How the Practice Exposure Check works
We only look at public records and your public website — the same request any visitor's browser makes. Nothing is scanned, probed, or accessed.
What we look at
- • Public DNS records — the same records any mail system reads to route and authenticate email (SPF, DMARC, DKIM, MX, DNSSEC).
- • Domain registration (RDAP) — the public registry record for your domain, including its expiry date.
What we never do
- • No port scanning or service enumeration.
- • No vulnerability scanning or exploitation of any kind.
- • No directory or path probing.
- • We never test, validate, or use any credential.
Every finding carries its evidence
Each result shows the exact record we read, the source we read it from, and the timestamp — so you or your IT provider can independently verify any claim. We report observations, never predictions, and we never claim anything is exploitable.
Your control
If you own a domain and don't want it checked, email info@sentryguardental.com and we'll exclude it permanently.
Prepared by OSINT Global Consulting · Public-source assessment. Not a security audit, penetration test, or legal advice.
← Back to the check