Is docker.com legit?
This site appears highly trustworthy, indicating a well-established and professionally managed online presence. While it has a slightly higher number of external scripts than ideal, its robust security measures, long history, and transparent operations outweigh this minor concern.
SaaS average: 81/100 · based on 62 sites
Checked: April 21, 2026 at 8:41 AM UTC
Is docker.com a scam? Here's what we found.
The security posture is strong, featuring a valid SSL certificate with modern TLS 1.3, HSTS enforcement, and effective protection against clickjacking. The only notable concern is the elevated number of external scripts, which presents a minor potential attack vector.
The identity of the domain is clearly established with an impressive age of over 31 years, using a reputable registrar. This longevity provides significant confidence in its stable and well-maintained presence.
Its reputation is excellent, evidenced by its high Tranco rank, extensive web archive history spanning 29 years, and absence from all DNS blacklists. The lack of a Trustpilot profile is not a significant negative for a site of this nature.
The site exhibits strong transparency, featuring complete branding, readily available contact information, and connections to multiple social media platforms. This commitment to openness is a positive indicator for users.
Legal compliance is well addressed with the clear presence of both privacy policy and terms of service pages. This demonstrates an understanding and adherence to user data protection and site usage guidelines.
The infrastructure is robust and well-configured, with multiple reliable name servers, proper DNS resolution, and comprehensive email authentication including DMARC. The expiry date in 279 days is also a healthy timeframe.
Signals Detected
This is one of the most visited websites globally
Site uses structured data identifying itself as: WebSite
This business has no Trustpilot presence — not unusual for smaller or newer companies
Domain created 1995-01-25T05:00:00Z (31 years, 8 months ago)
Registered through Gandi SAS
Expires in 279 days
DNSSEC status from WHOIS
Excessive number of external scripts — may indicate malicious injection
Valid certificate, expires in 70 days
Certificate issued by Let's Encrypt
Connection uses TLS 1.3
robots.txt has 29 directives and references a sitemap
Site has custom branding and social media metadata
Site enforces HTTPS via HSTS
X-Frame-Options: SAMEORIGIN
Web server: nginx
No threats detected by Google Web Risk
Resolves to: 2620:12a:8000::4, 2620:12a:8001::4, 23.185.0.4
Mail servers: aspmx.l.google.com., alt1.aspmx.l.google.com., alt2.aspmx.l.google.com., alt3.aspmx.l.google.com., alt4.aspmx.l.google.com.
Domain has DMARC email authentication configured
DNS providers: ns-1289.awsdns-33.org., ns-1981.awsdns-55.co.uk., ns-207.awsdns-25.com., ns-568.awsdns-07.net.
Site maintains a proper sitemap with 15 indexed pages
Not found on any DNS blacklists
Earliest archive snapshot from 19961221
Website is live and responding
Website appears to have contact information
Website has both privacy policy and terms of service pages
Website links to multiple social media platforms
Could not query certificate transparency logs
Fast page load
Stay Safe Online
Good habits to protect yourself, no matter the scan result.
Never reuse passwords across sites.
Add a second layer of security to your accounts.
Always verify unfamiliar stores before entering payment info.