Free tool · Network & server

DNS lookup

Look up a domain’s A, AAAA, CNAME, MX, NS, TXT, CAA and SOA records, with plain-language checks for SPF, DMARC, CAA and name server setup.

DNS Lookup

Free, no sign-up. Records come from HUB’s DNS resolver and may be cached for up to their TTL.

What it checks

The records behind a domain

DNS connects a domain name to the servers for its website, email and verification services. The lookup queries each common record type and adds notes where the records show a problem or a missing safeguard.

Website records

A (IPv4) and AAAA (IPv6) addresses and CNAME aliases, with a warning when private or reserved addresses are published in public DNS.

Email records

MX servers with priorities, the SPF record in TXT, and the DMARC policy at _dmarc. The notes flag multiple SPF records, SPF records that allow every server (+all), and missing or monitoring-only DMARC.

Domain control

NS name servers and the SOA record with serial and timing values, plus CAA records that restrict which certificate authorities may issue certificates for the domain.

Verification and other TXT

All TXT records, including verification tokens for Google, Microsoft and other services, so you can see what has been added over the years.

Why it matters

Email deliverability and changes without surprises

Since 2024, Gmail and Yahoo require bulk senders to authenticate email with SPF, DKIM and DMARC, and messages from domains without them are more likely to be filtered as spam. A domain that sends no email at all benefits too: an SPF record of “v=spf1 -all” and a DMARC policy of p=reject make it harder to impersonate.

DNS is also where hosting moves go wrong. Checking the current records before a migration, lowering TTLs a day ahead, and comparing the records afterwards avoids an afternoon of broken email or a website pointing at the old server.

About DKIM
DKIM keys live at selector names (for example google._domainkey) that cannot be listed from outside. Check the DKIM record with the selector your email provider gives you.

Questions

About DNS lookups

Once DNS points to the right server, check that the certificate covers the domain.

Why do I see old records after a change?

Resolvers cache records for the TTL shown. Until it expires, some users and tools still get the previous values. Lower the TTL before planned changes.

Can a domain have two SPF records?

No. Receivers treat more than one SPF record as a permanent error. Merge all senders into one record with several include: mechanisms.

Do I need IPv6 (AAAA)?

It is optional. Almost every visitor can reach IPv4-only sites. Adding IPv6 is good practice when your hosting supports it.

Which resolver does the lookup use?

The resolver of HUB’s server, which follows normal caching rules. Results match what most of the internet sees once caches have updated.

This tool came from ToolsPing?

Yes. It extends ToolsPing’s DNS record and domain-to-IP tools with all common record types and email authentication checks.

Need help with what
the tools found?

HUB engineers implement technical SEO, performance, security and AI-readiness fixes on WordPress, Magento, custom PHP and modern JavaScript stacks.

Contact HUB