Is norton.com legit?
Norton.com appears to be a legitimate and well-established website, as expected for a major cybersecurity provider. While a couple of technical flags suggest minor areas for scrutiny (like the number of external scripts), its robust security infrastructure and long history inspire confidence.
VPN & Security average: 83/100 · based on 16 sites
Checked: April 18, 2026 at 8:17 AM UTC · Refresh
Is norton.com a scam? Here's what we found.
The site employs strong security measures like TLS 1.3, HSTS, and clickjacking protection, and Google found no threats. However, the higher number of external scripts could, in theory, introduce vulnerabilities if not meticulously vetted, a common concern for large, feature-rich websites.
With a domain registered over 34 years ago through a reputable registrar, Norton.com's identity is exceptionally well-established and trustworthy, indicating a long-standing business presence.
This is a high-traffic, well-known brand (Tranco Rank #2357) that isn't on any blacklists. Its lack of a Trustpilot profile is not uncommon for massive, direct-to-consumer software companies, but its long history speaks volumes.
The site provides clear contact information, legal pages, and a strong social media presence. The quantity of hidden elements, while potentially innocuous, could theoretically obscure content or tracking, thus lowering the transparency score slightly.
Norton.com has readily available privacy and terms of service pages, which are crucial for a company handling personal data and offering subscription services, demonstrating a commitment to legal and ethical standards.
The site benefits from solid infrastructure, including proper DNS resolution, full email authentication (SPF & DMARC), and DNSSEC. The slight variance in name servers isn't a concern for a site of this scale.
Signals Detected
This is a well-known, high-traffic website
Site uses structured data identifying itself as: Organization, WebSite
This business has no Trustpilot presence — not unusual for smaller or newer companies
Resolves to: 40.69.201.11, 23.99.92.83
Mail servers: norton-com.mail.protection.outlook.com.
Domain has SPF email authentication configured
Domain has DMARC email authentication configured
DNS providers: edns109.ultradns.org., edns109.ultradns.biz., edns109.ultradns.com., edns109.ultradns.net.
Domain created 1991-09-17T04:00:00Z (34 years, 1 months ago)
Registered through MarkMonitor Inc.
Expires in 150 days
DNSSEC status from WHOIS
crt.sh returned status 429
Excessive number of external scripts — may indicate malicious injection
Excessive hidden content found — may indicate cloaking or deceptive content
robots.txt has 21 directives and references a sitemap
Not found on any DNS blacklists
Site maintains a proper sitemap with 362 indexed pages
Valid certificate, expires in 209 days
Certificate issued by Sectigo Limited
Connection uses TLS 1.3
Site enforces HTTPS via HSTS
X-Frame-Options: SAMEORIGIN
Web server: Apache
No threats detected by Google Web Risk
Site has custom branding and social media metadata
Website is live and responding
Website appears to have contact information
Website has both privacy policy and terms of service pages
Website links to multiple social media platforms
Could not query Wayback Machine
Fast page load
Stay Safe Online
Good habits to protect yourself, no matter the scan result.
Never reuse passwords across sites.
Add a second layer of security to your accounts.
Always verify unfamiliar stores before entering payment info.