Enter a domain and review its public surface. I look at how email and DNS are configured to estimate how easy it would be to impersonate it. This is a passive check, I only query public DNS records, I never touch the third party's server.
Passive · Non-intrusiveThis check looks only at DNS. The Phylax assessment also reviews the TLS certificate, security headers and the web surface with evidence, and hands you an actionable report.
I want the full assessment →