webaudit.in

B-
Trust rating
Good · 80/100
Procurement snapshot
No critical findings. The 6 remaining items are configuration gaps, not architectural problems.
Strengths
MX Records & Mail Provider
TLS Protocol Support
TLS Configuration
HSTS Header
Questions to ask
Confirm MTA-STS rollout plans for inbound email
Sign in to see 1 more
Estimated remediation effort: 1–2 days
Based on a passive external scan — supplement with vendor-provided attestations, not a replacement.
Trust Score Trend
→ No change 1 scan · Last scanned July 22, 2026
Score
100 75 50 25 0
B-
webaudit.in
80/100
Compliance & Certifications
Not yet verified
SOC 2 TYPE II
SOC 2 Type II
Audit report not on file
3rd party · AICPA
Pro subscribers only
ISO 27001
ISO 27001
Certificate not on file
3rd party · accredited body
Pro subscribers only
GDPR
GDPR
DPA not on file
Self-reported
Pro subscribers only
CCPA
CCPA
Privacy policy not on file
Self-reported
Pro subscribers only
Incident History
None in 12 months
March 2026
ChatGPT data exposure
1 source
Resolved
Pro subscribers only
April 2023 – Feb 2026
ChatGPT data exposure
1 source
Resolved
Pro subscribers only
Security Posture
6 items need attention
9 passed
Finish setting up email authentication
DMARC / Email Security
2–4 hours

Spoofed emails can still reach your customers and partners until this is fully enforced. Email authentication for webaudit.in is partly set up, but there are gaps: DKIM isn't set up. Until it's fully in place, someone could still send a convincing fake email pretending to be you.

NIST CSFPR.AC-7
Email authentication is a required access control
How to fix this
1Your MX records point to Cloudflare Email Routing, which forwards incoming mail to wherever you actually read it — it's a separate thing from sending. DKIM signs outbound mail, so it needs to be set up wherever you actually send email FROM (e.g. the service your team uses for newsletters, receipts, or day-to-day mail — this could be Cloudflare's own Email Sending feature if you've turned that on separately, or a different provider entirely). Check that service's admin settings for "DKIM".
2Double-check it's live: search "dmarc record checker" and enter webaudit.in.
Report unlocked.
View all 9 passed checks
MX Records & Mail Provider
TLS Protocol Support
TLS Configuration
HSTS Header
Cookie Security
security.txt (RFC 9116)
Known Breaches
Subprocessors & Tech Stack
CVE Exposure
Company Signals
Claim profile →
Operational risk
Low
11 yrs operating. Well-funded
Lynxradar · Composite signal
Last funding
$40B
Series F · Mar 2025 · SoftBank-led
Crunchbase ↗
Employees
~3,000
+40% YoY growth
LinkedIn ↗
Trust Resources
Claim profile →
Trust Center
trust.webaudit.in ↗
Security page
webaudit.in/security ↗
Privacy Policy
webaudit.in/privacy ↗
DPA (Data Processing Agreement)
webaudit.in/dpa ↗
Updated recently
Subprocessors List
webaudit.in/policies/subprocessors ↗
Similar companies
Appears in
Claim profile →
SOC 2 Type II certified vendors
847 companies · Updated weekly by LynxRadar
Track
ISO 27001 certified SaaS
312 companies · Updated weekly by LynxRadar
Track
Top AI vendors by trust score
94 companies · LynxRadar ranking
Track
Enterprise-ready SaaS · Trust score A or above
203 companies · LynxRadar ranking
Track