Authoritative DNS evidence
TXT Record Lookup
Read complete TXT values, reconstruct quoted chunks, compare authoritative answers, and inspect TTL, DNSSEC, SPF, DMARC, DKIM, and verification clues without treating a lookup as a full policy audit.
- Complete TXT values
- Authority agreement and TTLs
- SPF, DKIM, and DMARC clues
- DNSSEC and raw evidence
Query a public DNS name
Paste a hostname or URL. Internationalized names are converted to their DNS form; paths, ports, and a trailing dot are normalized.
The lookup sends the normalized public DNS name to Octetify’s same-origin analyzer. Standard analyses have a 12-second service budget, protocol analyses 25 seconds, and may return partial evidence. Capacity limits or upstream DNS failures can require a retry. Results are live but DNS authorities, resolver caches, and DNSSEC validators can legitimately disagree.
TXT analysis result
Interpretation and next steps
Findings distinguish what the DNS evidence proves from format clues that still need a dedicated protocol validator.
Logical TXT records
Each value is the application-facing TXT string after adjacent quoted character-strings are concatenated without added spaces. Wire evidence remains available below each record.
Authority and answer agreement
Direct observations expose authoritative nameserver reachability, response codes, answer groups, TTLs, CNAME traversal, and delegation context.
| Nameserver | Addresses | State | RCODE | TXT TTL | Latency |
|---|
DNSSEC evidence
The verdict uses validation-chain output and resolver claims. An AD flag alone is shown as a claim, not treated as independent proof.
| Resolver | Address | RCODE | AD claim | CD control | Latency |
|---|
Raw analyzer evidence
This unmodified JSON is useful for tickets and deeper review. Export adds only the local query configuration alongside this response.