RunsWith
Infrastructure intelligence. What runs where, fingerprinted and signed.
RunsWith takes raw DNS scan data from DomainDrift and transforms it into structured infrastructure intelligence. Service fingerprinting, provider categorization, technology stack detection, and change tracking across thousands of domains.
DomainDrift collects the telemetry. RunsWith makes it actionable. Domain-level analysis, migration detection, anomaly surfacing, and feed scoring. Every analysis carries an Ed25519 provenance receipt chained to the DomainDrift scan that produced the underlying data.
The provenance chain is unbroken. Walk backward from any RunsWith intelligence output to the raw DNS scan that sourced it. The receipt on the analysis points to the receipt on the scan. Two products, one attestation chain.
Capabilities
Infrastructure fingerprinting across 80+ provider categories
Technology stack detection from DNS, TLS, and HTTP signals
Migration and change detection
Anomaly surfacing and feed scoring
Ed25519 provenance chained to DomainDrift scan receipts
Domain-level detail and browse
