Skip to main content

Is itsoffbrand.com a Scam? Security Check Results - It's Off Brand LTD Reviews

itsoffbrand.com favicon

Is itsoffbrand.com Safe? Security Analysis for It's Off Brand LTD

Check if itsoffbrand.com is a scam or legitimate. Free security scan and reviews.

TechnologyN/asmall
WebflowGoogle Tag ManagerWebGLRiveMotion Design+1 more
Analyzed 9/7/2025Completed 2:12:53 AM
52
Security Score
MEDIUM RISK

Security scan incomplete. 3 out of 9 security checks failed to complete. The website may be inaccessible or protected by security measures. Please retry the scan or verify the website is accessible.

AI Summary

It's Off Brand LTD is a Scottish born, globally operating digital marketing, branding, and web design agency. They specialize in a broad range of services including branding, web design, SEO, PPC, WebGL, 3D and motion design, UI/UX, and content strategy. The company positions itself as a creative and innovative agency with a professional and friendly team, targeting businesses seeking to elevate their digital presence. Their website showcases multiple industry awards and recognitions, reinforcing their market credibility. Technically, the website is built on modern platforms such as Webflow, utilizing advanced web technologies including WebGL and motion design frameworks. The site is well-optimized for performance, mobile responsiveness, and accessibility, with structured data enhancing SEO. Analytics are implemented via Google Tag Manager, indicating a moderate level of user tracking. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks some security headers and explicit cookie consent mechanisms, which are areas for improvement. The absence of WHOIS data raises questions about domain registration legitimacy, though the professional web presence and social media links suggest a legitimate business. Overall, the website presents a strong digital footprint with room for enhanced security and privacy compliance. Strategic recommendations include implementing security headers, adding cookie consent, publishing security policies, and verifying domain registration details to strengthen trust and compliance.

Detected Technologies

WebflowGoogle Tag ManagerWebGLRiveMotion DesignJavaScript

🧠AI Business Intelligence

Technology stack, business insights, and market analysis powered by AI.

Business Intelligence

Market & Strategic Analysis

The company operates in the technology sector as a digital marketing and branding agency, serving a global clientele. Their business model focuses on providing creative and technical services that blend design, development, and digital marketing. The presence of high-profile clients and industry awards indicates a competitive market position. Revenue streams likely derive from project-based engagements and ongoing digital marketing services. The company maintains an active partnership ecosystem, including a manifesto subdomain and social media channels, supporting brand awareness and client engagement. Growth indicators include a diverse portfolio of featured work and recognitions. Strategic observations suggest a focus on innovation and digital creativity as key differentiators.

Security Posture Analysis

Comprehensive Security Assessment

The website demonstrates a moderate security maturity level with HTTPS enforced and no visible exposure of sensitive data. However, the lack of security headers such as Content-Security-Policy and absence of a published security policy or incident response contact reduce overall security posture. Compliance with GDPR is partially indicated by the privacy policy, but the missing cookie consent mechanism is a gap. No vulnerabilities or malware were detected in the content. Incident response readiness and security culture indicators are not evident from the site. Enhancing these areas would improve risk management and regulatory compliance.

Strategic Recommendations

Priority Actions for Security Improvement

1

Implement comprehensive security headers including Content-Security-Policy, X-Frame-Options, and X-XSS-Protection.

Observations

AI-powered comprehensive website and business analysis.

AI-Enhanced Website Analysis

Business Insights

Company:

It's Off Brand LTD

Description:

We can help you with Branding, Web Design, SEO, PPC & Keyword, WebGL, 3D & Motion Design, UI / UX, Content Strategy. Professional, friendly and talented team. Get in touch!

Key Services:
BrandingWeb DesignSEOPPC & KeywordWebGL3D & Motion DesignUI / UXContent Strategy
Content Quality:

excellent

Branding:

consistent

Technical Stack

Technologies:
WebflowGoogle Tag ManagerWebGLRiveMotion DesignJavaScript
Frameworks:
Webflow
Platforms:
Webflow Hosting
Performance:

fast

Mobile:

excellent

Accessibility:

good

SEO:

good

Security Assessment

Security Score:
85/100
Best Practices:
  • HTTPS enabled
  • No exposed sensitive data in HTML
  • Use of Google Tag Manager for analytics

Analytics & Tracking

Services:
Google Analytics (via Google Tag Manager)
Tracking Level:moderate
Privacy Compliance:basic

Advertising & Marketing

Transparency Level:basic

Website Quality Assessment

Design Quality:excellent
User Experience:excellent
Content Relevance:excellent
Navigation Clarity:excellent
Professionalism:excellent
Trustworthiness:high

Key Observations

1

Website is a professional digital marketing and branding agency site

🛡️Security Headers

HTTP security headers analysis and recommendations.

Security Headers

HTTP security headers analysis

0/100
Score
Analysis failed - content could not be retrieved

👤GDPR Compliance

Privacy and data protection assessment under GDPR regulations.

GDPR Compliance

Privacy and data protection assessment

0/100
Score
Analysis failed - content could not be retrieved

🛡️NIS2 Compliance

Network & Information Security Directive compliance assessment.

NIS2 Compliance

Network & Information Security Directive

0/100
Score
Analysis failed - content could not be retrieved

📧Email Security

SPF, DKIM, and DMARC validation and email security assessment.

Email Security

SPF, DKIM, and DMARC validation

85/100
Score

No BIMI Record

LOW

BIMI displays brand logos in email clients

No MTA-STS Policy

MEDIUM

MTA-STS enforces TLS for email delivery

No TLS-RPT Record

LOW

TLS-RPT provides reporting for email TLS issues

SPF
Sender Policy Framework
DKIM
DomainKeys Identified Mail
DMARC
Domain-based Message Authentication
MX Records
Mail Exchange Records
BIMI
Brand Indicators
MTA-STS
Mail Transfer Agent Security
TLS-RPT
TLS Reporting
DNSSEC
DNS Security
SPF Details
Record:
v=spf1 include:_spf.google.com ~all
DKIM Selectors Found
Selector:google(1096-bit rsa)

🏆SSL/TLS Security

Certificate validity and encryption analysis.

SSL/TLS Security

Certificate validity and encryption analysis

75/100
Score

SSL Certificate Expires Within 90 Days

MEDIUM

SSL certificate expires in 36 days

Weak SSL Key Length

HIGH

SSL certificate uses 256-bit key, which is considered weak

Partial SSL/TLS Assessment

LOW

Completed 2 of 4 security checks due to time constraints

Certificate Details

Subject:www.itsoffbrand.com
Issuer:WE1
Valid Until:10/13/2025 (36 days)
SANs:www.itsoffbrand.com

OCSP Status

OCSP Stapling Disabled

📊DNS Health

DNS configuration and security assessment.

DNS Health

DNS configuration and security assessment

75/100
Score

DNSSEC Not Enabled

MEDIUM

DNSSEC is not configured for this domain

CAA Records Not Configured

LOW

Certificate Authority Authorization (CAA) records not found

No DMARC Record

MEDIUM

DMARC policy not configured

DNS Records

A Records:198.202.211.1
Name Servers:
ns-cloud-b1.googledomains.comDNS only
ns-cloud-b2.googledomains.comDNS only
ns-cloud-b3.googledomains.comDNS only
ns-cloud-b4.googledomains.comDNS only
MX Records:
1: aspmx.l.google.com
5: alt1.aspmx.l.google.com
5: alt2.aspmx.l.google.com
10: alt3.aspmx.l.google.com
10: alt4.aspmx.l.google.com

DNSSEC Status

DNSSEC Not Enabled

Network Security

Port scanning and network exposure analysis.

Network Security

Port scanning and network exposure analysis

100/100
Score

Good Network Security Posture

LOW

No unnecessary services detected on common risky ports

🔧Technical Analysis

Detailed technical findings and analysis from AI assessment.

Technical Analysis

Comprehensive security assessment findings

Additional Findings

The website is built on Webflow CMS and hosting platform, leveraging modern web technologies such as WebGL, Rive animations, and motion design scripts. It uses Google Tag Manager for analytics and tracking. The site is well-structured with valid HTML and CSS, optimized for fast loading and mobile responsiveness. Accessibility features are present but could be enhanced further. SEO is supported by meta tags, Open Graph data, and JSON-LD structured data. Technical risks include reliance on third-party scripts without visible security headers and incomplete privacy compliance mechanisms. Opportunities exist to modernize security practices and improve privacy transparency.
Analyze Another Website