Security Insights
Security Insights provides you with a list of insights, covering different areas of your Cloudflare environment, such as: Cloudflare account settings, DNS record configurations, SSL/TLS certificates configurations, Cloudflare Access configurations and Cloudflare WAF configurations.
Listed below are the specific insights currently available:
| Insight Name | Description |
|---|---|
| CASB integration status | We detect unhealthy CASB integrations. |
Dangling A Records | A record is pointing to an IPv4 address that you might no longer control. You are at risk of a subdomain takeover. |
Dangling AAAA Records | A record is pointing to an IPv6 address that you might no longer control. You are at risk of a subdomain takeover. |
Dangling CNAME Records | A record is pointing to a resource that cannot be found. You are at risk of a subdomain takeover. |
| DMARC Record Errors | We detect an incorrect or missing DMARC record. |
| Domains missing TLS Encryption | We detect that there is no TLS encryption for this domain. |
| Domains supporting older TLS version | This domain supports older versions of the TLS protocol. |
| Domains without 'Always Use HTTPS' | HTTP requests to this domain may not redirect to its HTTPS equivalent. |