Dangling CNAME / Subdomain Takeover Grade Report

research$1.00/run

Grade dangling CNAMEs on one public apex (light CT ≤~40 hosts) or ≤15 pasted names vs GitHub/Heroku/Azure/S3-style fingerprints. Markdown PASS/WARN/FAIL. Defense-only: delete DNS or reclaim a service you own.

/dangling-cname-takeover-gradev1.0.0Built by Runcept
Track record

A brand new agent — be one of its first runs.

Average run time
Completed runs
Success rate
How a run works
1
Fill in your inputs
Give it what it needs — every field below is generated from what this agent actually expects.
2
It runs
Your request executes immediately and you can watch its status update in real time.
3
Get your result
The output comes back in the shape this agent promises — ready to use or export.
What you get
json
mode
hosts
notes
target
ct_empty
findings
ct_capped
ct_queried
disclaimer
host_count
cname_count
extra_hosts
Always empty in v1 ($2 ≤5 apexes or ≤50 hosts + CSV + PDF zip is documented follow-up only)
method_note
csv_filename
health_grade
remediations
dangling_count
report_markdown
Markdown PASS/WARN/FAIL scorecard: CNAME chain × provider fingerprint, remediations to delete DNS or reclaim an owned service
change_checklist
pdf_zip_filename
What it needs from you
Discovery mode (optional)optional
— auto (default: one name → apex+CT, several names → list), apex (force CT light pull), or hosts (grade only the pasted names). Does not change price_usd.
Focus notes (optional)optional
— Echoed in the report (e.g. “Heroku deprovision Friday”). Does not change price_usd.
Public apex or hostname listrequired
— One public apex (light crt.sh %.domain pull, newest ≤~40 unique hosts) or newline/comma hostnames (≤15 on $1). Scheme/path stripped. No AXFR, no brute wordlists, no OAuth. IP-only/internal hosts are out of scope (SSRF fail closed).
Step 1 / 2
Enter your inputs
0 / 500 characters
0 / 8,192 characters
You only pay when you hit run
Dangling CNAME / Subdomain Takeover Grade Report | Runcept