ToolAssay

DNSSEC health check

DNSSEC health check: reports whether a domain is DNSSEC-signed (DNSKEY), has a DS record at the parent, and whether the resolver authenticated the answer, with advisory warnings.

Answeringour last check, 2026-09-24
1 of 1checks answered this week
626 msmedian answer time
$0.005listed price per call
$0.005price it asked us

Paid test badge: not yet. The checks above are free: we call the tool without paying and read the payment request it sends back. The Verified badge needs paid calls whose answers match the promised output, and nobody can buy a badge.

Endpoint

GET https://dns.use.x402atlas.com/dnssec

CategoryEverything else
Provider hostdns.use.x402atlas.com
Networkseip155:137, eip155:42161, eip155:8453, solana:5eykt4UsFv8P8NJdTREpY1vzqKqZKvdp
Payment schemesexact
Self-reported calls, 30 days5 from 2 payers (the provider's figure, not ours)

Our checks, last 30 days

DayResultHTTPAskedTime
2026-09-24 valid payment request 402$0.005 626 ms

Example input (from the provider)

{
  "method": "GET",
  "queryParams": {
    "domain": "example.com"
  },
  "type": "http"
}

Promised output schema (from the provider)

{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "properties": {
    "input": {
      "additionalProperties": false,
      "properties": {
        "method": {
          "enum": [
            "GET"
          ],
          "type": "string"
        },
        "queryParams": {
          "properties": {
            "domain": {
              "description": "Bare domain to check for DNSSEC signing (not an IP literal, not localhost, not under a reserved suffix like .local/.internal)",
              "maxLength": 253,
              "minLength": 1,
              "type": "string"
            }
          },
          "required": [
            "domain"
          ],
          "type": "object"
        },
        "type": {
          "const": "http",
          "type": "string"
        }
      },
      "required": [
        "type",
        "method"
      ],
      "type": "object"
    },
    "output": {
      "properties": {
        "example": {
          "properties": {
            "authenticated": {
              "description": "True when the resolver set the DoH AD (Authenticated Data) flag",
              "type": "boolean"
            },
            "dnssec_enabled": {
              "description": "True when a DNSKEY record is present",
              "type": "boolean"
            },
            "domain": {
              "description": "The queried domain",
              "type": "string"
            },
            "has_ds": {
              "description": "True when the parent zone publishes a DS record",
              "type": "boolean"
            },
            "queried_at": {
              "description": "UTC timestamp of the check",
              "format": "date-time",
              "type": "string"
            },
            "warnings": {
              "description": "Advisory posture warnings; never affects the status code",
              "items": {
                "type": "string"
              },
              "type": "array"
            }
          },
          "required": [
            "domain",
            "dnssec_enabled",
            "has_ds",
            "authenticated",
            "warnings",
            "queried_at"
          ],
          "type": "object"
        },
        "type": {
          "type": "string"
        }
      },
      "required": [
        "type"
      ],
      "type": "object"
    }
  },
  "required": [
    "input"
  ],
  "type": "object"
}

This page as JSON