What do this domain's DNS records reveal?
DNS is the backbone of a domain — and a common source of security gaps. Missing email-authentication records let anyone spoof a domain in phishing.
DARKSHARE resolves the full record set and checks email-security posture, flagging risky misconfigurations.
What do this domain's DNS records reveal?
3 anonymous scans a day · no signup · zero query logs
Check it free nowWhat we check
- ✓Core records — A, AAAA, MX, NS and CNAME resolution.
- ✓Email security — SPF, DKIM and DMARC presence and policy strength.
- ✓TXT & verification — ownership and service-verification records.
- ✓Misconfigurations — dangling records and spoofing-friendly gaps.
Data sources we cross-reference
We cross-reference 49+ specialised sources (of 176+ total).
How the 0–100 risk score works
Missing or weak DMARC/SPF (which enable email spoofing) raise the score. A fully configured, hardened domain scores low.
Frequently asked questions
Why do SPF/DKIM/DMARC matter?
Without them, attackers can send email that appears to come from the domain — the basis of business-email-compromise scams.
Can DNS reveal hidden services?
Records and subdomains often expose mail servers, dev environments and third-party tools tied to the domain.
Is the lookup live?
Yes, we resolve records in real time from public resolvers.