Free lookalike check · No signup required

Check domains that look like yours

Enter your company domain. We’ll check up to 18 common lookalikes for DNS, mail, zone, and recent certificate records. We never open the candidate sites.

Use the registrable apex, such as example.com or example.co.uk. URLs, subdomains, wildcards, and IP addresses are not accepted.

No signup Maximum 18 DNS candidates No candidate website fetches

What this tells you

What the results mean

01

Common lookalike patterns

We sample omissions, transpositions, keyboard errors, homoglyphs, hyphenation, and TLD changes. The bounded sample keeps the public check fast and predictable.

02

DNS and certificate records

A, AAAA, CNAME, MX, and NS answers show how a candidate is configured. Zone and recent certificate observations add context when SecurityAlert has them.

03

Review the context

Infrastructure can be benign, defensive, parked, or malicious. A match deserves review; it is not proof that anyone is impersonating your brand.

Common questions

What “no evidence observed” means

Does “no evidence observed” mean the domain is available?

No. It means this point-in-time check did not receive one of the supported positive signals. A domain can be registered without active DNS, outside our zone coverage, or temporarily unreachable.

Why check MX records?

MX records indicate that a domain can receive email. That matters for business-email-compromise review, but an MX record alone says nothing about ownership or malicious intent.

How is continuous monitoring different?

The checker samples one bounded mutation set once. A brand monitor repeatedly watches zone changes, Certificate Transparency, DNS, and other discovery paths, then tracks evidence as it changes.

Get alerts when new lookalike evidence appears.

The free plan includes one brand and daily scans.