Skip to content

Inspect a domain

One scan returns the registrar and expiry, TLS certificate, known subdomains, DNS records, hosting provider, HTTP headers, SPF, and DMARC behind any public domain.

Checks one public domain. No port scan, no signup, nothing stored.

What this returns

Registration

Registrar, creation and expiry dates, domain age, status codes, and DNSSEC, read from RDAP.

TLS

The live certificate: issuer, validity window, days to expiry, and the names it covers.

Hosting

Web, DNS, and mail hosts identified separately from network data, nameservers, and MX — often three different companies.

DNS

A, AAAA, NS, MX, TXT, CAA, and DMARC records.

Subdomains

Hostnames discovered passively from Certificate Transparency logs, with a live-resolution check.

Headers

HTTPS and HTTP status, redirects, server, and content type.

Mail

MX routing plus SPF and DMARC presence.

Surprises in the records?

We untangle domain, DNS, and mail setups as part of system work: one clean map of what runs where, then the fixes.

Book a call