DNSSEC health check
DNSSEC health check: reports whether a domain is DNSSEC-signed (DNSKEY), has a DS record at the parent, and whether the resolver authenticated the answer, with advisory warnings.
Answeringour last check, 2026-09-24
1 of 1checks answered this week
626 msmedian answer time
$0.005listed price per call
$0.005price it asked us
Paid test badge: not yet. The checks above are free: we call the tool without paying and read the payment request it sends back. The Verified badge needs paid calls whose answers match the promised output, and nobody can buy a badge.
Endpoint
GET https://dns.use.x402atlas.com/dnssec
| Category | Everything else |
|---|---|
| Provider host | dns.use.x402atlas.com |
| Networks | eip155:137, eip155:42161, eip155:8453, solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp |
| Payment schemes | exact |
| Self-reported calls, 30 days | 5 from 2 payers (the provider's figure, not ours) |
Our checks, last 30 days
| Day | Result | HTTP | Asked | Time |
|---|---|---|---|---|
| 2026-09-24 | valid payment request | 402 | $0.005 | 626 ms |
Example input (from the provider)
{
"method": "GET",
"queryParams": {
"domain": "example.com"
},
"type": "http"
}
Promised output schema (from the provider)
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"properties": {
"input": {
"additionalProperties": false,
"properties": {
"method": {
"enum": [
"GET"
],
"type": "string"
},
"queryParams": {
"properties": {
"domain": {
"description": "Bare domain to check for DNSSEC signing (not an IP literal, not localhost, not under a reserved suffix like .local/.internal)",
"maxLength": 253,
"minLength": 1,
"type": "string"
}
},
"required": [
"domain"
],
"type": "object"
},
"type": {
"const": "http",
"type": "string"
}
},
"required": [
"type",
"method"
],
"type": "object"
},
"output": {
"properties": {
"example": {
"properties": {
"authenticated": {
"description": "True when the resolver set the DoH AD (Authenticated Data) flag",
"type": "boolean"
},
"dnssec_enabled": {
"description": "True when a DNSKEY record is present",
"type": "boolean"
},
"domain": {
"description": "The queried domain",
"type": "string"
},
"has_ds": {
"description": "True when the parent zone publishes a DS record",
"type": "boolean"
},
"queried_at": {
"description": "UTC timestamp of the check",
"format": "date-time",
"type": "string"
},
"warnings": {
"description": "Advisory posture warnings; never affects the status code",
"items": {
"type": "string"
},
"type": "array"
}
},
"required": [
"domain",
"dnssec_enabled",
"has_ds",
"authenticated",
"warnings",
"queried_at"
],
"type": "object"
},
"type": {
"type": "string"
}
},
"required": [
"type"
],
"type": "object"
}
},
"required": [
"input"
],
"type": "object"
}