Inspect a domain
One scan returns the registrar and expiry, TLS certificate, known subdomains, DNS records, hosting provider, HTTP headers, SPF, and DMARC behind any public domain.
Checks one public domain. No port scan, no signup, nothing stored.
What this returns
Registration
Registrar, creation and expiry dates, domain age, status codes, and DNSSEC, read from RDAP.
TLS
The live certificate: issuer, validity window, days to expiry, and the names it covers.
Hosting
Web, DNS, and mail hosts identified separately from network data, nameservers, and MX — often three different companies.
DNS
A, AAAA, NS, MX, TXT, CAA, and DMARC records.
Subdomains
Hostnames discovered passively from Certificate Transparency logs, with a live-resolution check.
Headers
HTTPS and HTTP status, redirects, server, and content type.
MX routing plus SPF and DMARC presence.
Surprises in the records?
We untangle domain, DNS, and mail setups as part of system work: one clean map of what runs where, then the fixes.
Book a call