I will perform public website exposure and misconfiguration check osint


About this gig
Ever wondered what attackers see about your website without touching a single line of code?
I'll use legal OSINT techniques to uncover public exposures, misconfigurations, and risks visible to anyone online. Perfect for small businesses, WordPress sites, or anyone wanting a quick security reality check.
What I Check (100% passive, public data only):
This is the same information attackers use during reconnaissance and target selection.
Exposed admin/login panels, directories, or open folders
Leaked emails, API keys, backups, or test files in public sources
Server/tech stack fingerprinting (headers, TLS/HTTPS issues)
Subdomains, historical snapshots (Wayback Machine), and archive exposures
Basic security headers and common misconfigurations attackers spot first
What You Get:
Professional PDF report with screenshots, evidence links, and risk ratings (Low/Medium/High)
Asset inventory (domains, subdomains, endpoints discovered)
Plain English explanations + real business impact explained in plain English (why this matters, what could happen)
Authorized Testing Only: You must own the target or have written permission.
What I DON'T do: No hacking, no scans, no logins, no private data.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Filip
- FromPoland
- Member sinceJul 2025
- Avg. response time1 hour
- Last delivery6 months
Languages
English, Polish
FAQ
Is this a full pentest?
No, legal OSINT only - public data visible to attackers.
What sites can I check?
Any domain you own/permissioned (WordPress, custom, etc.)
Report format?
PDF with screenshots, risks rated, step-by-step fixes.
Safe/legal?
100% passive recon - no scans or access/
Delivery time?
Basic in 24h. Message for rush.

