Understanding the external attack surface
Connect domains, assets and services to understand what is publicly reachable.
Read the guideEXPOSURE MOVES FAST
Records, configuration and domain dependencies.
Internet-facing hosts, networks and hosting signals.
Website behaviour, security headers and configuration.
Encryption, certificate validity and transparency records.
SPF, DKIM and DMARC configuration.
Registration details, expiry and lifecycle signals.
Reachable ports, detected services and exposure findings.
THE GOAL
Our goal is to let teams trace a certificate observation to its public log record, check the proof available for that record, and connect it to a domain investigation. Each step should show what was verified, what remains unknown, and what action follows.
Keep the logged certificate material, names and public log record together so the observation can be revisited.
Test inclusion against a trusted checkpoint, and check witness or consistency evidence where available. Show every gap.
Connect the change to inventory, DNS and infrastructure before deciding what needs attention.
THE END STATE A shareable record your team can inspect and recheck, with incomplete verification made visible.
See how it connectsRoute findings, evidence and workflow updates into the systems your teams already rely on.
10 native destinations
Every pillar adds context.
Connect domains, assets and services to understand what is publicly reachable.
Read the guideFollow certificate and DNS changes back to the evidence behind them.
Read the guideRecognize dangling records and assess whether a dependency can be reclaimed.
Read the guide