- What is a lookalike domain?A domain intentionally registered to resemble your brand (by typo, homoglyph, or TLD change) to trick users.
- What is typosquatting?Registering common misspellings (e.g.,
micorsoft.com
) so victims land on a fake page or get phished. - What is a homoglyph attack (IDN homograph)?Using visually similar characters from other alphabets (like Cyrillic
а
vs Latina
) that render almost the same in browsers and email clients. - Does this tool register domains or send alerts?No. It only uses public DNS. We can add monitoring/alerts and defensive registrations as a managed service.
- Will this catch every bad domain?No single tool can. We focus on highest-probability variants and activity checks to surface the most actionable items fast.
- I got “Easily Spoofable,” but Gmail still blocked a test. Why?Some providers block unauthenticated mail anyway. Your domain posture still needs improving to protect broadly, not just at Gmail.
- Can you help with takedowns?Yes. We prepare evidence, contact registrars/hosts, and support UDRP/URS where applicable. See our Managed Website Security.
- Can I use subdomains for marketing?Yes—publish separate DMARC for subdomains or enforce parent
sp=
policy. We’ll advise the cleanest layout. - How fast can I go from p=none to p=reject?Often 2–4 weeks with proper monitoring and sender inventory. We can accelerate if your sender set is simple.