Winnowhq
Brand exposure, mapped

Find the lookalikes before a squatter does.

Every typo, hyphen, and geo variant of your brand domain, availability verified against the registries, with a ranked list of exactly what to buy first. The audit a Fortune 500 legal team runs - at a price a real business will pay.

~70 domains checked·Availability verified twice·Priority buy list·72-hour delivery
A server room glowing in blue light, racks receding into the dark
The audit, in sixteen seconds

One root. Seventy masks. A buy list.

Watch the audit run: your brand root explodes into every typo, hyphen, and geo variant, each one verified twice against the registries, then ranked into exactly what to register first.

FIG. 1The attack surface, mapped and ranked
01
The math

Spend ~$100 now, or $1,500–$8,500 later.

Registering your ten priority typos costs about $97 in year one and roughly $190/yr to hold. If a squatter registers one of them first, recovering it through a WIPO UDRP dispute costs $1,500 in filing fees alone, plus $3,000–$7,000 in attorney fees - and only if you win.

The defensive registration is one to two percent of the cost of the fight. Every unregistered typo of your brand is also a phishing and business-email-compromise launch pad - recent telemetry found a single US bank with 226 typosquatted domains, 52 already able to receive email. You are not buying vanity domains. You are closing an attack surface.

A padlock against dark bokeh

· Every unregistered typo of your brand is a phishing and BEC launch pad. The audit closes the surface.

02
Proof of work

A real audit, run for a San Diego fitness brand.

70 candidate domains across two brand roots, ten extensions, and about thirty typo, hyphen, and geo variants. Every ‘available’ result confirmed twice. The audit caught a live Shopify-hosted site exploiting the brand name and surfaced an open USPTO opposition - the kind of finding that pays for the audit on its own.

70
Domains mapped
100%
Verified twice
1
Active squatter found
1
USPTO conflicts
03
What you get

What's in the audit.

  • 01

    Permutation map

    Typo, omission, transposition, doubled-letter, homoglyph, hyphen, and geo variants generated from your brand root, across the TLDs that matter.· ~70 candidates

  • 02

    Availability, double-checked

    Every result confirmed twice - RDAP and WHOIS, then a DNS NXDOMAIN pass - so an 'available' is really available.· RDAP + DNS

  • 03

    Ownership classification

    Each domain sorted into owned, likely-owned, third-party, or available, with parked-vs-active attribution on the third-party set.· 4 states

  • 04

    Priority buy list

    A ranked shortlist of what to register first, with a defensible reason per domain. Act on it the same afternoon.· ranked

  • 05

    Per-TLD cost table

    Year-one versus renewal pricing per extension, so the spend is a known number before you commit.· yr1 + renewal

  • 06

    Red flags

    Active squatters, lookalikes already receiving email, and any trademark or USPTO conflicts surfaced and sourced.· sourced

04
Order an audit

Scan it, secure it, or watch it.

Most ordered
A2 · Scan + Secure
$1,200+ reg costs

Everything in the Scan, plus we register the priority available domains on your own registrar account and point them at your primary.

  • Everything in A1
  • We register the priority domains for youdone-for-you
  • Forwarding set to your primary domaincovered
  • On your account or with written authorizationyour control
A1 · Brand Defense Scan
$450/ one scan

The full audit: every typo, hyphen, and geo variant of your brand domain, availability double-checked, owned vs third-party, with a priority buy list.

  • Typo / hyphen / geo permutations across TLDs~70
  • Availability confirmed twice (RDAP + DNS)
  • Priority buy list + per-TLD cost tableranked
  • Trademark / squatter red flags · 72h72h
A3 · Standing Watch
$1,500/ year

Monthly monitoring for newly registered lookalikes, a quarterly re-scan, and an alert when a watchlisted domain changes hands.

  • Monthly new-lookalike monitoringmonthly
  • Quarterly full re-scan4 / yr
  • Alerts on ownership / price changeslive
  • Billed annually · or $450 / quarterannual

How we keep this clean

  • -Research and registration support only - not legal advice, and not a trademark opinion. We refer UDRP and trademark matters to counsel.
  • -For Scan + Secure, we register only on your own account or with your explicit written authorization. We never acquire a third party's domain on your behalf.
  • -No domains are transacted during the research itself. The audit is a clean snapshot of the public registry record.
One engine · three lines

Public-record research, productized.

The same five-step loop, three raw materials. Harvest a public record, score it, verify every claim against the source, render a brief, deliver in 72 hours.

  1. 01Buyer Cuts
  2. 02Brand Defense
  3. 03Reddit Recovery