Developer Updates

API Changelog

Track breaking changes, new features, and deprecations. We notify developers before making breaking changes.

Product update Sep 7, 2026 fix

Social username checker update

  • Earlier username-check behavior has been restored while fixes for response handling and international text are retained.
Product update Sep 7, 2026 fix

Clearer technology results during website outages

  • Fast technology scans now distinguish failed website connections and incomplete responses from empty pages.
  • After a failed fetch, fast scans can return a previously verified result, clearly marked as stale. Requests with skip_cache=1 continue to bypass saved results.
Product update Sep 7, 2026 fix

Fewer unknown results for larger social pages

  • Social username checks now return fewer unnecessary unknown results for larger pages, while malformed or blocked responses remain unknown.
  • Social username checks now preserve accented and non-Latin text when reading profile pages, instead of corrupting it.
Product update Sep 7, 2026 fix

Safer social username results

  • Social username checks handle unreadable responses more cautiously and keep uncertain results unknown.
  • YouTube checks continue using other available evidence during temporary limits. An empty channel lookup alone no longer marks a username available.
Product update Sep 4, 2026 fix

AI request-log analysis recovers from brief connection failures

  • AI analysis of request logs now retries once after a temporary connection failure within a bounded limit; requests that still fail remain errors.
Product update Sep 1, 2026 fix

More reliable scraping and WHOIS availability

  • Scrape requests now distinguish unreachable target sites from DomScan platform failures more reliably, reducing unnecessary 503 responses.
  • WHOIS and RDAP lookups are less likely to encounter transient availability errors during bursts of other checks.
  • Improved TLS deep-scan startup reliability during concurrent activity; transient failed starts are refunded.
Product update Aug 31, 2026 improvement

Threads username checks are more precise

  • Threads username checks now use exact validation when public profile evidence is inconclusive, reducing unknown results without treating blocked or changed responses as available.
Product update Aug 31, 2026 feature

Account admins for shared billing

  • Account owners can promote existing members to admins or return them to guest access from the Members page.
  • Admins can view billing, manage payment methods and auto-recharge, and purchase credits for the shared account without becoming its owner.
Product update Aug 31, 2026 fix

GitHub reserved usernames resolve correctly

  • GitHub username checks now distinguish unused but unavailable names from claimable names, so reserved routes are no longer reported as available.
Product update Aug 31, 2026 fix

Deleted Reddit usernames resolve correctly

  • Usernames from deleted Reddit accounts are now identified as unavailable because Reddit does not recycle them.
Product update Aug 30, 2026 improvement

Registrar pricing coverage now follows current evidence

  • Registrar coverage pages and sitemap links now reflect current successful standard-source evidence and configured exact-domain integrations.
  • Stale, quarantined, disabled, and metadata-only provider coverage is not published.
  • Published provider pages make their available standard-price and exact-domain scope clear.
Product update Aug 30, 2026 fix

More resilient social username checks

  • Facebook, Threads, and YouTube username checks now retry inconclusive public profile evidence before returning an unknown result.
  • Threads rate limits and login walls remain explicit unknown results and are never presented as available usernames.
Product update Aug 30, 2026 fix

MAC, website scan, and hosted-domain lookups are more resilient

  • MAC vendor lookups now recover from cold cache conditions and continue returning verified manufacturer data.
  • Website vulnerability scans now recover from temporary page-fetch transport failures within the request window.
  • WHOIS lookups for domains hosted under private platform suffixes now return limited DNS-backed evidence instead of an RDAP protocol error when registry data is not applicable.
Product update Aug 29, 2026 fix

IP lookups now return geolocation and network data reliably

  • Fixed an issue that could return every geolocation and network field as null. IP lookups now return available location, coordinates, ASN, and organization data with clear freshness and attribution metadata.
  • If IP intelligence is temporarily unavailable, the API now returns a retryable service-unavailable response and automatically refunds the request credit instead of returning a successful all-null result.
Product update Aug 28, 2026 feature

Agent Readiness scoring and expanded agent checks

  • Agent Readiness now provides a transparent 0-100 score across discoverability, content, access policy, and capabilities, with separate confidence and check-level evidence.
  • Expanded the audit to more than 35 bounded checks, including sitemaps, Markdown delivery, crawler policy, API catalogs, OAuth metadata, Agent Skills, WebMCP, remote MCP, and page structure.
  • Unknown evidence is excluded from scoring and lowers confidence. Emerging features are labeled by maturity, and the audit does not execute discovered tools or act as an SEO ranking.
  • Public HTML pages now support explicit `Accept: text/markdown` requests with `Vary: Accept` and canonical linkage, with a new Markdown sitemap and sanitized public agent guide for discovery.
Product update Aug 27, 2026 feature

DomScan API expands to the Postman API Network and prepares for Zyla

  • The DomScan Postman workspace is now publicly available with the complete collection aligned to the current OpenAPI contract.
  • A generated Zyla catalog with 106 marketplace-eligible operations, complete descriptions, examples, and provider-gateway authentication has been submitted for Zyla review.
  • The submitted Zyla surface excludes account-bound workflows. Availability on Zyla begins after marketplace approval.
  • The homepage footer now links to verified public DomScan listings on RapidAPI, Apify, and Postman.
Product update Aug 27, 2026 fix

Identity resolution now handles slow page lookups gracefully

  • Website fetching now stays within a bounded lookup window below the identity-resolution request deadline.
  • Unresolved single lookups return HTTP 200 with fetch_state: "unknown" and empty evidence, while bulk lookups return unknown data for affected items. Relevant credits are refunded.
Product update Aug 27, 2026 feature

Focused DomScan domain intelligence Actors for Apify

  • Added a focused Apify Actor catalog for WHOIS/RDAP, DNS, domain health, SSL, technology, reputation, subdomain, valuation, and availability checks.
  • Added structured per-target datasets and automation-ready outputs with explicit success and error status.
  • Added successful-result pricing by Actor, with failed results excluded from successful-result billing and Apify platform usage charged separately.
Product update Aug 27, 2026 fix

Email preferences now distinguish no choice from opting out

  • When an authentication flow did not show the optional email-guidance choice, it no longer records that missing choice as an explicit opt-out from onboarding or lifecycle emails.
  • We also repaired only affected accounts where the missing choice can be proven, while preserving any later dashboard preference changes and unsubscribes.
Product update Aug 27, 2026 improvement

RapidAPI catalog refreshed

  • RapidAPI subscribers can call supported stateless endpoints with their marketplace key and no separate DomScan account.
  • The catalog now includes 106 eligible operations with complete descriptions, request examples, and response examples for domscan.p.rapidapi.com.
  • Legacy endpoints and account-backed workflows were removed so the listing matches its executable capabilities.
  • Verified RapidAPI subscriber identities and plans now appear in the admin traffic report without storing marketplace API keys.
Product update Aug 25, 2026 feature

A full API playground in the dashboard

  • Browse and search every public API endpoint from one interactive dashboard workspace.
  • Build requests from the live API contract, edit JSON payloads, and run them with your signed-in session.
  • Inspect formatted responses, status, timing, credit details, and ready-to-copy cURL, JavaScript, and Python examples.
  • Open the API Playground directly from the signed-in sidebar, with active-page highlighting across desktop and mobile layouts.
  • Work in a dedicated full-page playground with stronger contrast, clearer focus states, and more room for requests, responses, and generated code.
  • Successful responses now replace the empty state correctly and use clearer, syntax-highlighted JSON on desktop and mobile.
Product update Aug 25, 2026 improvement

API docs sidebar navigation, clarified

  • Find endpoints faster with sticky search and actions that stay available while you browse.
  • Browse collapsible categories with item counts, clearer hierarchy, and stronger current-page highlighting.
  • Use the keyboard shortcut to focus search, with responsive layouts that keep navigation readable on smaller screens.
v2.15.0 Aug 25, 2026 feature

API v2.15.0: clearer responses and typed SDKs

  • API responses now include additive headers for request IDs, credits requested, charged, refunded, and remaining, rate-limit details, response time, API version, and data freshness. Existing response bodies are unchanged.
  • Errors now return a consistent, actionable shape with an error type, code, HTTP status, retry guidance, request ID, and a link to relevant documentation.
  • The interactive quickstart now remembers your preferred language and lets you run a real availability request with your API key, then shows response time, credits charged, and request ID.
  • The TypeScript and Python SDKs reach v0.3.0 with generated request and response types, full-response metadata, structured error classes, and safe retries that honor Retry-After and require idempotency keys for write retries.
Product update Aug 25, 2026 improvement

Privacy and cookie policies updated for product analytics

  • The cookie policy now documents the PostHog analytics cookie, what it stores and how long it lasts.
  • A new session replay section explains that recordings only run once you accept analytics cookies, that everything you type is masked, and that domains and email addresses are removed from page addresses and titles.
  • PostHog is listed as a subprocessor, with its purpose, the data it receives and its European Union storage region.
Product update Aug 25, 2026 improvement

More reliable social username checks

  • Exact present and missing-handle evidence is now used across more supported social, creator, and developer platforms.
  • Ambiguous, blocked, rate-limited, malformed, or identity-mismatched responses remain unknown instead of being presented as available.
  • Improved profile and channel redirect handling marks a name as taken only when the returned identity matches the requested handle.
Product update Aug 23, 2026 improvement

Safer, more consistent page checks

  • Scraping, technology detection, categorization, redirects, and public-page checks now share one bounded retrieval policy.
  • When primary retrieval capacity is temporarily unavailable, checks use a bounded backup path while preserving the same safety and result-classification rules.
  • Browser-rendered and non-rendered checks now use the same classification safeguards for blocked, rate-limited, and unreachable targets.
Product update Aug 23, 2026 improvement

Web page retrieval retry refinements

  • Existing resilient retries now use a different request profile after a retryable block or error from a permitted public page.
  • Rate-limited responses continue to skip retries.
Product update Aug 22, 2026 feature

Product discovery and navigation refresh

  • Organized the catalog around six product suites and solution-led discovery, so visitors can move from a goal to the relevant products and APIs.
  • Restored the interactive homepage with trust logos and a unified call to action for exploring products and getting started.
  • Unified docs navigation, corrected locale-safe links, and kept product section navigation visible on desktop.
  • Refined suite and solution pages with clearer action hierarchy, richer product and workflow cards, and responsive layouts that stay readable from desktop to mobile.
  • Rebuilt provider comparisons around current first-party pricing, real billing units, and workload-specific tradeoffs instead of generic placeholders.
  • Added a keyboard-friendly API finder to the homepage so visitors can search products by name, goal, input, or endpoint path and open the right API directly.
  • Added a site-wide command palette for fast keyboard search across products, API endpoints, documentation, suites, and free tools.
v2.14.0 Jul 16, 2026 feature

Evidence-First Vulnerability Intelligence

  • Added GET /v1/vulnerabilities with exact OSV package and version correlation plus deterministic web security configuration findings.
  • Added CISA KEV and FIRST EPSS prioritization, explicit unknown and partial coverage, and safe passive scanning without exploit payloads.
  • Published a localized scanner tool, dedicated API guide, developer documentation, MCP and SDK support, and standard or deep scan pricing.
v2.13.0 Jul 11, 2026 feature

Six New Bulk Data APIs

  • Added batch endpoints for subdomain discovery, Certificate Transparency, email authentication, hosting detection, RDAP, and DNS resolver comparison.
  • Each accepts up to 10 items, preserves input order, returns per-item errors, and charges the normal per-item rate.
  • Updated endpoint credit rates, including WHOIS at 3 credits per request or submitted bulk domain. Current rates are available at /v1/pricing.
v2.12.0 Jun 26, 2026 Breaking

Bulk Endpoint Credit Alignment

  • Bulk endpoints now bill the same per-item credits as individual requests across every plan.
  • Updated billing, pricing metadata, API docs, dashboard pricing, OpenAPI, Swagger, and Postman artifacts to use standard per-item bulk rates.
  • Bulk endpoints remain available for batching work into fewer requests with the same per-item credit cost.
v2.11.0 Apr 14, 2026 feature

API Guides & Pricing Refresh

  • Added a dedicated API pricing page with clearer endpoint pricing, billing links, and plan guidance
  • Localized API guide pages now share a unified layout with setup steps, examples, and next actions
  • Expanded API reference coverage so more public endpoints have dedicated guide pages instead of index-only listings
  • Improved MCP setup landing pages and developer actions across guide examples
  • Guide and docs pages now bypass stale page cache more aggressively so updates appear faster
v2.10.1 Apr 9, 2026 fix

Availability Confidence & ccTLD Fallbacks

  • Availability responses now include a `confidence` field to distinguish authoritative registry answers from heuristic fallbacks
  • Added DNS and WHOIS fallback handling for `.es` and similar registries that restrict direct availability checks
  • Fixed `skipCache` mode dropping results when RDAP fails mid-request
  • Improved handling for access-denied RDAP responses and transient registry dampening caches
v2.10.0 Apr 2, 2026 improvement

WHOIS Fallback Expansion

  • TLD validation now uses live IANA bootstrap data across all routes
  • Added WHOIS fallback for TLDs without RDAP bootstrap coverage and for registries with unreachable RDAP servers
  • Bulk status checks can now fall back to WHOIS for unsupported TLDs instead of failing early
  • WHOIS availability parsing now recognizes more multilingual registry responses
  • `/v1/ip` now returns HTTP 400 for private and reserved IP ranges instead of 500
v2.9.0 Mar 29, 2026 improvement

Data Quality & Performance Upgrades

  • Improved Spamhaus, tech detection, SSL, and reputation result quality across multiple intelligence endpoints
  • Expanded KV caching and unified resolver and timeout handling for lower-latency lookups
  • Improved bulk status error reporting and aligned OpenAPI auth examples with production behavior
  • Refreshed public docs and localized metadata across API landing pages
v2.8.0 Mar 3, 2026 feature

Website Categorization API Overhaul

  • Website categorization now uses an IAB-inspired taxonomy with multi-signal scoring
  • Responses include better-ranked categories, subcategories, and confidence scores
  • Added bulk categorization support and caching for larger analysis jobs
  • Docs and OpenAPI examples now reflect richer categorization responses and confidence thresholds
v2.7.0 Feb 15, 2026 fix

Historical Data Reliability

  • Expanded passive snapshot recording to strengthen `/v1/whois/history` and related historical views
  • Fixed missed history writes caused by background persistence timing on some routes
  • Historical tables now capture more consistent domain change data over time
  • Added D1 retry handling and bulk endpoint fixes for transient failures
v2.6.0 Feb 7, 2026 feature

Phase 4: New Capabilities & Data Enrichment

  • New `/v1/parking` endpoint - detect parked domains and aftermarket listings via DNS, redirect, and HTML analysis
  • New `/v1/whois/history` endpoint - track WHOIS changes over time with D1-backed snapshot storage
  • Threat intelligence now aggregates URLhaus + Spamhaus DBL + heuristic patterns
  • Domain valuation anchored to real market sale data with comparable categories
  • Hosting detection fetches dynamic IP ranges from AWS, GCP, and Cloudflare (cached 24h in KV)
  • SPF validation now counts recursive DNS lookups (RFC 7208 10-lookup limit)
  • Open Graph, Twitter Card, and meta tag extraction added to `/v1/tech`
  • DKIM checking expanded from 10 to about 50 selectors covering all major ESPs
  • DNS queries now fall back to Google DoH when Cloudflare is unavailable
  • Error cache uses type-specific TTLs for smarter retry behavior
  • Budget state is persisted so it survives application restarts
  • Added IPv6, security.txt, BIMI, MTA-STS, HTTPS/SVCB, domain age, and transfer_locked fields
v2.5.0 Jan 6, 2026 feature

Multi-currency Support

  • Added GBP and JPY currency support for domain valuation
  • New `currency` parameter on `/v1/value` endpoint (default: USD)
  • Valuation responses now include `currency` field
v2.4.2 Dec 19, 2025 improvement

Mobile Experience Improvements

  • Fixed mobile navigation UI issues
  • Added floating navigation menu for API docs on mobile
  • Improved terminal component responsive behavior
v2.4.1 Dec 12, 2025 security

Security Hardening

  • Enhanced input validation across all endpoints
  • Added rate limiting protection for authentication endpoints
  • Improved XSS protection on user-generated content
  • Security headers now enforced on all responses
v2.3.0 Nov 18, 2025 feature

Reverse Lookup APIs

  • New `/v1/reverse/mx` endpoint - find domains by mail server
  • New `/v1/reverse/ip` endpoint - find domains hosted on an IP
  • Both endpoints support pagination via `offset` and `limit` params
  • Results include confidence scores and last-seen timestamps
v2.2.1 Nov 8, 2025 fix

RDAP Reliability Improvements

  • Fixed intermittent timeouts with certain ccTLD registries
  • Improved retry logic for rate-limited RDAP servers
  • Better handling of malformed RDAP responses
  • Cache now respects registry-specific TTL hints
v2.2.0 Oct 28, 2025 feature

Email Authentication API

  • New `/v1/email-auth` endpoint for email security auditing
  • Validates SPF, DKIM, and DMARC configurations
  • Returns actionable recommendations for misconfigured records
  • Includes deliverability score based on authentication setup
v2.1.0 Oct 15, 2025 Breaking

Response Format Standardization

  • BREAKING: Error responses now use consistent `error.code` and `error.message` format
  • BREAKING: Removed deprecated `err` field from all responses
  • BREAKING: HTTP 429 responses now include `retry_after` in seconds (was milliseconds)
  • Added `error.suggestion` field with actionable guidance
  • All timestamps now in ISO 8601 format
Migration Example
// Before (v2.0.x)
{ "err": "rate limited", "retry": 5000 }

// After (v2.1.0+)
{
  "error": {
    "code": "RATE_LIMITED",
    "message": "Too many requests",
    "suggestion": "Reduce request frequency or upgrade plan",
    "retry_after": 5
  }
}
v2.0.3 Oct 2, 2025 fix

Bulk Endpoint Stability

  • Fixed race condition in bulk status checks causing duplicate results
  • Improved memory efficiency for large bulk requests
  • Added request deduplication for identical domains in same batch
v2.0.2 Sep 22, 2025 improvement

Performance Optimizations

  • Reduced average response time by 35% through edge caching improvements
  • Optimized DNS resolution with connection pooling
  • Bootstrap data now refreshed in background without blocking requests
v2.0.1 Sep 10, 2025 fix

IDN Domain Handling

  • Fixed punycode conversion for internationalized domain names
  • Improved validation for mixed-script domain labels
  • Added support for new gTLDs with non-ASCII characters
v2.0.0 Sep 1, 2025 Breaking

API v2 Launch

  • BREAKING: All endpoints moved from `/api/` to `/v1/` prefix
  • BREAKING: Authentication now requires API key in `X-API-Key` header (was query param)
  • BREAKING: Rate limits now per-key instead of per-IP for authenticated requests
  • New domain availability engine with 40% faster lookups
  • Added support for 400+ new TLDs
  • Introduced credit-based pricing model
  • New dashboard for API key management
Migration Example
// Before (v1.x)
GET /api/check?domain=example.com&key=xxx

// After (v2.0+)
GET /v1/status?name=example&tlds=com
Headers: X-API-Key: xxx
v1.5.0 Aug 18, 2025 feature

Tech Stack Detection

  • New `/v1/tech` endpoint for website technology detection
  • Identifies CDN providers, CMS platforms, frameworks, and analytics tools
  • Detection based on HTTP headers, HTML patterns, and JavaScript fingerprints
v1.4.0 Aug 5, 2025 feature

Domain Health Checker

  • New `/v1/health` endpoint for comprehensive domain health checks
  • Validates DNS configuration, SSL certificates, and security headers
  • Added `/v1/health/quick` for lightweight checks (DNS only)
  • Health scores now included in domain profile responses
v1.3.2 Jul 28, 2025 fix

Certificate Transparency Improvements

  • Fixed pagination for domains with 1000+ certificates
  • Added wildcard certificate detection
  • Improved certificate parsing for non-standard issuers
v1.3.1 Jul 20, 2025 deprecation

Deprecation Notice

  • Deprecated: `/api/*` endpoints will be removed in v2.0 (September(2025)
  • Deprecated: Query parameter authentication (`?key=xxx`) will be removed in v2.0
  • Added deprecation warnings in response headers for affected endpoints
  • Migration guide available at /docs#migration-v2
v1.3.0 Jul 12, 2025 feature

Typosquatting Detection

  • New `/v1/typos` endpoint for brand protection
  • Detects keyboard-based typos, homoglyph attacks, and TLD variations
  • Threat scoring based on registration status and content similarity
  • Webhook notifications for newly registered typosquatting domains

Get Notified of Breaking Changes

Subscribe to receive email alerts before we ship breaking changes.