Hawkeye

Find out what your domain tells the world.

Right now, someone can probably send an email that looks like it came from your company. Not a lookalike domain. Yours, exactly. For most companies we look at, that is not a hypothetical, it is the live state of their domain, and nobody has told them. Hawkeye is how we check.

We read public records only. Nothing is installed and we never touch your network. You get the spoofing result on this screen straight away, and the written report by email. We do not add you to any list. Privacy.

Free

Hawkeye Flyover.

We read your public records from the outside. Nothing installed, no access to your network, nothing for your team to approve, and it takes minutes. You get the report whether or not we ever speak again.

Paid engagement

Hawkeye Assessment.

The full pass, and it goes inside: identity, endpoints, cloud tenancy, internal network and dark web exposure, with findings ranked by what an attacker would actually reach first. Fixed fee, quoted before any work starts.

What Flyover looks at

Four questions, answered from outside your fence.

Everything below is readable by anyone on the internet, which is the point. We are not finding secrets. We are telling you what is already public, and what an attacker sees before they pick a target.

Forged mail

Does your domain tell the world to reject mail that is pretending to be you, or does it quietly let it through to your customers, your finance team and your suppliers?

Outbound signing

Is the mail you actually send signed, so a recipient can prove it came from you? Unsigned means anyone can imitate it and nobody downstream can tell the difference.

Domain records

Can the records that route your mail and your website be tampered with without anyone noticing? This is the plumbing under everything else, and it is usually the least watched.

Exposed credentials

Are your people's work credentials already sitting in a public breach dump? If a password is out there and still in use, none of the rest matters much.

What the Assessment adds

Flyover tells you the front door is unlocked. Hawkeye tells you who has been through it.

The free pass is deliberately shallow, because it has to run without touching anything you own. The paid engagement is where we get to look properly.

Identity and access

Who can sign in, from where, with what protection, and which accounts have quietly accumulated rights nobody remembers granting.

Endpoints

What is actually running on the machines, whether it is patched, and whether anything is already talking to somewhere it should not be.

Cloud tenancy

Sharing, guest access, forwarding rules and app consents, which is where quiet compromise lives longest without being noticed.

Internal network

What an attacker reaches once they are inside, and how far a single compromised laptop actually gets them.

Dark web exposure

What has already been sold or dumped about your people and your company, and whether any of it is still valid today.

A plan, ranked

Every finding written for two readers: plain English for whoever signs the checks, the technical detail behind it for whoever fixes it, and an order of operations.

Common questions

What people ask before they run one.

What is a Hawkeye Flyover?

A free external security exposure check. We read the records your domain publishes to the internet and check whether your people's work credentials appear in known breach data. Nothing installed, no access to your network, and it takes minutes.

Does it require installing anything?

No. The Flyover is external only. It reads information that is already public and readable by anyone on the internet, so there is nothing to install, no agent to deploy, and nothing for your team to approve.

What does it actually check?

Whether your domain tells the world to reject mail pretending to be you, whether the mail you send is signed so recipients can prove it came from you, whether the records routing your mail and website can be tampered with unnoticed, and whether your credentials are already in a public breach dump.

Do I have to take a sales call to get the report?

No. The report is delivered whether or not we ever speak again. It is yours to keep, forward, and act on with whoever you like, including your current IT provider.

How is the paid Assessment different?

The Flyover is deliberately shallow because it runs without touching anything you own. The Assessment goes inside: identity and access, endpoints, cloud tenancy, internal network and dark web exposure, ranked by what an attacker reaches first. Fixed fee, quoted before any work begins.

Is Hawkeye available in Canada?

Yes. We serve mid market companies across the United States and Canada. The Flyover is delivered remotely and is available to Canadian companies with no difference in scope or cost, and the full Assessment is delivered remotely as well.

Request a Flyover

No sales call required to get the report.

Tell us the domain and we will run it. Most of what we find is fixable in an afternoon. The reason it has not been fixed is usually that nobody was looking.

The spoofing verdict lands on screen while you are still on the page. The written report, including the credential exposure check, follows by email.

What you get back

A report, not a sales deck.

Plain English at the front for whoever signs the checks. The specific technical detail behind it for whoever fixes things. Every finding tied to what it means for your compliance obligations.

It is yours to keep, forward, and act on with whoever you like, including your current provider. If you would rather we fixed it, that conversation is available and it is a separate one.