Skip to main content

Is crossbeam.com a Scam? Security Check Results - Crossbeam Reviews

crossbeam.com favicon

Is crossbeam.com Safe? Security Analysis for Crossbeam

Check if crossbeam.com is a scam or legitimate. Free security scan and reviews.

TechnologyN/amedium
Google Tag ManagerIntercomJetboostSlick CarouselWebflow CMS+1 more
Analyzed 9/6/2025Completed 11:04:42 PM
80
Security Score
LOW RISK

AI Summary

Crossbeam operates a sophisticated SaaS platform focused on ecosystem revenue enablement, targeting sales, marketing, and partnership teams within technology companies. The platform facilitates account mapping, co-selling, and data-driven revenue growth, positioning itself as a global standard in ecosystem-led growth with a large network of over 30,000 companies. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content tailored to its B2B audience. Technically, the website leverages modern web technologies including Webflow CMS, Google Tag Manager, Intercom, and other marketing and analytics tools, ensuring fast performance and excellent mobile optimization. The infrastructure is hosted on Webflow, a reputable hosting provider, and employs HTTPS with strong security headers, indicating a robust security posture. Security-wise, the site demonstrates good practices such as HTTPS enforcement, secure forms, and a dedicated security page. However, it lacks explicit incident response contacts and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. The absence of public WHOIS data introduces some uncertainty regarding domain registration legitimacy, though the professional nature of the site mitigates this concern. Overall, Crossbeam's website is a well-executed digital asset supporting its business objectives, with a strong security foundation and good privacy compliance. Strategic improvements in transparency around security incident handling and domain registration details would further strengthen trust and compliance.

Detected Technologies

Google Tag ManagerIntercomJetboostSlick CarouselWebflow CMSIntellimize

🧠AI Business Intelligence

Technology stack, business insights, and market analysis powered by AI.

Business Intelligence

Market & Strategic Analysis

Crossbeam is positioned as a key player in the ecosystem-led growth market, offering a platform that enables companies to collaborate and drive revenue through shared data insights. Its business model is SaaS-based, focusing on technology sector clients who benefit from partner ecosystem intelligence and co-selling capabilities. The company leverages a large partner network and provides extensive resources, training, and marketplace integrations to support customer success. The website content and structure reflect a focus on mid to large-sized enterprises, emphasizing scalability and integration capabilities. Crossbeam's competitive advantage lies in its comprehensive ecosystem data platform and active community engagement through user groups and alliances.

Security Posture Analysis

Comprehensive Security Assessment

The website exhibits a mature security posture with HTTPS enforced and multiple security headers implemented, reducing common web vulnerabilities. The presence of a dedicated security page indicates organizational awareness of security best practices. However, the lack of publicly available incident response contacts and vulnerability disclosure policies suggests room for improvement in transparency and readiness. No exposed sensitive data or vulnerable libraries were detected in the HTML content. Privacy compliance is supported by comprehensive privacy and cookie policies with consent mechanisms, aligning with GDPR requirements. Overall, the security posture is strong but could benefit from enhanced incident response and disclosure frameworks.

Strategic Recommendations

Priority Actions for Security Improvement

1

Publish clear incident response contact information and procedures on the website.

Observations

AI-powered comprehensive website and business analysis.

AI-Enhanced Website Analysis

Business Insights

Company:

Crossbeam

Description:

Crossbeam's Ecosystem Revenue Platform empowers sales, marketing, and partnerships to unlock new growth opportunities, close deals faster, and drive revenue with actionable ecosystem insights.

Key Services:
Ecosystem IntelligenceAccount MappingCo-sellingOpportunity SourcingData Enrichment
Content Quality:

excellent

Branding:

consistent

Technical Stack

Technologies:
Google Tag ManagerIntercomJetboostSlick CarouselWebflow CMSIntellimize
Platforms:
Webflow
Performance:

fast

Mobile:

excellent

Accessibility:

good

SEO:

good

Security Assessment

Security Score:
85/100
Best Practices:
  • HTTPS enforced
  • Security page detailing practices
  • No exposed sensitive data in HTML
  • Secure forms with proper input types

Analytics & Tracking

Services:
Google Analytics (via Google Tag Manager)
Tracking Level:moderate
Privacy Compliance:good

Advertising & Marketing

Ad Networks:
Google Ads
Tracking Pixels:
G2 AttributionGoogle Ads Conversion Tracking
Marketing Tools:
IntercomIntellimizeJetboost
Transparency Level:good

Website Quality Assessment

Design Quality:excellent
User Experience:excellent
Content Relevance:excellent
Navigation Clarity:excellent
Professionalism:excellent
Trustworthiness:high

Key Observations

1

Website is fully accessible with no blocking or WAF challenge.

🛡️Security Headers

HTTP security headers analysis and recommendations.

Security Headers

HTTP security headers analysis

80/100
Score

Weak Referrer-Policy configuration

LOW

Current value: "no-referrer-when-downgrade"

Missing Permissions-Policy header

MEDIUM

Controls browser features and APIs

Sensitive data may be cached

LOW

Cache-Control header should include "no-store" for sensitive pages

👤GDPR Compliance

Privacy and data protection assessment under GDPR regulations.

GDPR Compliance

Privacy and data protection assessment

100/100
Score
No issues found

GDPR Compliance Analysis

Privacy Policy85% confidence
Cookie Policy85% confidence
Contact Information Found90% confidence
phone

🛡️NIS2 Compliance

Network & Information Security Directive compliance assessment.

NIS2 Compliance

Network & Information Security Directive

17/100
Score

No information security framework found

HIGH

NIS2 requires documented cybersecurity and information security measures

No vulnerability disclosure policy

MEDIUM

NIS2 encourages coordinated vulnerability disclosure

No security policy documentation found

HIGH

NIS2 requires documented cybersecurity governance and risk management

No incident response procedures found

HIGH

NIS2 requires documented incident response and business continuity plans

No business continuity planning found

MEDIUM

NIS2 emphasizes operational resilience and business continuity

No security contact information

HIGH

NIS2 requires clear incident reporting channels

No vulnerability reporting mechanism

MEDIUM

Clear vulnerability reporting supports coordinated disclosure

No NIS2 reference found

LOW

Consider explicitly mentioning NIS2 compliance efforts

📧Email Security

SPF, DKIM, and DMARC validation and email security assessment.

Email Security

SPF, DKIM, and DMARC validation

100/100
Score
No issues found
SPF
Sender Policy Framework
DKIM
DomainKeys Identified Mail
DMARC
Domain-based Message Authentication
MX Records
Mail Exchange Records
BIMI
Brand Indicators
MTA-STS
Mail Transfer Agent Security
TLS-RPT
TLS Reporting
DNSSEC
DNS Security
SPF Details
Record:
v=spf1 include:sendgrid.net include:amazonses.com include:_spf.salesforce.com include:_spf.google.com ip4:108.179.144.0/20 ip4:139.180.17.0/24 ip4:141.193.184.128/25 ip4:141.193.184.32/27 ip4:141.193.184.64/26 ip4:141.193.185.128/25 ip4:141.193.185.32/27 ip4:141.193.185.64/26 ip4:143.244.80.0/20 ip4:158.247.16.0/20 ip4:167.89.19.147 ip4:167.89.80.59 ip4:18.208.124.128/25 ip4:185.250.239.148 ip4:185.250.239.168 ip4:185.250.239.190 ip4:198.2.128.0/24 ip4:198.2.132.0/22 ip4:198.2.136.0/23 ip4:198.2.145.0/24 ip4:198.2.177.0/24 ip4:198.2.178.0/23 ip4:198.2.180.0/24 ip4:198.2.186.0/23 ip4:198.244.59.30 ip4:198.244.59.33 ip4:198.244.59.35 ip4:198.61.254.21 ip4:205.201.131.128/25 ip4:205.201.134.128/25 ip4:205.201.136.0/23 ip4:205.201.139.0/24 ip4:209.61.151.236 ip4:209.61.151.249 ip4:209.61.151.251 ip4:216.139.64.0/19 ip4:3.210.190.0/24 ip4:3.93.157.0/24 ip4:54.174.52.0/24 ip4:54.174.57.0/24 ip4:54.174.59.0/24 ip4:54.174.60.0/23 ip4:54.174.63.0/24 ip4:69.72.40.93 ip4:69.72.40.94/31 ip4:69.72.40.96/30 ip4:69.72.47.205 ~all
DNS Lookups:4/10
Policy:~all
DKIM Selectors Found
Selector:google(1296-bit rsa)
Selector:s1(1440-bit rsa)
DMARC Details
Policy:reject
Subdomain Policy:reject
Aggregate Reports:devops+dmarc@crossbeam.com
Forensic Reports:devops+dmarc@crossbeam.com
MTA-STS Details
Mode:enforce
Max Age:14 days

🏆SSL/TLS Security

Certificate validity and encryption analysis.

SSL/TLS Security

Certificate validity and encryption analysis

72/100
Score

Weak Protocols Supported

HIGH

Server supports weak protocols: TLSv1.1

OCSP Stapling Not Enabled

LOW

OCSP stapling improves performance and privacy

Certificate Transparency Not Implemented

LOW

Certificate is not logged in Certificate Transparency logs

SSL Certificate Expires Within 90 Days

MEDIUM

SSL certificate expires in 32 days

Partial SSL/TLS Assessment

LOW

Completed 3 of 4 security checks due to time constraints

Protocol Support

TLSv1.3TLSv1.2TLSv1.1

OCSP Status

OCSP Stapling Disabled

📊DNS Health

DNS configuration and security assessment.

DNS Health

DNS configuration and security assessment

90/100
Score

DNSSEC Not Enabled

MEDIUM

DNSSEC is not configured for this domain

DNS Records

A Records:75.2.70.75, 99.83.190.102
Name Servers:
ns-1359.awsdns-41.orgDNS only
ns-1838.awsdns-37.co.ukDNS only
ns-470.awsdns-58.comDNS only
ns-562.awsdns-06.netDNS only
MX Records:
5: alt2.aspmx.l.google.com
10: aspmx2.googlemail.com
5: alt1.aspmx.l.google.com
10: aspmx3.googlemail.com
1: aspmx.l.google.com
SOA:Serial: 1, TTL: 300s

DNSSEC Status

DNSSEC Not Enabled

DNS Performance

Resolution Time:73ms

SPF Analysis

SPF Record:
v=spf1 include:sendgrid.net include:amazonses.com include:_spf.salesforce.com include:_spf.google.com ip4:108.179.144.0/20 ip4:139.180.17.0/24 ip4:141.193.184.128/25 ip4:141.193.184.32/27 ip4:141.193.184.64/26 ip4:141.193.185.128/25 ip4:141.193.185.32/27 ip4:141.193.185.64/26 ip4:143.244.80.0/20 ip4:158.247.16.0/20 ip4:167.89.19.147 ip4:167.89.80.59 ip4:18.208.124.128/25 ip4:185.250.239.148 ip4:185.250.239.168 ip4:185.250.239.190 ip4:198.2.128.0/24 ip4:198.2.132.0/22 ip4:198.2.136.0/23 ip4:198.2.145.0/24 ip4:198.2.177.0/24 ip4:198.2.178.0/23 ip4:198.2.180.0/24 ip4:198.2.186.0/23 ip4:198.244.59.30 ip4:198.244.59.33 ip4:198.244.59.35 ip4:198.61.254.21 ip4:205.201.131.128/25 ip4:205.201.134.128/25 ip4:205.201.136.0/23 ip4:205.201.139.0/24 ip4:209.61.151.236 ip4:209.61.151.249 ip4:209.61.151.251 ip4:216.139.64.0/19 ip4:3.210.190.0/24 ip4:3.93.157.0/24 ip4:54.174.52.0/24 ip4:54.174.57.0/24 ip4:54.174.59.0/24 ip4:54.174.60.0/23 ip4:54.174.63.0/24 ip4:69.72.40.93 ip4:69.72.40.94/31 ip4:69.72.40.96/30 ip4:69.72.47.205 ~all

Network Security

Port scanning and network exposure analysis.

Network Security

Port scanning and network exposure analysis

100/100
Score

Good Network Security Posture

LOW

No unnecessary services detected on common risky ports

🔧Technical Analysis

Detailed technical findings and analysis from AI assessment.

Technical Analysis

Comprehensive security assessment findings

Additional Findings

The website is built on Webflow CMS, utilizing modern JavaScript libraries and integrations such as Google Tag Manager, Intercom, Jetboost, and Intellimize for marketing optimization and user engagement. The site demonstrates fast loading times and excellent mobile responsiveness. SEO is well addressed with appropriate meta tags and Open Graph data. Accessibility features are present but could be further enhanced. Hosting is managed by Webflow, a reliable provider. The technical stack supports scalability and performance, though continuous monitoring of third-party scripts is advised to mitigate potential security risks.
Analyze Another Website