FlawPilot
Infrastructure use case

Find out how your site is exposed and protected

Get an instant view of your CDN and WAF coverage, DNS health, open subdomains, and edge configuration. No account needed, no limits on free scans.

Analysis complete

Edge posture report

For example.com

0Overall
Critical
2
High
3
Medium
6
Low
2
CriticalOpen S3 bucket discovered on subdomain
CriticalDangling CNAME vulnerable to takeover
HighOrigin server reachable directly
Signals evaluated
20+
No account needed
Free
Posture mapped
<10s

Map your edge: CDN, WAF, and origin exposure

Every scan fingerprints the CDN and WAF in front of your site, confirms whether traffic actually flows through them, and checks whether your origin can be reached directly. An origin that bypasses your WAF is one DNS lookup away from a problem.

Edge protection

4
Infrastructure
Critical

Open S3 bucket discovered on subdomain

Bucket files.example.com lists contents publicly; data exposure is live.

Pass

CDN detected: Cloudflare

Cloudflare is fronting the apex and www records.

High

Origin reachable on origin.example.com

Bypassing the CDN exposes the origin to direct attacks.

Medium

WAF rules in detect-only mode

Several managed rules log without blocking; expected behavior in staging only.

DNS, subdomains, and zone hygiene

FlawPilot inspects DNS records (A, AAAA, CNAME, MX, TXT, CAA), checks DNSSEC and email auth posture, and enumerates subdomains from public sources to surface forgotten endpoints. Dangling CNAMEs, stale dev hosts, and exposed buckets all show up here.

DNS and subdomains

4
Infrastructure
Medium

DNSSEC not enabled

Without DNSSEC, responses for your zone can be forged in transit.

High

Dangling CNAME on legacy.example.com

Points to an unclaimed Azure storage host and is vulnerable to subdomain takeover.

Medium

Wildcard MX with no SPF

Email can be spoofed; add an SPF record and consider DMARC.

Pass

CAA record present

CAA limits issuance to your approved certificate authorities.

Storage, ports, and forgotten endpoints

Public buckets and stray open ports are the classic source of weekend incidents. FlawPilot probes for common storage misconfigurations, exposed admin panels, and ports left open on the origin so you can shut them down before a scanner finds them first.

Recommended fixes

4
Infrastructure
High

S3 bucket listing enabled

Bucket files.example.com lists contents publicly; restrict via bucket policy.

High

Hide origin behind the CDN

Allowlist only CDN egress IPs at the origin firewall.

Medium

Close port 8080 on origin

Development server is publicly reachable on the origin host.

Low

Add HSTS preload to apex

Submit the apex domain to the HSTS preload list to prevent first-hit downgrade.

Frequently asked questions

Scans are designed to be polite. We make a small number of unauthenticated requests at human-typing speed and identify ourselves with a recognizable User-Agent. You should not see WAF blocks or rate limits trip, but if you do, the WAF is doing its job and you can allowlist our scanner User-Agent.

Ready when you are

Map your infrastructure exposure now

Free, instant results. Enter any URL and see your edge, DNS, and storage posture in seconds.

Scan Your Site for Free
Find out how your site is exposed and protected — FlawPilot