# Tenant Report: alpha\.invalid

**Provider:** Microsoft 365 \+ Proofpoint gateway\
**Display name (unverified):** Synthetic Alpha Ltd\
**Tenant ID:** `a1b2c3d4-e5f6-7890-abcd-ef1234567890`\
**Region:** NA\
**Auth Type:** Federated\
**Confidence:** high (3 sources)\
**Evidence Confidence:** high\
**Inference Confidence:** high

## Email

- Microsoft 365

## Collaboration

- Slack

*Evidence roles omitted; run with `--explain` for the evidence trail.*

## Insights

- Email security 4\/5 strong \(DMARC reject\, DKIM\, SPF strict\, MTA\-STS\)

## Certificate Intelligence

- **Total Certificates:** 42
- **Issuer Diversity:** 3 distinct issuers
- **Issuance Velocity:** 7 certs in last 90 days
- **Newest Cert Age:** 2 days
- **Oldest Cert Age:** 365 days
- **Top Issuers:** Let\'s Encrypt, DigiCert, Sectigo

## Tenant Domains (3)

- alpha\.invalid
- alpha\.test
- alpha\.example

## Related Domains

- login\.alpha\.invalid
- api\.alpha\.invalid

---
*Sources: oidc\_discovery, userrealm, dns\_records*

*Scope: these are public observations from DNS, certificate transparency, and unauthenticated identity endpoints, readable by anyone with `dig` and a browser. They show what a domain publishes, not what an organization licenses, deploys, or uses, and are not a security rating.*
