Security, recon, and due-diligence workflows all start with the same raw material: what a domain runs, who owns it, whether its certs and DNS are healthy, and what’s changed. NexGenData’s domain-intelligence actors turn that into structured JSON you can pull on demand or wire into monitoring β pay-per-use, no enterprise security-data contract.
The toolkit
Tech-stack & fingerprinting
- Wappalyzer Replacement β Tech Stack Detection API β detect the frameworks, CMS, analytics, and infrastructure any site runs. A pay-per-use Wappalyzer/BuiltWith alternative.
- Company Tech-Stack Detector β fingerprint a company’s stack for sales intel, competitive research, or attack-surface mapping.
- Tech Stack Detector toolkit β
Domain & WHOIS
- Domain WHOIS Lookup / WHOIS Domain Lookup / WHOIS Replacement β registrant, registrar, dates, and nameservers via modern WHOIS/RDAP.
- Domain Intelligence MCP β expose domain lookups directly to an AI agent.
DNS & certificates
- DNS Records Lookup β A, AAAA, MX, CNAME, TXT, NS, SPF, DMARC for any domain (an MXToolbox alternative).
- DNS Propagation Checker β verify DNS changes have propagated across resolvers.
- SSL Certificate Checker β expiry, issuer, chain, and TLS config; bulk-monitor certs across a portfolio.
Email & app security
- DMARC Auditor & Email RBL Checker β domain email-auth posture and blocklist status.
- Chrome Extension Security Analyzer β audit browser-extension permissions and risk (a CRXcavator-style check).
Workflows
- Attack-surface recon β WHOIS + DNS + SSL + tech-stack on a target domain to map what it runs and exposes.
- Cert & DNS monitoring β schedule SSL + DNS checks across your domains to catch expiries and misconfigurations before they bite.
- Sender-health audit β DMARC + RBL + DNS (SPF/DKIM) to score a domain’s email deliverability and spoofing risk.
- Vendor / M&A due diligence β fingerprint a counterparty’s stack and domain hygiene as a technical-risk signal.
Why pay-per-use
Enterprise security-data platforms (BuiltWith, MXToolbox Pro, certificate monitors) bundle and subscription-price these checks. These actors bill per result, run in your own Apify account (API/SDK/MCP), and hand you structured output β ideal for occasional recon, scheduled monitoring, or wiring checks into your own tooling.
FAQ
Is the tech-stack detection a real Wappalyzer/BuiltWith alternative? Yes β it fingerprints frameworks, CMS, analytics, and infrastructure per URL, billed per result instead of by subscription.
Can I monitor SSL/DNS across many domains? Yes β run the SSL and DNS actors over a domain list on a schedule to catch expiries and changes.
Do the WHOIS tools use RDAP? They use modern WHOIS/RDAP sources to return registrant, registrar, dates, and nameservers in structured form.
What does it cost? Pay-per-event on Apify β per lookup/result, no subscription or seat fee.
Get started
Start with the Tech Stack Detection API or DNS Records Lookup, or browse the full NexGenData catalog.
CVE intelligence β guides & data
Latest additions
- Domain Security Posture Checker — one-call DNS, SPF, DMARC & TLS report card per domain
- CVE Vulnerability Monitor
- Dependency Advisory Monitor
Recently added β vulnerability & advisory intelligence
- CVE & KEV Vulnerability Monitor β track new CVEs and CISA KEV entries as structured JSON.
- Dependency Advisory Monitor β monitor open-source dependency security advisories on demand.
- Domain Security Posture Checker β audit a domain’s DNS, TLS, email-auth (SPF/DMARC/DKIM) and headers in one structured report.
Schedule these with Make
Run these actors on a schedule and route results into Sheets/Slack/email via Makeβs official Apify integration:
Automate these with Zapier
Run these actors on a schedule and route results into Sheets/Slack/Airtable/HubSpot via Zapierβs official Apify integration:
Automate these with n8n
Run these actors on a schedule and route results into Sheets/Slack via n8n and Apifyβs verified node: