Skip to main content

authorize.net

Nov 14th 2026 05:00 AM

MarkMonitor Inc.

unsigned

No

Oct 13th 2024 09:38 AM

Authorize.net appears to be a payment gateway service that helps users process transactions securely online. It's a well-established domain with a trusted reputation since its registration, but its DNSSEC status is unsigned, which may pose a security risk.

Data on this page is collected by cside's crawler, which monitors third-party scripts across the public web.

Copy Summary
Copy Link
Helpful
Not Helpful
Rarely seen
Vendor

Visa

Category: payment

Description

Visa is a global payment technology company.

AI Review

Scripts from the vendor across their domains focus heavily on secure payment processing and authentication while also incorporating analytics functions that monitor user interactions. The central activity revolves around facilitating secure payment transactions through libraries like Accept.js, which manage the encryption and verification of sensitive data such as credit card information. This is complemented by additional functionalities for user verification and OTP validation, establishing a robust framework for adhering to PCI compliance. However, the scripts also collect detailed behavioral and performance data, including user session details and network requests, particularly during payment and authentication events. This data collection can extend to capturing personally identifiable information (PII) at critical interaction points, raising concerns around data minimization and user privacy. While there have been no alerts indicating direct issues with these scripts, the risk lies in the dual role of these scripts: enhancing security while simultaneously monitoring user behavior. The third-party dependency surface remains a concern as the interplay of payment processing and analytics components can inadvertently lead to broader data exposure than intended, warranting scrutiny to ensure that only necessary data is captured and retained. Additionally, the absence of alerts suggests stable operation, but vigilant oversight is necessary to maintain compliance and protect sensitive user information from potential vulnerabilities in the supply chain.

Script hostnames

authorize.net visa.com
WHOIS Information
Registrar MarkMonitor Inc.
Registration: November 15th, 1996
Expires: November 14th, 2026
Updated: October 13th, 2024
Nameservers
a2-65.akam.net. 95.100.174.65
melinda.ns.cloudflare.com. 172.64.32.198
a10-64.akam.net. 96.7.50.64
lloyd.ns.cloudflare.com. 173.245.59.197
a1-190.akam.net. 193.108.91.190
a9-64.akam.net. 184.85.248.64
Meta Tags

No meta tags found.

authorize.net is one of thousands of third-party scripts on the web.

Most sites run dozens of third-party scripts and can't say what each one does. cside monitors every script on your site and catches the ones that change or turn malicious.

DNS Records
Hostname Type TTL Priority Content
authorize.net NS 86400
a2-65.akam.net.
authorize.net NS 86400
melinda.ns.cloudflare.com.
authorize.net NS 86400
a10-64.akam.net.
authorize.net NS 86400
lloyd.ns.cloudflare.com.
authorize.net NS 86400
a1-190.akam.net.
authorize.net NS 86400
a9-64.akam.net.
authorize.net A 21
162.159.153.2
authorize.net A 21
162.159.152.2
authorize.net MX 3600 10
portal3i.visa.com.
authorize.net MX 3600 10
portal2i.visa.com.
authorize.net MX 3600 10
portal1i.visa.com.
authorize.net MX 3600 10
portal4i.visa.com.
authorize.net TXT 3600
"atlassian-domain-verification=7zr/X7MYe1RLzdXboOQfgkBfeb6kAB892u84YHeyPVkhkgUC8bT6jdsVl5ihIPli"
authorize.net TXT 3600
"0sjwn3v8plmrwgrnbh39s2q0qvm1qrwj"
authorize.net TXT 3600
"ms=ms63940886"
authorize.net TXT 3600
"v=spf1 ip4:66.185.176.0/20 ip4:8.20.172.0/24 ip4:198.241.162.10 ip4:198.241.162.56 ip4:198.241.168.128 ip4:198.241.168.129 ip4:64.94.119.16 ip4:64.94.119.17 ip4:52.0.175.129 ip4:66.48.80.0/24 ip4:198.80.42.3 ip4:204.92.114.0/24 ip4:198.241.206.0/24 ip4:19" "8.241.207.0/24 ip4:198.241.159.0/24 ip4:198.241.174.0/24 include:spf2.authorize.net include:_netblocks.eloqua.com include:amazonses.com include:stspg-customer.com mx include:_spf.salesforce.com ~all"
authorize.net TXT 3600
"facebook-domain-verification=xhbnmbtib0ntq0i7ceyjl44bwsr9uo"
authorize.net TXT 3600
"0 contactemail hostmaster@visa.com"
authorize.net TXT 3600
"status-page-domain-verification=4p7s5nn88ghy"
authorize.net TXT 3600
"atlassian-domain-verification=a0ZlgUYBsYkEDk57K0B/3LjHNN4enn9XLFryUZ5N0l8QdXtHw16hx7ePmsWPUAsh"
authorize.net TXT 3600
"Digicert=bydw2cpw8wbbk6x6ybkjbqmkw97tknvq"
authorize.net SOA 300
lloyd.ns.cloudflare.com. dns.cloudflare.com. 2019103497 10000 2400 604800 3600
authorize.net CAA 3600
0 iodef "mailto:hostmaster@visa.com"

FAQ

Frequently Asked Questions

View all

This domain is analyzed as part of cside's domain directory to identify third-party scripts and their purposes. The summary provides information about what services, tools, or scripts this domain hosts, helping website owners understand which third-party services are being loaded on their sites.

The risk score is calculated based on multiple security factors including SSL certificate validity, DNSSEC status, domain registration details, and historical security data. A higher score indicates lower risk, while a lower score suggests potential security concerns that should be investigated.

The SSL certificate information shows whether the domain uses HTTPS encryption, when the certificate was issued, when it expires, and who issued it. This helps verify the domain's security posture and identify potential certificate-related vulnerabilities that could affect your website's security.

Third-party script domains can be compromised or used maliciously. By monitoring domain information like registration details, SSL certificates, and DNS records, you can identify suspicious changes, expired certificates, or domains that may pose security risks to your website and users.

Domain information is regularly scanned and updated to provide the most current security intelligence. The last scanned timestamp shows when the most recent analysis was performed, ensuring you have up-to-date information about the domain's security status.

If you identify a high-risk domain loading scripts on your website, you should investigate why it's being used, verify its legitimacy, and consider removing or replacing it if it's not essential. Use cside's platform to monitor and block suspicious third-party scripts to protect your users from potential security threats.

Subscribe to our newsletter to get the full picture

Stay updated with our latest news, offers and blog posts. Subscribe for exclusive updates delivered straight to your inbox.

Your inbox stays chill, we pop in monthly.

A pixelated, glitchy rendition of the cside shield
Book a demo

Want to walk through this with an engineer?

Thirty minutes, on your own site. Not a slide deck.

Book a personalized demo to see:

How to achieve PCI DSS requirement 6.4.3 & 11.6.1 compliance in 1 day
Why third-party scripts are a security risk for you and your visitors
Monitoring privacy and consent leakage (GDPR, CCPA) across every third party
Stopping signup abuse, account sharing, and chargeback fraud with device intelligence
Detecting and controlling AI agents and bots hitting your site in real time

Rather just send a question?

Finding open slots…

Real humans only. We'd know.

Having trouble booking? Open scheduler in a new tab

What are you trying to solve?

Tell us in a line and we'll come back with something useful, not a generic pitch.

We usually help with:

Seeing which third-party scripts run on your site
PCI DSS 6.4.3 and 11.6.1 evidence
Bots, AI agents and account takeover

Prefer to just book a time? Pick a slot instead