That’s certainly one of the worst attempts I’ve seen! The frightening ones are those that are almost impossible to tell apart from a genuine RM text. And it doesn’t help that companies like Royal Mail use daft, scammy looking short URLs for their genuine communication. I think that companies should get one domain and stick to it. How the hell are technologically vulnerable customers supposed to figure out that something like ryml.me is genuine but royalmailgb.app is fake (I’d have guessed, if I had to choose, that the second one was legit, but in fact the latter has been previously used for these types of scams).
I posted this screenshot on the thread about this over on the Monzo forum, but I’ll add it here as well because it’s so stupid… Here is a Tweet from Royal Mail warning about a scam that was doing the rounds, with a call to action to view more details at their super sketchy looking short URL