Executive Summary
Cyber Risk Report
Noxantis
noxantis.com
Significant vulnerabilities were found that require prompt attention.
High RiskHigher score = better security
Critical Findings
6
issues need attention
Exposed Ports
0
no open attack surface
Breached Accounts
0
no credentials exposed
Sections at Risk
3 / 5
areas with open issues
Email Security
No DMARC Record Found
FailThis domain has no DMARC record. There are no instructions telling email providers what to do with fake emails.
Why this matters
Even if SPF and DKIM are set up, there is no final rule to block fake emails. Scammers can still impersonate this business.
What to do
Add a DMARC record to your domain. Start with 'p=none' and a report address, then switch to a stricter setting over time.
DMARC stands for Domain-based Message Authentication, Reporting and Conformance. It is a rule that tells email providers what to do with emails that fail security checks.
No SPF Record Found
FailThis domain has no SPF record. Any email server in the world can send emails pretending to be from this domain.
Why this matters
Scammers can easily send fake emails that look like they came from this business. This puts clients and staff at risk.
What to do
Add a TXT record to your domain settings that lists which email servers are allowed to send mail on your behalf.
SPF stands for Sender Policy Framework. It is a rule in your domain settings that controls which email servers are allowed to send mail using your domain name.
DKIM Not Found
FailNo DKIM record was found for this domain. Emails sent from here do not have a digital signature.
Why this matters
Without a signature, email providers have no way to verify that emails really came from this business.
What to do
Get the DKIM record from your email provider (such as Microsoft 365 or Google Workspace) and add it to your domain settings.
DKIM stands for DomainKeys Identified Mail. It adds a hidden digital signature to emails so the receiver can verify they are genuine.
Not on Any Email Blacklists
PassThis domain's mail server was not found on any of the major email blacklists that were checked.
Checked against: Spamhaus, Barracuda, SpamCop
SSL & Website Security
Certificate is Valid
PassThis website's security certificate is valid and doesn't expire for more than 30 days.
SSL stands for Secure Sockets Layer (now called TLS). It is the technology that creates an encrypted connection between a visitor and a website, shown as the padlock icon in a browser.
No Website Security Headers Found
FailThis website sends no security rules to browsers at all.
Why this matters
Without these rules, browsers have no extra protection turned on for this site. Visitors are more exposed to web-based attacks.
What to do
Set up security headers through your web server or content delivery network. Many hosting platforms have a one-click option for this.
HTTP Security Headers are instructions a website sends to a browser. They switch on built-in browser protections, like stopping the site from being secretly loaded inside another page.
Website Does Not Redirect to Secure Version
FailVisitors can reach this website over plain HTTP without being sent to the secure version.
Why this matters
Visitors using the plain HTTP version have their information unprotected. Passwords, form data, and cookies can be read by others on the same network.
What to do
Set up a permanent redirect from HTTP to HTTPS in your web server or hosting settings.
HTTPS stands for HyperText Transfer Protocol Secure. It is the secure version of a web address. HTTP without the S means the connection is not encrypted.
Dark Web Exposure
No Leaked Accounts Found
PassNo email addresses from this domain were found in any known data breach databases.
Open Ports & Network Exposure
Remote Desktop is Not Exposed
PassRemote Desktop access (port 3389) is not open to the public internet from any address detected for this domain.
RDP stands for Remote Desktop Protocol. It is a tool that lets someone control a computer over the internet, as if they were sitting in front of it.
File Sharing Port is Not Exposed
PassThe file-sharing port (445) is not open to the public internet.
SMB stands for Server Message Block. It is a protocol that lets computers on a network share files and printers with each other.
Domain & Infrastructure
Registrar
GoDaddy.com, LLC
Domain Age
3.1 years
Expires
June 12, 2027
IP Address Has Abuse Reports
FailThe IP address hosting this domain's website has recent abuse reports — things like hacking attempts, spam, or malware activity — logged in threat-intelligence databases.
Why this matters
Sites hosted on flagged IP addresses can get blocked by corporate firewalls and security tools, and on shared hosting, one compromised neighbor on the same IP can drag others down with it.
What to do
Ask the hosting provider about the abuse reports. If this is shared hosting, consider moving to a dedicated or better-vetted IP address.
No Browser Safety Warnings
PassGoogle Safe Browsing has no warnings for this domain. It is not flagged as a phishing or malware site.
Google Safe Browsing is a service that checks websites for phishing, malware, and harmful content. It powers the safety warnings shown in Chrome, Firefox, Safari, and other major browsers.
Domain Registration is Paid Up
PassThis domain registration is active and will not expire for at least 90 days.
Priority Actions
No DMARC Record Found
−15 points · Email Security
No SPF Record Found
−10 points · Email Security
IP Address Has Abuse Reports
−10 points · Domain & Infrastructure
DKIM Not Found
−5 points · Email Security
No Website Security Headers Found
−5 points · SSL & Website Security
Ready to fix these issues?
Enterprise-grade cybersecurity for growing businesses.