• Network & DNS
Detect the CDN or Web Application Firewall protecting any website. Identify Cloudflare, Akamai, AWS, and more.
Domain or URL only — e.g. example.com or https://example.com/page → checks example.com
• About this tool
Detect which CDN or Web Application Firewall (WAF) a website uses. Identifies Cloudflare, Akamai, Fastly, AWS CloudFront, and 20+ other providers.
• FAQ
A Content Delivery Network (CDN) caches and serves content from servers close to the user, improving load times and reducing origin server load.
A Web Application Firewall (WAF) filters and monitors HTTP traffic to protect web applications from attacks like SQL injection and XSS.
We fingerprint response headers — e.g. cf-ray (Cloudflare), x-vercel-id (Vercel), x-served-by cache-* (Fastly), and x-amz-cf-id (AWS CloudFront). AWS WAF alone rarely exposes headers on allowed responses.
WAF presence indicates the site invests in active security controls and helps set expectations during penetration testing or API integration.
• Related
HTTP Security Headers Checker
Audit the HTTP security headers of any website. Score CSP, HSTS, X-Frame-Options, and more.
IP Lookup Tool
Look up geolocation, ISP, and ASN for any IPv4 or IPv6 address.
SSL Certificate Checker
Inspect the SSL/TLS certificate for any domain. Check validity, expiry, issuer, and certificate chain.
• automated security
PandaONE runs autonomous agents against your app, validates findings with proof, and opens fixes as pull requests.
Get started