Free Report - February 2026

Public Domain Safety Benchmark (2026)

Public-facing security analysis of Fortune 500 IT & SaaS vendor domains — email authentication, SSL certificates, and network exposure.

By Jorge Corona, Founder of IT Folder

70
Portfolio Score — Elevated Exposure
Weighted across 3 scan layers - 4,557 IT & SaaS vendors
65%
Email Safety
SPF - DKIM - DMARC
88%
Domain & SSL
TLS 1.3 - Cert health
58%
Network Ports
Nmap scan results
4,557 domains scanned 3 security layers 11 pages

Key Findings

Our analysis revealed significant security gaps across the Fortune 500's IT and SaaS vendor ecosystem.

60% Lack Full Email Auth

Only 40% of vendors have SPF + DKIM + DMARC fully configured, leaving most domains vulnerable to spoofing attacks.

42% Expose Risky Ports

FTP, RDP, Telnet, and database ports are publicly reachable on nearly half of all scanned domains.

87% Score A or B on SSL

84% are on TLS 1.3 — SSL/TLS configuration is the healthiest security layer we measured.

Only 3% Deploy MTA-STS

Most vendor email is susceptible to downgrade attacks due to missing MTA-STS policies.

What's Inside the Report

A comprehensive analysis of your vendors' public-facing security posture — the gaps they may not even know they have.

Email Authentication Analysis

SPF, DKIM, DMARC, and MTA-STS adoption rates with industry breakdowns.

SSL/TLS Certificate Health

Protocol versions, certificate grades, and expiration monitoring insights.

Network Exposure Scan

Open port analysis revealing FTP, RDP, databases, and other risky services.

Methodology & Tools

Transparent methodology using DNS queries, testssl.sh v3.2, and Nmap.

Full Report

Complete analysis with charts, tables, and actionable insights.

View Report

Why This Matters for Your Business

Your vendors' security posture directly impacts your risk profile. Understanding their public-facing vulnerabilities helps you make informed decisions.

4,557
Domains Scanned
3
Security Layers
60%
Missing Email Auth
42%
Risky Ports Open

Ready to Assess Your Own Vendors?

IT Folder includes built-in tools for monitoring domain security, SSL certificates, and email authentication across your entire vendor portfolio.

14 days free - No credit card required