Paste the address
Drop any address you want to screen into the pill. Gmail, Outlook, custom domains, role inboxes, all accepted. We query it against the blocklists receiving servers check.
Screen any address or domain for blocklist, DNSBL, and sender-reputation risk with 99.99% accuracy on our platform, no list upload required. No signup.
Free to run. No signup, no card — checks the address, its domain, and its IP.
Trusted by 500,000+ leading GTM teams of all sizes
Three steps, no signup, no card. Paste any address, run the nine-check scan, read the blocklist verdict in two seconds.
Drop any address you want to screen into the pill. Gmail, Outlook, custom domains, role inboxes, all accepted. We query it against the blocklists receiving servers check.
Nine checks fire in sequence: syntax, domain and MX records, Spamhaus, SORBS and Barracuda listings, mailbox reachability, sender-reputation scoring, catch-all behaviour, and disposable domains, all folded into one verdict.
Clear, watchlisted, or blacklisted, plus the exact lists you landed on and a 0-100 blocklist-risk score in about two seconds. Start the delisting before your next send.
Blocklist status is only half the story. Sender reputation moves your mail, and a blacklist check reads both before you hit send.
An email blacklist check answers the question behind every “is my email blacklisted” search: does this address, or the domain and IP behind it, sit on a list that mail servers consult before accepting a message? Those lists are blocklists, the DNS-queryable kind called DNSBLs, and receiving servers check them on every inbound connection. Land on one and your mail is rejected at the door or shunted to spam with no warning. An email blacklist lookup reads those lists back to you, so you learn it from a two-second scan instead of a quarter of flatlined open rates.
The same nine-check engine our paid email verification API runs. Every email, every verification, every time.
Every address runs a full RFC 5321 and RFC 5322 compliance pass before a single network call goes out. The engine catches what visual scanning misses, the double dot in [email protected], the trailing period, the IDN homograph that looks valid but resolves to a different domain.
Bundled typo suggestions let your form offer “did you mean [email protected]?” instead of rejecting silently.


Once syntax passes, the engine resolves the domain. We confirm the DNS records exist, fetch the MX record priority list in order, and verify at least one mail-exchange server is actively accepting connections right now.
Misspelled domains like gmial.com, expired domains, and parked-for-sale domains all fail this gate before the engine wastes a single SMTP roundtrip.


The engine opens a TCP connection on port 25, performs the EHLO handshake, then negotiates MAIL FROM and RCPT TO. Every server response code (220, 250, 550, 552) is parsed deterministically against the IANA enhanced-status registry.
This is the moment a mailbox proves it actually exists. No third-party guesses, no statistical heuristics, just the receiving server's own answer.


Some domains accept every email regardless of whether the mailbox exists, a setup known as a catch-all configuration. The engine sends a deterministic probe to a deliberately fake address ([email protected]); if the server returns the same 250 OK it returned for the real address, the domain is catch-all.
The verdict isn't dropped, it's flagged RISKY so you know the deliverability signal is degraded.


The engine maintains a curated registry of 10,247 disposable email providers, including Mailinator, Guerrilla Mail, 10MinuteMail, Tempmail, and the long tail of regional clones.
Any address matching the blocklist is flagged INVALID. Deliverability to a mailbox that exists for 10 minutes and is never checked is functionally zero, regardless of whether the SMTP handshake passes.


info@, support@, no-reply@, admin@, billing@. These are shared inboxes, not individuals.
The engine extracts the local-part of every address, matches it against the known role-prefix registry, and tags the result with a reduced engagement score.
You don't drop them automatically. The verdict flags them as roles so you can decide.


Fresh-spam domains registered hours ago are the single biggest source of inbound abuse. The engine queries WHOIS and RDAP for every unique domain, extracts the registration date, and flags anything under 30 days old with a “fresh” warning.
Domains aged 5+ years pick up a corresponding trust signal. The same heuristic spam filters have been using since the early 2000s, ported into the verdict.


SPF, DKIM, and DMARC together prove the sender is authorised to send from that domain.
The engine reads each policy via DNS, validates SPF includes recursively, scans six common DKIM selectors, and confirms DMARC alignment with the From: header.
A failing DMARC policy means the sender can be spoofed, so the verdict warns you before you reply.


Beyond “exists vs doesn't exist”, the engine extracts the precise mailbox state from the SMTP server's response. Full inbox (552 / 522 quota), disabled mailbox (550 5.1.1), out-of-office autoresponder, frozen account.
Each state maps to a specific retry policy. Full inbox retries in 6 hours. Disabled drops permanently. The verdict tells you which bucket the bounce belongs in so your retry logic doesn't waste cycles.


Most blacklist checkers ping a few DNSBLs and hand you a yes or no. This one names every list you landed on and the reputation signals that put you there.
Every list is queried live from the public DNSBLs, never a cached guess.
Check a domain, email, or IP right here, no account, no card.
Bulk CSV in, every address scored. Same speed on every plan.
Not a yes or no, the exact blocklists, each one named.
So you fix the reputation signal that flagged you, not a guess.
1,000 free on signup. 2,500 with a work email. Pay as you go after.
Checked in memory, dropped on response. SOC 2 · GDPR · CCPA.
MXToolbox and MultiRBL ping blocklists and stop. Verifox folds blocklist status into a nine-check verdict, and verifies.
Most tools reset your balance every month. Verifox sells credits that sit in your account until you spend them.
forever
1,000credits on signup
No card required
2,500 with a work email
Free includes
one time
10,000credits
$0.0059 eachSAVE 34%
Everything in Free, plus
per month
15,000credits a month
$0.0053 each
Unused credits roll over
Everything in packs, plus
One credit verifies one address; a find costs 10. All prices in USD, checkout via Stripe.
Growth leads, marketers, and engineers running real campaigns on real lists, with a verified email on every byline.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.
Every layer of the stack carries a third-party attestation, so you can ship into regulated industries without rebuilding your compliance posture.

Independently audited to the SOC 2 Type II standard.

Built for the EU with full GDPR data-subject rights.

California opt-out, do-not-sell, plus DSAR handling.

Information security held to the ISO 27001 standard.

AI governance aligned to the new ISO 42001 standard.
An investigation into the money leaking out of your list - and the nine checks that decide whether your email is read, or never arrives at all.

57 pages, free PDF, no signup
Common questions
The questions we get from teams that land here to run an email blacklist check, with the real numbers, real limits, and real opinions behind our deliverability stack. Which blocklists matter, how delisting actually works, and where the free tier ends.
Yes. You can run 4 checks per day from this page without an account. No card, no signup, and each check runs the full blocklist and reputation scan, not a stripped-down teaser that nags you to upgrade before showing the verdict.
Create a free account and you get 1,000 checks on the spot, or 2,500 if your signup email is a work address. After that, credits are pay-as-you-go and never expire on any paid plan, with volume pricing shown for your region.
Nine checks run in parallel every time you run an email blacklist lookup, scoring both the address and the domain behind it: syntax and format validation (RFC 5321 / 5322), domain existence and MX record presence, SMTP handshake and mailbox-exists ping, disposable-domain match, role-address detection, catch-all domain detection, an AI-confidence pass on catch-all addresses, domain age and reputation scoring, and blocklist (DNSBL) and sender-reputation signals.
The verdict folds blocklist signals and sender-reputation risk into one score, so a flagged domain reads as risky before you ever hit send. Median latency sits around 380 ms per address, so the full battery feels instant. If you just need to check one email address at a time, the checker runs the very same engine.
A domain or sending IP lands on a blacklist (a blocklist or DNSBL) when it trips a spam filter’s thresholds: high bounce rates, spam-trap hits, sudden volume spikes, or recipients marking your mail as junk. Spam traps are the sneakiest of those. They are addresses that exist purely to catch senders with bad hygiene, often recycled from long-dead mailboxes, so they never opt in and never bounce. Once listed, a large share of your sends quietly route to the spam folder or get rejected outright.
The single biggest controllable cause is sending to bad addresses. Run an email bounce check on the list before each campaign and you starve the bounce-and-complaint loop that gets domains blacklisted in the first place. A free email validator pass on inbound signups closes the other door.
Yes. The free tier gives you 1,000 checks (2,500 if you sign up with a work email), so this doubles as a bulk blacklist email check for most small lists outright. Each row comes back with the same blocklist and reputation verdict the single check returns, plus the per-check breakdown in the export.
For larger lists, our paid credit packs are pay-as-you-go and never expire, with pricing localized to your region on the pricing page. CSV upload, API access, and bulk parallel processing are included from the free tier up.
No. Every blacklist lookup is processed in memory and discarded the moment the verdict renders. We never log the address, never retain the result, and never sell anything. Checking whether a domain is blacklisted should not itself create a paper trail.
That matters more here than on a plain validity check, because people often screen their own company domain or a prospect list they are not ready to share. We’re SOC 2 Type II compliant, and the privacy policy spells out exactly what we touch and what we don’t.
Fix the root cause first, then request delisting. Most blocklists run a removal form on their site; the major DNSBLs delist automatically once the abusive pattern stops and your metrics settle, typically within a few days to a few weeks depending on the list and how bad the offense was. Submitting a removal while you’re still sending to dead addresses just gets you relisted, and repeat listings take progressively longer to clear.
So the durable fix is hygiene: scrub every list with an email verifier before you send, warm new domains slowly, and keep bounce and complaint rates low. After the delisting clears, watch the domain with the domain spam checker so a relisting never catches you mid-campaign.
They answer two halves of the same question. An email verifier tells you whether an address is real and reachable; an email blacklist check tells you whether sending to it (or from the same domain) carries blocklist and reputation risk. An address can pass one and fail the other: perfectly deliverable but parked on a flagged domain, or squeaky clean on reputation yet pointing at a dead mailbox. Verifox runs the identical nine-check engine for both and returns one verdict.
If you prefer the validation phrasing, the free email validator is the same tool under a different name. All three share the same accuracy, the same verification engine, and the same free tier.
A small handful carry most of the weight. Spamhaus (SBL, XBL, and the domain-level DBL) is consulted by the majority of mail servers worldwide; SpamCop and Barracuda matter for corporate gateways. A listing on a tiny hobby DNSBL that no provider queries is mostly noise, so don’t panic over every red row in a 100-list scan.
The bigger shift: Gmail and Microsoft now lean on their own internal reputation systems more than public blocklists, which is why Verifox folds DNSBL hits together with domain reputation signals into one verdict instead of handing you a raw list of acronyms.
Yes. The REST API reference documents the inbound and outbound shapes for every endpoint, so you can drop real-time blacklist and reputation scoring into signup forms, CRMs, or any tool that speaks REST. Screening at signup is the highest-value spot: rejecting a flagged or disposable address there costs milliseconds, while letting it into your sending list costs reputation later. HubSpot, Salesforce, Zapier, Klaviyo, Mailchimp, and Brevo all connect out of the box.
Verifox also ships native MCP server support so AI agents (Claude, Cursor, custom LLM apps) can screen addresses without glue code. Drop the MCP URL into your agent config and the tools are wired.
Weekly if you send regularly, and immediately after any deliverability symptom: open rates falling off a cliff, a spike in bounces, or replies saying your mail landed in spam. Blacklist listings often happen days before you notice the damage, so a standing weekly check is the cheapest early-warning system you can run.
Pair it with a periodic email health check on the addresses you send to, and an email deliverability test before any large campaign. Teams on the API simply schedule the lookup as a cron job and alert on any verdict change.