# SaaS Customer Finder: Companies Using Any Tool (`scrapemint/saas-customer-finder`) Actor

Find companies that use any of 170 tools, from Atlassian, OpenAI and Slack to HubSpot, Shopify and Stripe, with emails, phones and LinkedIn. Reads public DNS records that reveal internal SaaS a homepage never shows. No proxy, no login. Pay per company.

- **URL**: https://apify.com/scrapemint/saas-customer-finder.md
- **Developed by:** [Ken M](https://apify.com/scrapemint) (community)
- **Categories:** Lead generation, Developer tools
- **Stats:** 2 total users, 1 monthly users, 100.0% runs succeeded, 0 bookmarks
- **User rating**: No ratings yet

## Pricing

Pay per event

This Actor is paid per event. You are not charged for the Apify platform usage, but only a fixed price for specific events.

Learn more: https://docs.apify.com/actors/running/actors-in-store.md#pay-per-event

## What's an Apify Actor?

An Actor is a serverless cloud program that runs on the Apify platform. It has two run modes.
In Batch mode, an Actor accepts a well-defined JSON input, performs an action which can take anything from a few seconds to a few hours,
and optionally produces a well-defined JSON output, datasets with results, or files in key-value store.
In Standby mode, an Actor provides a web server which can be used as a website, API, or an MCP server.

Apify vocabulary and the platform model are defined once, in the agent quickstart at https://apify.com/agents.md.

## How to integrate an Actor?

If asked about integration, you help developers integrate Actors into their projects.
You adapt to their stack and deliver integrations that are safe, well-documented, and production-ready.

Do not guess an integration path. Every one of them is in the agent quickstart at https://apify.com/agents.md: the Apify MCP server, Agent Skills with the Apify CLI, the JavaScript and Python clients, the REST API, and the account-free path for an agent with no human to sign in. It also carries the rule on stating cost before the first paid run.

For examples already wired to this Actor's own input schema, see the [API](#api) section below.

Each client library has reference documentation the quickstart does not restate: [JavaScript/TypeScript](https://docs.apify.com/api/client/js/docs.md) (`npm install apify-client`) and [Python](https://docs.apify.com/api/client/python/docs.md) (`pip install apify-client`).

# README

## SaaS Customer Finder: Companies Using Any Tool

Name a tool, get the companies that use it, with contacts. **Atlassian, OpenAI, Anthropic, Slack, Zoom, DocuSign, Salesforce, HubSpot, Microsoft 365, Google Workspace, Shopify, Klaviyo, Stripe, Intercom, Zendesk** and 170 technologies in all.

Most tech lookup tools only read the homepage, so they see the website's widgets and nothing behind them. This actor also reads the company's **public DNS records**. To switch on Atlassian, DocuSign, ChatGPT Enterprise, Slack or Zoom for a company domain, the vendor makes the company publish a verification record, and every email sender has to be listed in SPF. Those records show the internal stack: tools that never appear on a website.

No login, no API key, no browser, no proxy.

### What you get

One row per company that uses the tool:

| Field | Example |
|---|---|
| `domain` | `loyaltylion.com` |
| `companyName` | `LoyaltyLion` |
| `matchedTechnologies` | `["Atlassian"]` |
| `primaryEmail` | `hello@loyaltylion.com` |
| `emails`, `phones` | every public address and `tel:` number on the site |
| `linkedin`, `social` | LinkedIn company page, X, Facebook, Instagram, YouTube, GitHub |
| `emailProvider` | `Google Workspace`, `Microsoft 365`, `Zoho Mail`... |
| `technologies` | the full detected stack, each with where it was seen (`dns` or `homepage`) and the exact evidence |
| `byCategory` | the stack grouped: collaboration, ai, security, marketing, support, hosting, cms, ecommerce... |
| `rank` | the company's position in the Tranco top sites list |
| `leadTier` | `lead` (has its own email) or `match` |

Each detection carries its evidence (for example `txt: atlassian-domain-verification=...` or `html: static.klaviyo.com`), so you can check any row yourself.

### Examples

- **Sell a Jira add-on:** `technologies: ["Atlassian"]`, `startRank: 20000`
- **Pitch AI governance tools** to companies already paying for ChatGPT Enterprise or Claude: `["OpenAI", "Anthropic"]`
- **Shopify stores on Klaviyo** (both required): `["Shopify", "Klaviyo"]`, `matchMode: "all"`
- **German companies on Microsoft 365:** `["Microsoft 365"]`, `tlds: ["de"]`
- **Enrich your own list:** put a CRM export in `domains` and ask for `["Salesforce", "HubSpot"]`

### Where the companies come from

By default it walks the [Tranco list](https://tranco-list.eu), a research-grade ranking of the top 1 million sites, refreshed daily. The first few thousand ranks are global giants, so start at `startRank: 5000` or deeper for mid-size companies you can actually reach. When a run ends, the `SUMMARY` record gives `nextStartRank` so the next run continues where this one stopped.

Or pass your own `domains` list and it checks only those.

### Speed

- **DNS-detectable tools** (Atlassian, OpenAI, Anthropic, Slack, Zoom, DocuSign, Microsoft 365, Google Workspace, Salesforce, Stripe, SendGrid...): about 10 domains a second. The homepage is fetched only for matches.
- **Homepage-only tools** (Shopify, Klaviyo, WordPress, Webflow, Intercom widget...): about 2 to 3 domains a second, because every candidate's homepage is read.

### Pricing

Pay per company found. Scanning is free.

| Event | Price | When |
|---|---|---|
| `company_match` | $0.01 | the company uses the tool, no email of its own found |
| `company_lead` | $0.03 | the company uses the tool, and a public email on its own domain was found |

The first matched company in every run is free. A run that finds nothing costs nothing but compute, and returns a note explaining why.

### Notes

- Only public data is read: DNS records every resolver answers, and pages any visitor can open. Nothing behind a login.
- Homepage checks are one direct request from Apify's servers, with no proxy. A few sites stall or block that traffic, so homepage-only tools (Shopify, Klaviyo, WordPress...) can miss them. DNS detections are not affected.
- A company that has not published a verification record will not be found through DNS even if it uses the tool, so treat results as "confirmed users", not "all users".
- An unrecognised tool name returns the full supported list in a free note row.

# Actor input Schema

## `technologies` (type: `array`):

Tools the companies must use. Examples: Atlassian (or Jira), OpenAI (or ChatGPT), Anthropic, Slack, Zoom, DocuSign, Salesforce, HubSpot, Microsoft 365, Google Workspace, Shopify, Klaviyo, Stripe, Intercom, Zendesk, WordPress, Webflow. An unrecognised name returns the full supported list.

## `matchMode` (type: `string`):

any: a company using at least one of the technologies. all: only companies using every one of them.

## `tlds` (type: `array`):

Only scan domains ending in these, e.g. de, co.uk, fr, io. Leave empty for every domain.

## `maxResults` (type: `integer`):

Stop once this many matching companies are found. You pay only for matches.

## `startRank` (type: `integer`):

Where to start in the Tranco list of top sites (1 = the biggest). The first few thousand are global giants; start at 5000 or higher for reachable mid-size companies. Each run's summary gives the rank to continue from.

## `maxDomainsToScan` (type: `integer`):

Upper bound on domains checked. Scanning is free; only matches are charged. DNS-only tools (Atlassian, OpenAI, Slack, Microsoft 365) scan about 1,000 domains a minute.

## `domains` (type: `array`):

Check these domains instead of the top sites list, e.g. a CRM export or a conference attendee list. Domains or URLs.

## `includeContacts` (type: `boolean`):

Read each matched company's homepage (and contact page when needed) for emails, phones, LinkedIn and socials.

## `concurrency` (type: `integer`):

Domains checked in parallel.

## Actor input object example

```json
{
  "technologies": [
    "Atlassian"
  ],
  "matchMode": "any",
  "tlds": [],
  "maxResults": 20,
  "startRank": 5000,
  "maxDomainsToScan": 2000,
  "domains": [],
  "includeContacts": true,
  "concurrency": 25
}
```

# Actor output Schema

## `companies` (type: `string`):

Domain, company name, matched technologies, emails, phones, LinkedIn and socials, email provider, and every technology detected with its evidence.

## `summary` (type: `string`):

Domains scanned, matches, why the run stopped, and the startRank to continue from.

# API

You can run this Actor programmatically using our API. Below are code examples in JavaScript, Python, and CLI, as well as the OpenAPI specification and MCP server setup.

## JavaScript example

```javascript
import { ApifyClient } from 'apify-client';

// Initialize the ApifyClient with your Apify API token
// Replace the '<YOUR_API_TOKEN>' with your token
const client = new ApifyClient({
    token: '<YOUR_API_TOKEN>',
});

// Prepare Actor input
const input = {
    "technologies": [
        "Atlassian"
    ],
    "maxResults": 20,
    "startRank": 5000,
    "maxDomainsToScan": 2000
};

// Run the Actor and wait for it to finish
const run = await client.actor("scrapemint/saas-customer-finder").call(input);

// Fetch and print Actor results from the run's dataset (if any)
console.log('Results from dataset');
console.log(`💾 Check your data here: https://console.apify.com/storage/datasets/${run.defaultDatasetId}`);
const { items } = await client.dataset(run.defaultDatasetId).listItems();
items.forEach((item) => {
    console.dir(item);
});

// 📚 Want to learn more 📖? Go to → https://docs.apify.com/api/client/js/docs

```

## Python example

```python
from apify_client import ApifyClient

# Initialize the ApifyClient with your Apify API token
# Replace '<YOUR_API_TOKEN>' with your token.
client = ApifyClient("<YOUR_API_TOKEN>")

# Prepare the Actor input
run_input = {
    "technologies": ["Atlassian"],
    "maxResults": 20,
    "startRank": 5000,
    "maxDomainsToScan": 2000,
}

# Run the Actor and wait for it to finish
run = client.actor("scrapemint/saas-customer-finder").call(run_input=run_input)

# Fetch and print Actor results from the run's dataset (if there are any)
print(f"💾 Check your data here: https://console.apify.com/storage/datasets/{run.default_dataset_id}")
for item in client.dataset(run.default_dataset_id).iterate_items():
    print(item)

# 📚 Want to learn more 📖? Go to → https://docs.apify.com/api/client/python/docs/quick-start

```

## CLI example

```bash
echo '{
  "technologies": [
    "Atlassian"
  ],
  "maxResults": 20,
  "startRank": 5000,
  "maxDomainsToScan": 2000
}' |
apify call scrapemint/saas-customer-finder --silent --output-dataset

```

## MCP server setup

```json
{
    "mcpServers": {
        "apify": {
            "type": "http",
            "url": "https://mcp.apify.com/?tools=fetch-actor-details,scrapemint/saas-customer-finder"
        }
    }
}
```

The hosted server signs you in with OAuth on first connect, so no API token belongs in this config. Clients without OAuth support can send an `Authorization: Bearer <APIFY_API_TOKEN>` header instead, using a token from API & Integrations in Apify Console (https://console.apify.com/settings/integrations).

## OpenAPI specification

Download the OpenAPI definition: https://api.apify.com/v2/actors/aNwSSP6dcVgLPirxi/builds/UbFJbTU6u3uyRxyY6/openapi.json
