Automated OSINT and vulnerability scanning for your domains — WHOIS, DNS, SSL/TLS, email security, port discovery, web technology fingerprinting, and CVE detection. Delivered in a detailed report.
Your scan runs across 10 intelligence categories using industry-standard tools.
Domain registration details, expiry dates, nameservers, and complete DNS record enumeration (A, MX, TXT, CNAME, NS).
SPF, DKIM (50+ selector checks), DMARC policy, MTA-STS, TLS-RPT, and BIMI — with a scored email security rating.
Certificate validity, weak cipher detection, protocol support (TLS 1.0–1.3), security header audit, and SRI checks.
Passive intelligence gathering via theHarvester — emails, subdomains, and exposed personnel using Google, Bing, and LinkedIn.
Full port scan (nmap + RustScan), service version detection, and open service identification across all reachable hosts.
Web path discovery via dirsearch — identifies exposed admin panels, backup files, configuration paths, and sensitive endpoints.
Detects publicly accessible /.git/ repositories that could expose source code, credentials, and commit history.
CVE detection via nmap NSE scripts, nuclei templates, nikto, and testssl.sh — with severity ratings and remediation guidance.
Enter your email and up to 10 domains. Confirm you own or have authorisation to scan them.
One-time payment of €50 via Stripe. Your card details never touch our servers.
Track progress live. Download your full HTML/PDF report within 2 hours, ready to share with your team.
Authorised use only. ReconOSINT is a professional security assessment service. By placing an order, you warrant and agree that:
For enterprise agreements, custom scanning, or support: [email protected]