For security, abuse, trust, and incident-response teams
Use this path to assemble context for prioritization, escalation, and human review.
Try a product, outcome, endpoint path, or API topic.
Move from a reported indicator to connected public evidence without treating any single signal as proof.
Use this path to assemble context for prioritization, escalation, and human review.
Connect the suspicious name to its current domain, infrastructure, trust, email, website, and declared identity signals.
A similar name may be benign, while a weak name match can still host deceptive content. Triage needs several kinds of evidence.
Public evidence cannot establish intent, private ownership, legal identity, or complete campaign scope.
Connect the suspicious name to its current domain, infrastructure, trust, email, website, and declared identity signals.
Use Domain Similarity and status checks to establish what the name evidence does and does not show.
Add DNS, subdomain, IP, certificate, reputation, email-authentication, and blacklist evidence.
Use Scrape, Technology Detection, Identity Assets, and Identity Resolution to retain relevant public website evidence.
Start with the reported URL and protected brand domain, then connect name, domain, infrastructure, and public-page signals.
curl -H "X-API-Key: $DOMSCAN_API_KEY" "https://domscan.net/v1/similarity?domain1=example.com&domain2=examp1e.com"
{
"domain1": "example.com",
"domain2": "examp1e.com",
"overall_similarity": 94,
"risk_level": "high",
"is_potential_typosquat": true
}
Connect the suspicious name to its current domain, infrastructure, trust, email, website, and declared identity signals.
Monitor domains for brand infringement and typosquatting threats.
Choose this when: Monitor domains for brand infringement and typosquatting threats.
Find domains similar to a given domain based on name patterns and keywords.
Choose this when: Find domains similar to a given domain based on name patterns and keywords.
Check if a username is available across major social media platforms.
Choose this when: Check if a username is available across major social media platforms.
Check domain reputation across multiple threat intelligence sources.
Choose this when: Check domain reputation across multiple threat intelligence sources.
You have a suspicious domain or URL and need multi-signal context for review or escalation.
Do not use it as proof of criminal intent, account ownership, legal identity, or complete campaign discovery.
Move from a reported indicator to connected public evidence without treating any single signal as proof.