Skip to main content

Is ultradns.com a Scam? Security Check Results - Vercara Reviews

ultradns.com favicon

Is ultradns.com Safe? Security Analysis for Vercara

Check if ultradns.com is a scam or legitimate. Free security scan and reviews.

TechnologyUnited Statesenterprise
WordPressElementorjQueryMarketoGoogle Tag Manager+7 more
Analyzed 9/5/2025Completed 8:40:14 AM
64
Security Score
MEDIUM RISK

AI Summary

Vercara, a DigiCert company, specializes in providing authoritative DNS and managed DNS services designed for enterprise customers, including Fortune 500 companies. Their offerings focus on security, reliability, and performance, with key services such as DDoS protection and web application firewall solutions. The company positions itself as a leader in securing online experiences, leveraging strong industry certifications and a trusted brand identity. Technically, the website is built on WordPress with Elementor and integrates a comprehensive suite of marketing, analytics, and performance monitoring tools including Marketo, Google Tag Manager, New Relic, and various tracking pixels. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs robust security headers, and follows best practices in form security and data protection. No vulnerabilities or exposed sensitive data were detected. However, incident response contact information and vulnerability disclosure policies could be more prominently published to enhance transparency. Overall, the website and domain exhibit high legitimacy and trustworthiness. The lack of WHOIS data for the subdomain is expected and consistent with enterprise subdomain management. The site is safe for general audiences and aligns well with industry standards for security and privacy compliance.

Detected Technologies

WordPressElementorjQueryMarketoGoogle Tag ManagerNew RelicBing AdsFacebook PixelLinkedIn Insight TagZoomInfo PixelBizibleQualified

🧠AI Business Intelligence

Technology stack, business insights, and market analysis powered by AI.

Business Intelligence

Market & Strategic Analysis

Vercara operates in the technology sector, focusing on DNS and cybersecurity services for enterprise clients. Their business model is B2B, targeting large organizations requiring secure and reliable DNS infrastructure. The company benefits from its association with DigiCert, a recognized leader in digital security. Their market position is strong, supported by certifications like ISO 27001 and SOC 2, and a client base that includes Fortune 500 companies. The website content and structure indicate a focus on thought leadership and customer education through white papers, webinars, and reports. The partnership ecosystem includes DigiCert and other cybersecurity entities, enhancing their service portfolio and market reach.

Extracted Contact Information

Marketing Intelligence Data

Email Addresses (3)

c*****@vercara.digicert.com
s*****@vercara.digicert.com
s*****@vercara.digicert.com

Phone Numbers (1)

+1877438****

Security Posture Analysis

Comprehensive Security Assessment

Vercara demonstrates a mature security posture with enforced HTTPS, comprehensive security headers, and no visible vulnerabilities. The use of industry-standard certifications and frameworks such as ISO 27001 and NIST indicates a commitment to security best practices. The website integrates secure forms and anti-bot mechanisms, reducing risk of abuse. However, the absence of a clearly visible incident response contact and vulnerability disclosure policy suggests room for improvement in transparency and incident management readiness. Overall, the security posture is strong and appropriate for an enterprise DNS service provider.

Strategic Recommendations

Priority Actions for Security Improvement

1

Publish a dedicated vulnerability disclosure policy and security.txt file to enhance transparency and encourage responsible reporting.

Observations

AI-powered comprehensive website and business analysis.

AI-Enhanced Website Analysis

Business Insights

Company:

Vercara

Description:

Vercara provides hosted DNS services focusing on secure, fast, and accurate query responses to websites and other vital online assets. They offer authoritative DNS solutions tailored for businesses requiring reliability and security.

Key Services:
Authoritative DNSManaged DNSDDoS ProtectionWeb Application FirewallProtective DNS
Content Quality:

excellent

Branding:

consistent

Technical Stack

Technologies:
WordPressElementorjQueryMarketoGoogle Tag ManagerNew RelicBing AdsFacebook PixelLinkedIn Insight TagZoomInfo PixelBizibleQualified
Frameworks:
Elementor
Platforms:
WordPress
Performance:

fast

Mobile:

excellent

Accessibility:

good

SEO:

good

Security Assessment

Security Score:
90/100
Best Practices:
  • HTTPS enforced
  • Use of CSP
  • No exposed sensitive data in HTML
  • Secure forms with anti-bot measures

Analytics & Tracking

Services:
New RelicGoogle Analytics (via GTM)MarketoBing AdsFacebook PixelLinkedIn Insight Tag
Tracking Level:extensive
Privacy Compliance:good

Advertising & Marketing

Ad Networks:
Bing Ads
Tracking Pixels:
Facebook PixelLinkedIn Insight TagZoomInfo PixelBizibleQualified
Marketing Tools:
Marketo
Transparency Level:good

Website Quality Assessment

Design Quality:excellent
User Experience:excellent
Content Relevance:excellent
Navigation Clarity:excellent
Professionalism:excellent
Trustworthiness:high

Key Observations

1

Website is fully accessible with no blocking or WAF challenges.

🛡️Security Headers

HTTP security headers analysis and recommendations.

Security Headers

HTTP security headers analysis

25/100
Score

Weak Strict-Transport-Security configuration

LOW

Current value: "max-age=300"

Missing X-Frame-Options header

HIGH

Prevents clickjacking attacks

Missing X-Content-Type-Options header

MEDIUM

Prevents MIME type sniffing

Missing Content-Security-Policy header

HIGH

Controls resources the browser is allowed to load

Missing X-XSS-Protection header

MEDIUM

Legacy XSS protection (deprecated but still recommended)

Weak Referrer-Policy configuration

LOW

Current value: "no-referrer-when-downgrade"

Missing Permissions-Policy header

MEDIUM

Controls browser features and APIs

Sensitive data may be cached

LOW

Cache-Control header should include "no-store" for sensitive pages

👤GDPR Compliance

Privacy and data protection assessment under GDPR regulations.

GDPR Compliance

Privacy and data protection assessment

73/100
Score

No Cookie Consent Banner found

HIGH

GDPR requires explicit consent for non-essential cookies

Privacy policy may not be GDPR compliant

MEDIUM

Privacy policy lacks explicit GDPR compliance elements

GDPR Compliance Analysis

Privacy Policy85% confidence
Cookie Policy85% confidence
Contact Information Found90% confidence
phone

🛡️NIS2 Compliance

Network & Information Security Directive compliance assessment.

NIS2 Compliance

Network & Information Security Directive

55/100
Score

No vulnerability disclosure policy

MEDIUM

NIS2 encourages coordinated vulnerability disclosure

No incident response procedures found

HIGH

NIS2 requires documented incident response and business continuity plans

No security contact information

HIGH

NIS2 requires clear incident reporting channels

No vulnerability reporting mechanism

MEDIUM

Clear vulnerability reporting supports coordinated disclosure

No NIS2 reference found

LOW

Consider explicitly mentioning NIS2 compliance efforts

📧Email Security

SPF, DKIM, and DMARC validation and email security assessment.

Email Security

SPF, DKIM, and DMARC validation

82/100
Score

Complex SPF record

LOW

Too many include statements can cause lookup limits

No MTA-STS Policy

MEDIUM

MTA-STS enforces TLS for email delivery

No TLS-RPT Record

LOW

TLS-RPT provides reporting for email TLS issues

SPF
Sender Policy Framework
DKIM
DomainKeys Identified Mail
DMARC
Domain-based Message Authentication
MX Records
Mail Exchange Records
BIMI
Brand Indicators
MTA-STS
Mail Transfer Agent Security
TLS-RPT
TLS Reporting
DNSSEC
DNS Security
SPF Details
Record:
v=spf1 ip4:216.168.240.31 ip4:64.58.225.115 ip4:64.58.225.116 ip4:64.78.193.232 ip4:34.213.233.92 ip4:198.21.5.209 ip4:50.31.57.204 ip4:167.89.110.192 ip4:167.89.126.180 ip4:216.168.241.229 ip4:216.168.252.55 ip4:69.58.183.55 ip4:142.0.167.188 ip4:61.198. 17.0/25 ip4:61.198.26.96/27 ip4:202.32.181.0/25 ip4:61.203.134.224/27 ip4:210.237.158.192/27 ip4:211.133.252.0/25 ip4:219.160.177.20 ip4:202.65.18.60 ip4:91.240.105.37 ip4:202.65.16.36 ip4:64.19.218.10 ip4:64.19.218.132 ip4:142.0.167.189 ip4:142.0.167.190 ip4:202.65.20.12 ip4:216.168.247.10 ip4:35.174.145.124 ip4:216.230.14.232 ip4:198.207.147.232 ip4:216.168.244.37 ip4:44.230.95.124 ip4:23.21.109.197 ip4:23.21.109.212 ip4:147.160.167.0/26 include:spf.protection.outlook.com include:_spf.salesforce.com inc lude:sent-via.netsuite.com include:mail.zendesk.com include:smtp.azurecomm.net -all
DNS Lookups:4/10
Policy:-all
DKIM Selectors Found
Selector:selector1(1416-bit rsa)
Selector:selector2(1296-bit rsa)
Selector:mail(1296-bit rsa)
Selector:s1(1440-bit rsa)
DMARC Details
Policy:quarantine
Aggregate Reports:dmarc@digicert.com

🏆SSL/TLS Security

Certificate validity and encryption analysis.

SSL/TLS Security

Certificate validity and encryption analysis

0/100
Score

Unable to retrieve SSL certificate

CRITICAL

Could not establish secure connection to retrieve certificate information

OCSP Status

OCSP Stapling Disabled

📊DNS Health

DNS configuration and security assessment.

DNS Health

DNS configuration and security assessment

90/100
Score

DNSSEC Not Enabled

MEDIUM

DNSSEC is not configured for this domain

Domain Registration Details

Domain Age
28 years(mature)
Expiry Risk
none(816 days)
Protection Level
strongDNSSEC OFF

DNS Records

A Records:45.60.121.229, 45.60.131.229
Name Servers:
ns20.digicertdns.com
ns21.digicertdns.com
ns22.digicertdns.com
ns23.digicertdns.net
ns24.digicertdns.net
ns25.digicertdns.net
pdns196.ultradns.biz
pdns196.ultradns.com
pdns196.ultradns.net
pdns196.ultradns.org
MX Records:
0: digicert-com.mail.protection.outlook.com
SOA:Serial: 2009020686, TTL: 180s

DNSSEC Status

DNSSEC Not Enabled

DNS Performance

Resolution Time:39ms

SPF Analysis

SPF Record:
v=spf1 ip4:216.168.240.31 ip4:64.58.225.115 ip4:64.58.225.116 ip4:64.78.193.232 ip4:34.213.233.92 ip4:198.21.5.209 ip4:50.31.57.204 ip4:167.89.110.192 ip4:167.89.126.180 ip4:216.168.241.229 ip4:216.168.252.55 ip4:69.58.183.55 ip4:142.0.167.188 ip4:61.198. 17.0/25 ip4:61.198.26.96/27 ip4:202.32.181.0/25 ip4:61.203.134.224/27 ip4:210.237.158.192/27 ip4:211.133.252.0/25 ip4:219.160.177.20 ip4:202.65.18.60 ip4:91.240.105.37 ip4:202.65.16.36 ip4:64.19.218.10 ip4:64.19.218.132 ip4:142.0.167.189 ip4:142.0.167.190 ip4:202.65.20.12 ip4:216.168.247.10 ip4:35.174.145.124 ip4:216.230.14.232 ip4:198.207.147.232 ip4:216.168.244.37 ip4:44.230.95.124 ip4:23.21.109.197 ip4:23.21.109.212 ip4:147.160.167.0/26 include:spf.protection.outlook.com include:_spf.salesforce.com inc lude:sent-via.netsuite.com include:mail.zendesk.com include:smtp.azurecomm.net -all

Network Security

Port scanning and network exposure analysis.

Network Security

Port scanning and network exposure analysis

100/100
Score

Good Network Security Posture

LOW

No unnecessary services detected on common risky ports

🔧Technical Analysis

Detailed technical findings and analysis from AI assessment.

Technical Analysis

Comprehensive security assessment findings

Additional Findings

The website leverages a modern technology stack centered on WordPress and Elementor, supported by a robust set of marketing and analytics tools such as Marketo, Google Tag Manager, and New Relic. Performance is optimized with fast loading times and excellent mobile responsiveness. Accessibility features are implemented to a good standard, and SEO practices are well applied with comprehensive metadata and structured data. The hosting environment appears enterprise-grade, likely managed by DigiCert or associated providers. Technical risks are minimal, though ongoing monitoring of third-party integrations is advised to prevent potential vulnerabilities.
Analyze Another Website