External attack surface reports

Someone is already looking at what your business exposes online.

Professional mapping of subdomains, technologies, and risky configurations — the same work an in-house security team would do, delivered in under 48 hours.

Get a free snapshot See pricing
48h turnaround CVSS 8.2 published finding Deutsche Telekom bug bounty program
What's included

A clear map of your real exposure

No agents to install, no access to your internal systems. Just what's already publicly visible — and for that same reason, the first thing an attacker would see.

01 · Reconnaissance

Exposed subdomains

Complete enumeration of active subdomains, including forgotten staging or test environments.

02 · Analysis

Technologies and versions

Identification of software, frameworks, and outdated versions that represent known risk.

03 · Delivery

Prioritized report

PDF with findings ranked by severity and concrete recommendations for your technical team.

Pricing

No fine print, no long contracts

Start with a free snapshot. Order the full report when you want the complete picture.

Authorization notice

By requesting a snapshot or purchasing any of these plans, you confirm that you authorize the assessment of your domain and that you are the owner or an authorized representative of it. The analysis is strictly limited to passive reconnaissance of already-public information (subdomains, technologies, visible configurations). Under no circumstance is any structure, data, or system belonging to the client modified, altered, or damaged.

Start here · Free

Exposure Snapshot

One page for one domain: whether your SPF, DKIM and DMARC actually stop spoofing, your TLS status, how many findings we see by severity, and one of them explained. Requested from a business email address.

Get my snapshot
Monitoring
Catch new exposure the moment it appears, not months later.
$249/ month
Everything in the Perimeter Report
Alerts on new subdomains
DNS, TLS and DMARC change alerts
Quarterly report

3-month minimum, or $2,490/year (2 months free).

Start monitoring
Email Hardening
Stop anyone from sending email as your business, the setup behind most wire-fraud and fake-invoice scams.
$750/ one-time
SPF and DKIM fixed for every sender
DMARC staged safely to p=reject
Report monitoring during rollout
Verification when done

Requires your written authorization and DNS access.

Order hardening
Credentials

Real findings, not just theory

Active security researcher in public bug bounty programs.

CVSS 8.2

Deutsche Telekom · OAuth

Incorrect redirect URI configuration in their infrastructure, reported and validated.

CVSS 6.1

Deutsche Telekom · Stored XSS

Persistent scripting vulnerability identified and responsibly disclosed.

HackerOne

guthacker13

Active profile with a track record of verified reports in public bug bounty programs.

Frequently asked questions

Before you start

Do you need access to my systems?

No. The entire analysis is performed on information that's already public, without touching your internal infrastructure.

Will you modify anything on my site or my data?

Never. This is a purely passive reconnaissance analysis — nothing on your systems is altered, written to, or deleted.

What format do I receive the report in?

A clear PDF, with findings prioritized by severity and actionable recommendations for your team.

Can I cancel the monthly plan?

Yes. Monitoring has a 3-month minimum; after that you can cancel anytime — no penalty.

Get your free exposure snapshot

Send your primary domain from your business email. Your one-page snapshot arrives within 2 business days.

or email directly at ceo@shadowperimeter.com