Have I Been Squatted provides an automated platform that generates typosquatting permutations, monitors domain registrations and related infrastructure, and assigns risk scores to flag malicious look‑alike domains. It delivers prioritized alerts, evidence packages for takedown requests, and API/ report exports for integration with security tools, helping brand protection and security teams reduce manual effort and respond quickly to domain‑based threats.
Funding
Funding not disclosed
Founders
Product
Problem
Brands and organizations are vulnerable to typosquatted domains that can be used for phishing, fraud, and brand impersonation, yet detecting and responding to these threats requires manual effort and multiple disparate tools.
Solution
Have I Been Squatted offers an automated platform that continuously generates typosquatting permutations, monitors domain registrations and infrastructure signals, and assigns risk scores to identify malicious look‑alike domains. The service provides prioritized alerts, deep analysis of DNS, certificates, WHOIS/RDAP data, and screenshot capture to give security teams actionable evidence. Integrated takedown workflows enable users to request removal of infringing domains directly from registrars and hosts. Custom rule engines and alert tuning let teams focus on high‑impact threats while reducing noise. All findings can be exported via API or reports for stakeholder communication and further integration with existing security stacks.
Target Audience
Primary customers are security teams, brand protection professionals, and organizations that need to safeguard their online identity, ranging from individual researchers to large enterprises with dedicated brand protection units.
Features
- Automated generation of thousands of typosquatting permutations covering character substitutions, homoglyphs, and TLD variants
- Continuous monitoring with risk‑score trending, WHOIS/RDAP enrichment, DNS and certificate analysis, and screenshot capture
- Prioritized alerting and custom rule engine to surface genuine threats and suppress false positives
- Built‑in takedown request workflow with evidence packaging for registrars, hosts, and escalation paths
- Exportable reports and API access for integration with SIEMs, ticketing systems, and collaboration tools (e.g., Slack, Teams)
- Tiered plans offering free basic checks, paid monitoring, data explorer, diff tools, and enterprise‑grade managed threat intelligence