Security benchmark · Bengaluru

How secure are dental clinics in Bengaluru?

We ran an external security check on 14 dental clinics in Bengaluru using nothing but public records and a single visit to each homepage. Here is what we found.

70/100
average exposure score
(lower is better)
100%
scored grade C or worse

What we found

86%
12 of 14 have not enabled DNSSEC.
79%
11 of 14 have no DMARC record, so anyone can send email pretending to be them.
71%
10 of 14 have no Content Security Policy.
43%
6 of 14 have an SPF record that does not actually block forgeries.
36%
5 of 14 have lookalike domains registered against them.
21%
3 of 14 still accept obsolete encryption that browsers have retired.

Is your practice one of them?

The check is free, takes about a minute, and needs nothing but your web address. No signup.

Why these particular things matter

Email impersonation is the expensive one. If a domain has no DMARC record, anyone can send email that appears to come from that business. The standard attack is a fake invoice sent to a customer with the criminal's bank details on it — the customer has no way to tell, and the money is rarely recovered.

Most of what we find takes an afternoon to fix and costs nothing. The problem is not difficulty, it is that nobody is looking.

Method: each business was assessed from public DNS and domain registration records, a standard HTTPS connection, and one ordinary request for the homepage — the same thing any visitor's browser does. No ports were scanned and no logins were attempted. We publish aggregate figures only and never name an individual business. Groups smaller than 8 are not published at all. Full scanning policy.

← All security benchmarks