FAQ

Everything buyers ask in the first call.

Do you train AI models on DNS data?+

No. DNS data is not used for AI training or model improvement.

Who can access my report?+

Only users with the unique report link and access token can access a report.

Where are DNS exports stored?+

Raw DNS exports are processed locally in your browser and are not stored server-side. Only the generated report data is sent to ShadowDNS and stored so it can be viewed later through its unique link.

Are uploaded DNS files stored?+

No. The raw DNS export is read and parsed in your browser. It is not transmitted to ShadowDNS servers.

Can I request report deletion?+

Yes. Contact hello@shadowdns.org and the associated report will be removed.

What does ShadowDNS actually do?+

You upload a DNS log. ShadowDNS reads every query, groups them by registrable domain, and matches them against curated lists of AI tools, shadow-IT apps, newly registered domains, and known-bad indicators. You get back a one-page executive summary plus the underlying tables. ShadowDNS works with both metadata-rich DNS exports and raw DNS logs. When intelligence is available, it uses it. When it isn't, ShadowDNS derives visibility from DNS activity patterns and curated detection signatures.

Which log formats are supported?+

At launch, ShadowDNS supports Windows DNS logs, Pi-hole logs, and generic DNS CSV exports. The detection engine works with both enriched DNS exports and raw DNS query logs. Additional log formats and vendor-specific exports will continue to be added based on customer demand.

Do I need to install anything?+

No. There are no agents, no kernel modules, and no firewall changes. ShadowDNS reads the logs your DNS server already produces.

Is my data safe?+

Raw DNS exports are processed locally in your browser and are not stored server-side. DNS data is not sold, shared, or used to train AI models. Application traffic uses HTTPS/TLS.

How accurate is AI / shadow-IT detection?+

Detections are based on transparent, human-reviewable signatures and DNS activity analysis. Supporting domains and evidence are displayed in every report so findings can be independently validated.

Can I run this on a schedule?+

Not currently. ShadowDNS does not support scheduled or automated report runs. Reports are generated manually by uploading a DNS log.

Can I white-label the PDF for clients?+

Not yet. White-label and a multi-tenant MSP console are on the roadmap once we validate Pro usage.

Why DNS logs, not endpoints?+

DNS sees everything: every browser, every CLI, every script, every device. You already have the logs. You don't need a new agent rollout to get visibility.

Why upload DNS logs to ShadowDNS?+

ShadowDNS is designed to process DNS logs for visibility analysis only. DNS exports are read and parsed locally in your browser to generate the requested report. DNS data is not sold, shared for advertising purposes, or used to train AI models.