Domain intel without
the enterprise
contract.
WHOIS, DNS, SSL, GeoIP, ASN, certificate transparency, subdomain enumeration, IP reputation, email auth. One API built strictly on public data sources — no paid vendor lock-in, and zero query persistence.
What security teams use Ollagraph for.
Fast, normalized reconnaissance and investigation data returned as typed JSON.
Domain investigation & enrichment
You got a suspicious URL or domain. Pull WHOIS, DNS records, certificate history from crt.sh, ASN, GeoIP, and IP reputation in one automated workflow. Output is structured JSON ready for your SOAR.
Email auth & reputation verification
Validate SPF, DKIM, and DMARC configurations on an enterprise domain. Verify suspicious sender addresses against live MX hosts and catch phishing setups before they reach users.
Passive attack surface discovery
Discover exposed subdomains via certificate transparency logs without generating active traffic on the target network. Safe, passive reconnaissance for blue teams and red teams alike.
Phishing & threat reputation
Check a URL or its host against a phishing / malware feed and vet an IP or domain against DNSBL blocklists. Match a known-bad indicator through one indicator-agnostic lookup before it reaches your users.
We don't keep your queries.
Security teams investigating internal IPs, customer domains, or pre-disclosure vulnerabilities need to know where their lookups end up. Ollagraph never persists the payload content it fetches — intel lookups are processed strictly in memory, retaining only URL-level telemetry for your workspace billing.
Intelligence built on public data.
1,000 credits on signup. Full domain and network intel catalog accessible immediately. No enterprise minimums or lengthy procurement.