Public footprint analysis · no login required
See your domain the way
an attacker does.
Enter any domain. BreachLens passively inspects DNS, email authentication, TLS, security headers and exposed subdomains, then a two-pass AI analyst writes you a prioritized, plain-English report.
Try
Vulnerable sites
- Passive only — nothing intrusive
- No data stored
- Results in seconds
Scanning
- Resolving DNS, email auth & CAA
- Inspecting TLS certificate
- Enumerating subdomains via certificate transparency
- Analyzing page security (headers, cookies, mixed content, tech)
- Probing robots.txt & exposed files
- AI pass 1 — classifying each finding independently
- AI pass 2 — senior analyst synthesis
- Modeling attack scenarios
Passive checks run concurrently — items tick off as each source responds.
0
/ 100 risk
—
Lower is better
Analyst summary
Top priority
If left unaddressed
⚠︎ AI analysis was unavailable — showing a deterministic rule-based report.
How this could be exploited
Illustrative scenario based only on the findings above — not evidence of an actual breach.
Findings
Certificate history
Issuance timeline from public certificate-transparency logs (descriptive only).
Raw scan signals
Ask the analyst
Questions are answered only from this report's findings.