datadome.co
Gandi SAS
unsigned
Yes
Datadome.co appears to be a domain used for a service that helps protect websites from malicious traffic, likely a content security solution. It's been registered since 2012 and has a neutral reputation, but its DNSSEC status is unsigned, which may raise some security concerns.
Data on this page is collected by cside's crawler, which monitors third-party scripts across the public web.
DataDome
Category: security
Description
DataDome is a cybersecurity platform that provides real-time bot management and online fraud protection for websites, mobile apps, and APIs using AI-powered detection.
AI Review
The datadome.co scripts implement security measures including user behavior monitoring, browser fingerprinting, and CAPTCHA management, effectively enhancing protection against automated attacks. However, this functionality includes request filtering and session management that can inadvertently collect detailed behavioral data across user sessions, raising privacy concerns particularly during transactions. The presence of obfuscated code adds complexity, potentially obscuring the nature and extent of data collection. While no alerts have been triggered recently, indicating stable operations, these scripts maintain communication with external servers for threat detection, suggesting a command-and-control connection that may impact user data integrity. The tension between robust security measures and user privacy is evident; aggressive data collection techniques raise data minimization issues, especially in sensitive contexts like payment processing. The risk associated with datadome.co's dependencies is further compounded by potential supply chain vulnerabilities, which could compromise transaction security if any third-party elements are exploited. Therefore, while the vendor plays a critical role in PCI compliance by providing necessary fraud prevention mechanisms, ongoing evaluation is essential to ensure that data collection is appropriately scoped and user privacy is prioritized without sacrificing necessary security controls.
Script hostnames
No meta tags found.
Enabled
datadome.co is one of thousands of third-party scripts on the web.
Most sites run dozens of third-party scripts and can't say what each one does. cside monitors every script on your site and catches the ones that change or turn malicious.
| Hostname | Type | TTL | Priority | Content |
|---|---|---|---|---|
| datadome.co | NS | 172800 | ns-1139.awsdns-14.org. | |
| datadome.co | NS | 172800 | ns-1801.awsdns-33.co.uk. | |
| datadome.co | NS | 172800 | ns-359.awsdns-44.com. | |
| datadome.co | NS | 172800 | ns-888.awsdns-47.net. | |
| datadome.co | A | 60 | 52.85.151.98 | |
| datadome.co | A | 60 | 52.85.151.43 | |
| datadome.co | A | 60 | 52.85.151.30 | |
| datadome.co | A | 60 | 52.85.151.88 | |
| datadome.co | MX | 300 | 10 | aspmx.l.google.com. |
| datadome.co | MX | 300 | 20 | alt1.aspmx.l.google.com. |
| datadome.co | MX | 300 | 30 | alt2.aspmx.l.google.com. |
| datadome.co | TXT | 300 | "00Dbg000004YmuL=1TBbg000000085d" | |
| datadome.co | TXT | 300 | "MS=ms94234578" | |
| datadome.co | TXT | 300 | "OSSRH-68020" | |
| datadome.co | TXT | 300 | "QIodUNyC=d92b7823da002940bda170b6f21c333a" | |
| datadome.co | TXT | 300 | "Sendinblue-code:1fe0df26fd85d0304071badec73a0149" | |
| datadome.co | TXT | 300 | "anthropic-domain-verification-ccfc0n=eaQOMtTZb6UwDXRWNKuO4X5Yw" | |
| datadome.co | TXT | 300 | "apple-domain-verification=zyw8hLKxA4b5xXVG" | |
| datadome.co | TXT | 300 | "atlassian-domain-verification=p3Ad2B7jYmaw6uryxRNYJ7pq2kcnwIxyynJicpE8NesQVxT6Ipa4yz8EDL5cOZsW" | |
| datadome.co | TXT | 300 | "bw=GifOp/qoZkEDnBMBxKkczUiN7kDewj2IYaYBREonmczE" | |
| datadome.co | TXT | 300 | "docusign=0a43519d-3be8-4a12-8c80-c6b9405750a7" | |
| datadome.co | TXT | 300 | "google-site-verification=AJRiLcsHcOUOJB9mTdDVWxXw4JeG5wXdUo6E9jtWQmU" | |
| datadome.co | TXT | 300 | "google-site-verification=NhZDKWbnGtiZ5HtvJSPhB5qygCbbh7piSk6iSJgcZdI" | |
| datadome.co | TXT | 300 | "google-site-verification=ggmVRMvoATQMcac3QYx0hA-W74vJxftM5BIFGVunYwQ" | |
| datadome.co | TXT | 300 | "google-site-verification=jw-u5Wmo7yUgznJafAbL-IbtaCmf64CBineOGjpGjKQ" | |
| datadome.co | TXT | 300 | "google-site-verification=nRb3f9LPkeOTN_GMcsIL0rQ9J0UwndG-XT1WqiBsY48" | |
| datadome.co | TXT | 300 | "hubspot-developer-verification=ZTVmYTMyMjMtZDIwNi00MDg4LWIyMDMtYzI5YTQ2OWFlNGYz" | |
| datadome.co | TXT | 300 | "jetbrains-domain-verification=dfylhivtnfol88u33tbb852z8" | |
| datadome.co | TXT | 300 | "mixpanel-domain-verify=4d2b2b38-35b3-4dd6-9623-7afd812fc955" | |
| datadome.co | TXT | 300 | "openai-domain-verification=dv-BLqnZjM5CWu97jrqSNL6jmco" | |
| datadome.co | TXT | 300 | "segment-site-verification=fu9NvXETIa1R66AKyLMOHDQUfgAUKUcO" | |
| datadome.co | TXT | 300 | "v=spf1 include:mailgun.org include:_spf.google.com include:spf.zoho.com include:mail.zendesk.com include:_spf.salesforce.com -all" | |
| datadome.co | TXT | 300 | "wiz-domain-verification=ccaa6dc623357c76087c1be44fd5fcfa88ef51185c0e75b29a2bf126b5fa647f" | |
| datadome.co | TXT | 300 | "zapier-domain-verification-challenge=ef43031f-73f6-446a-af7f-988546b76036" | |
| datadome.co | SOA | 900 | ns-1139.awsdns-14.org. awsdns-hostmaster.amazon.com. 1 7200 900 1209600 86400 | |
| datadome.co | CAA | 300 | \# 17 00 05 69 73 73 75 65 61 6d 61 7a 6f 6e 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 20 00 05 69 73 73 75 65 61 6d 61 7a 6f 6e 61 77 73 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 22 00 05 69 73 73 75 65 61 6d 61 7a 6f 6e 74 72 75 73 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 19 00 05 69 73 73 75 65 61 77 73 74 72 75 73 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 19 00 05 69 73 73 75 65 64 69 67 69 63 65 72 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 22 00 05 69 73 73 75 65 6c 65 74 73 65 6e 63 72 79 70 74 2e 6f 72 67 | |
| datadome.co | CAA | 300 | \# 41 00 05 69 73 73 75 65 70 6b 69 2e 67 6f 6f 67 3b 20 63 61 6e 73 69 67 6e 68 74 74 70 65 78 63 68 61 6e 67 65 73 3d 79 65 73 | |
| datadome.co | CAA | 300 | \# 18 00 05 69 73 73 75 65 73 65 63 74 69 67 6f 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 21 00 09 69 73 73 75 65 77 69 6c 64 61 6d 61 7a 6f 6e 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 24 00 09 69 73 73 75 65 77 69 6c 64 61 6d 61 7a 6f 6e 61 77 73 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 26 00 09 69 73 73 75 65 77 69 6c 64 61 6d 61 7a 6f 6e 74 72 75 73 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 23 00 09 69 73 73 75 65 77 69 6c 64 61 77 73 74 72 75 73 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 23 00 09 69 73 73 75 65 77 69 6c 64 64 69 67 69 63 65 72 74 2e 63 6f 6d | |
| datadome.co | CAA | 300 | \# 19 00 09 69 73 73 75 65 77 69 6c 64 70 6b 69 2e 67 6f 6f 67 | |
| datadome.co | CAA | 300 | \# 22 00 09 69 73 73 75 65 77 69 6c 64 73 65 63 74 69 67 6f 2e 63 6f 6d |
FAQ
Frequently Asked Questions
This domain is analyzed as part of cside's domain directory to identify third-party scripts and their purposes. The summary provides information about what services, tools, or scripts this domain hosts, helping website owners understand which third-party services are being loaded on their sites.
The risk score is calculated based on multiple security factors including SSL certificate validity, DNSSEC status, domain registration details, and historical security data. A higher score indicates lower risk, while a lower score suggests potential security concerns that should be investigated.
The SSL certificate information shows whether the domain uses HTTPS encryption, when the certificate was issued, when it expires, and who issued it. This helps verify the domain's security posture and identify potential certificate-related vulnerabilities that could affect your website's security.
Third-party script domains can be compromised or used maliciously. By monitoring domain information like registration details, SSL certificates, and DNS records, you can identify suspicious changes, expired certificates, or domains that may pose security risks to your website and users.
Domain information is regularly scanned and updated to provide the most current security intelligence. The last scanned timestamp shows when the most recent analysis was performed, ensuring you have up-to-date information about the domain's security status.
If you identify a high-risk domain loading scripts on your website, you should investigate why it's being used, verify its legitimacy, and consider removing or replacing it if it's not essential. Use cside's platform to monitor and block suspicious third-party scripts to protect your users from potential security threats.
Subscribe to our newsletter to get the full picture
Stay updated with our latest news, offers and blog posts. Subscribe for exclusive updates delivered straight to your inbox.
Your inbox stays chill, we pop in monthly.