 risk score and generates a concise two-sentence summary. Finally, a Gmail node sends a detailed alert email including the original URL, scan ID, AI verdict, risk score, screenshot link, full report link, and raw JSON for review.

Benefits include rapid threat detection without manual intervention, reducing phishing risks, and scalable integration into apps, email filters, or chatbots. Use cases: protect teams from malicious links in emails/chats, pre-scan user-submitted URLs in web apps, or automate compliance checks for shared links. Setup takes ~5 minutes with API keys for urlscan.io, OpenAI, and Gmail.

$16.99
Last updated October 3, 2026
30-day money-back guarantee
Instant download
Lifetime updates included

New buyers can create an account from the cart to unlock a controlled $10 first-purchase credit on eligible orders of $25+.

Secure checkout powered by Stripe

Support

How to import this workflow into n8n

  1. 1Purchase or download the workflow to get the n8n workflow JSON file.
  2. 2In your n8n instance, open Workflows and choose "Import from File" (or paste the JSON with Ctrl+V on the canvas).
  3. 3Open each node marked with a credential warning and connect your own accounts and API keys.
  4. 4Run the workflow once manually to verify the data flow, then toggle it to Active.

Related File & Document Management workflows

More from Ravi Bakker

Need this deployed? We'll set it up for you.

Our automation experts deploy this workflow in your stack, connect your accounts, and verify it works — or build a custom solution from scratch.