Domain Intelligence: WHOIS/RDAP, DNS, Subdomains, SSL, $2/1k avatar

Domain Intelligence: WHOIS/RDAP, DNS, Subdomains, SSL, $2/1k

Pricing

Pay per event

Go to Apify Store
Domain Intelligence: WHOIS/RDAP, DNS, Subdomains, SSL, $2/1k

Domain Intelligence: WHOIS/RDAP, DNS, Subdomains, SSL, $2/1k

Bulk domain lookup from public protocols: RDAP registration (registrar, created, expires, nameservers, age), DNS over HTTPS (A, AAAA, MX, NS, TXT with SPF and DMARC parsed), subdomains from certificate transparency, SSL certificate expiry and key HTTP security headers. $0.002 per domain.

Pricing

Pay per event

Rating

0.0

(0)

Developer

Open Data Actors

Open Data Actors

Maintained by Community

Actor stats

0

Bookmarked

2

Total users

1

Monthly active users

2 hours ago

Last modified

Share

Domain Intelligence Lookup: WHOIS/RDAP, DNS, subdomains, SSL and security headers at $0.002 per domain

Domain Intelligence on Apify

Domain Intelligence sample output table

  • In short: Domain Intelligence Lookup (Apify actor transparent_meteorite/domain-intelligence-lookup) looks up registration, DNS, email-security, subdomain, SSL and HTTP security-header facts for a list of domains from public protocols.
  • Who it is for: security and IT teams, email deliverability consultants, domain investors, sales teams qualifying accounts.
  • Input: a list of domains, max domains, include subdomains, max subdomains, check SSL, check headers.
  • Output: registrar, creation and expiry dates, domain age, nameservers, A/AAAA/MX/NS/TXT records, parsed SPF and DMARC, subdomains, SSL issuer and expiry, security headers.
  • Price: $0.002 per domain plus $0.00005 per run start. Pay per result, no subscription; Apify's free plan credit covers a first test.
  • Limits: RDAP data depends on the registry (some ccTLDs return little); subdomains are only those seen in certificate transparency logs.

Key facts

  • Actor name: Domain Intelligence Lookup
  • Actor ID: transparent_meteorite/domain-intelligence-lookup
  • Store page: https://apify.com/transparent_meteorite/domain-intelligence-lookup
  • Data source: RDAP, DNS over HTTPS, certificate transparency logs and the live site
  • Pricing model: pay per event (apify-actor-start $0.00005, domain-looked-up $0.002)
  • Output formats: JSON, CSV, Excel, XML, HTML table, RSS (Apify dataset)
  • Access: Apify Console, REST API, JavaScript/Python clients, schedules, webhooks, Apify MCP server
  • Login or third-party API key needed: no, only an Apify account
  • Also known as: WHOIS API, bulk domain lookup, DMARC checker, SPF record checker, subdomain finder, SSL expiry checker
  • Maintainer: transparent_meteorite (independent developer)
  • Last updated: 2026-10-07

Paste a list of domains; get registration data, DNS records with SPF and DMARC parsed, subdomains from certificate transparency, the TLS certificate and HTTP security headers, one row per domain.

Everything comes from public protocols: RDAP (the WHOIS successor), DNS over HTTPS (Cloudflare, Google as fallback), public certificate transparency logs (crt.sh, Cert Spotter as fallback), a TLS handshake on port 443 and one HTTPS request to the homepage. No API keys, no browser, no proxies. A section that fails (for example crt.sh timing out) is reported in the row's errors field and never fails the whole row.

Quick start

Press Start with the prefilled form (example.com, apify.com, github.com). Or use your own list:

{
"domains": ["example.com", "apify.com", "github.com"],
"maxDomains": 3,
"includeSubdomains": true,
"maxSubdomains": 50,
"checkSsl": true,
"checkHeaders": true
}

URLs such as https://www.example.com/page are reduced to their host. Malformed entries (IPs, ports, credentials, reserved TLDs) are skipped, listed in the run log and not charged.

Input

FieldDefaultWhat it does
domainsexample.com, apify.com, github.comDomains to look up (required)
maxDomains100 (1-5000)Cap on domains looked up and charged this run
includeSubdomainstrueQuery certificate transparency for subdomain names
maxSubdomains200 (1-5000)Cap on names returned per domain (subdomainCount still shows the full count)
checkSsltrueRead the TLS certificate on port 443
checkHeaderstrueFetch the homepage and score six security headers

Output

One row per domain. Main fields:

FieldWhat it is
domain, registrableDomain, checkedAtNormalized host, its registrable domain, timestamp
registeredtrue, false (confirmed non-existent) or null (unknown)
registrar, createdAt, expiresAt, updatedAt, ageDaysRDAP registration data
nameservers, statusRDAP nameservers and status flags
dnsA, AAAA, MX, NS, TXT, CNAME records and DNS status
hasSpf, hasDmarc, dmarcPolicySPF and DMARC presence, DMARC policy (none, quarantine, reject)
subdomainCount, subdomains, certificatesSeen, subdomainsSourceNames seen in public certificates
sslIssuer, sslValidTo, sslDaysLeft, sslCertificate issuer, expiry and full detail
securityHeadersScore, securityHeadersScore 0-6 for HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy
answeredHow many sections returned an answer
errorsPresent only when a section failed or was skipped, one message per section

Pricing

Pay per event, no subscription:

EventPrice
Actor start$0.00005 per run
Domain looked up$0.002 per domain ($2 per 1,000)

A domain is charged once, only when at least one section returned an answer (a confirmed non-existent domain counts). Malformed input is free.

Use from AI agents (MCP, ChatGPT, Claude, Perplexity)

Domain Intelligence Lookup works as a tool for AI assistants through the official Apify MCP server. Add this server URL to any MCP client (Claude Desktop, Claude Code, Cursor, ChatGPT connectors, VS Code):

https://mcp.apify.com/?actors=transparent_meteorite/domain-intelligence-lookup

Claude Desktop / Cursor config:

{
"mcpServers": {
"apify": {
"url": "https://mcp.apify.com/?actors=transparent_meteorite/domain-intelligence-lookup",
"headers": { "Authorization": "Bearer <YOUR_APIFY_TOKEN>" }
}
}
}

Then ask in plain language, for example: "How do I check SPF and DMARC for many domains at once?"

Call it directly over HTTP (runs the actor and returns the dataset items in one request):

curl -X POST "https://api.apify.com/v2/acts/transparent_meteorite~domain-intelligence-lookup/run-sync-get-dataset-items?token=$APIFY_TOKEN" \
-H "Content-Type: application/json" \
-d '{"domains": ["example.com", "apify.com", "github.com"], "maxDomains": 3, "includeSubdomains": true, "maxSubdomains": 50, "checkSsl": true, "checkHeaders": true}'

Python:

from apify_client import ApifyClient
client = ApifyClient("<YOUR_APIFY_TOKEN>")
run = client.actor("transparent_meteorite/domain-intelligence-lookup").call(run_input={"domains": ["example.com", "apify.com", "github.com"], "maxDomains": 3, "includeSubdomains": true, "maxSubdomains": 50, "checkSsl": true, "checkHeaders": true})
for item in client.dataset(run["defaultDatasetId"]).iterate_items():
print(item)

The same actor works in n8n, Make, Zapier, LangChain, LlamaIndex and CrewAI through their Apify integrations.

Questions people ask

How do I check SPF and DMARC for many domains at once? Give the domains to this actor; each row includes the parsed SPF and DMARC records.

Is there a cheap bulk WHOIS API? This actor returns RDAP registration data (the successor to WHOIS) at $0.002 per domain.

Can it find subdomains? Yes, from certificate transparency logs, up to maxSubdomains per domain.

Limits and notes

  • crt.sh is often slow; the actor falls back to Cert Spotter, and on failure the row still returns with subdomainsError. Subdomain lists reflect only names that appear in public certificates, not a full DNS enumeration.
  • SSL and header checks are skipped for hosts that do not resolve or resolve only to private addresses (SSRF guard).
  • RDAP data depends on the registry; some TLDs return less, and registrant contact details are not requested or returned.
  • Public lookups are rate limited upstream; very large lists run slower because crt.sh requests are spaced out.
  • Only public protocol data is read. Nothing is guessed, and no personal data is collected beyond what a registry publishes in the fields above.

Changelog

  • 2026-10-07: added plain-language summary, key facts, AI-agent (MCP) section and question-style FAQ; refreshed Store SEO metadata.