WHOIS / RDAP lookups
- Queries are routed via RDAP using IANA bootstrap, with port-43 WHOIS as fallback.
- Registrar of record, registration / expiry dates, and status flags are usually authoritative.
- Contact data is frequently redacted under GDPR, ICANN privacy proxies, or commercial privacy services.
WHOIS limitations
- Redacted contacts are normal — not evidence of anything suspicious.
- Some ccTLDs do not expose RDAP and have inconsistent WHOIS schemas.
- Registrar changes can lag in upstream feeds by hours or days.
DNS lookups
- Queries are sent over DNS-over-HTTPS (DoH) to Cloudflare 1.1.1.1.
- Cross-checks against Google 8.8.8.8 surface propagation mismatches.
- Record types supported: A, AAAA, CNAME, MX, TXT, NS, SOA, PTR, CAA, SRV.
DNS propagation & caching
- Recent changes may not be visible until the published TTL elapses.
- Different geographic regions and resolvers may return different answers during propagation.
- Negative caching (NXDOMAIN) can persist past the actual fix.
Registrar information
Registrar identification is derived from WHOIS / RDAP responses and IANA registrar IDs. Reseller chains and white-label registrars can obscure the underlying registrar of record.
Last reviewed: June 2026.