Tool directory
Pick the check that matches the question you are trying to answer.
Every tool opens the same lookup workspace, but each entry point starts with the right record family and a clearer context for the task.
Choose the right starting point
Use the directory like a guided entry point: start with the record family that matches the incident, then move into the full lookup workspace when you need resolver-level detail.
Use-case group
Browse by diagnostic path
The left column stays broad and explanatory. The right rail is for jumping directly to a specific record family without losing the directory context.
Use-case group
Reachability checks
Use these checks when a hostname or IP is not resolving the way you expect.
A Record
Check whether a hostname resolves correctly over IPv4.
Resolve apex and host IPv4 answers, provider divergence, and TTL spread.
AAAA
Confirm IPv6 reachability and dual-stack readiness.
Inspect IPv6 coverage, dual-stack readiness, and resolver agreement.
CNAME
Inspect alias chains when a hostname points to another service.
Trace alias chains and see whether providers agree on canonical answers.
Reverse DNS
Validate reverse mapping for IPs used in mail or infrastructure.
Resolve PTR names for IPv4 or IPv6 addresses without switching tools.
Use-case group
Email checks
Start here for mail routing, SPF, DMARC, ownership tokens, and sender policy debugging.
MX
Debug mail delivery or confirm the target mail providers.
Validate mail routing, priorities, and supporting TXT policy records.
TXT
Verify SPF, DMARC, ownership tokens, or long TXT payloads.
Inspect SPF-like policy records, ownership challenges, and other TXT payloads.
Use-case group
Security checks
These checks focus on trust signals and certificate policy published through DNS.
CAA
Review certificate issuance policy before or after TLS changes.
Verify certificate authority restrictions and uncover missing issuer policy.
DNSSEC
Check whether trust-chain signals are visible across public resolvers.
Use the full workspace to evaluate DS visibility, validation, and provider trust.
Use-case group
Registration checks
These checks help when delegation, nameservers, serials, or zone authority are in question.
NS
Review delegation when a zone is moving or behaving inconsistently.
Check authoritative nameserver sets and cross-provider consistency.
SOA
Inspect serials and authority data during zone changes.
Read the zone serial, refresh cadence, and authority metadata.
Quick checks
Narrow the lookup
Switch straight to a specific record family.