Domain mail lookup

The Lookup That Shows a Domain's Whole Mail Setup.

Enter any domain to see the mail provider behind it, its MX records in priority order, and whether the domain accepts email. One snapshot of the whole mail setup. No signup.

Free to run. No signup — public DNS data.

Trusted by 500,000+ leading GTM teams of all sizes

From domain to mail setup

How the mail domain lookup works

No login, no install. Enter any domain to read its MX records, identify the mail provider, and confirm it can accept email.

001DOMAIN

Enter a domain

Drop in any domain you want to inspect, like stripe.com. No login, no account, nothing to install. Paste a full URL or an email address too - the lookup reduces whatever you give it to the bare domain.

002QUERY

Query the DNS records

Verifox queries the domain's DNS for its MX records straight from the authoritative nameservers, the same resolution step the verification engine runs first on every address it checks - no third-party resolver in between.

003READ

Read the mail routing

See the MX records in priority order, the provider that runs the mail, and whether the domain accepts mail at all. That is the first deliverability signal every address verification builds on before it checks the mailbox.

The plain-English version

What a mail domain lookup actually does

One pass over a domain's DNS: who runs its mail, is it set up to receive any, and where the domain-level answer stops and the mailbox question begins.

A mail domain lookup takes a single domain and queries its DNS for the MX records - the entries that route its email - then reads three things straight back: the provider running the mail, those MX records in priority order, and whether the domain can accept any mail at all. The provider name falls out of the MX hostnames themselves, so aspmx.l.google.com reads as Google Workspace without you decoding anything. The records return lowest-number-first, so the primary server and its fallbacks are obvious, and a missing or broken MX is the clearest sign mail sent to the domain will bounce.

The 9-point engine

Nine checks, one verdict

The same nine-check engine our paid email verification API runs. Every email, every verification, every time.

  1. 01

    Syntax

    Every address runs a full RFC 5321 and RFC 5322 compliance pass before a single network call goes out. The engine catches what visual scanning misses, the double dot in [email protected], the trailing period, the IDN homograph that looks valid but resolves to a different domain.

    Bundled typo suggestions let your form offer “did you mean [email protected]?” instead of rejecting silently.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Syntax tile is ringed in the nine-check result board, beside a card showing the parse of matthamnett @ avencera.ai against RFC 5321 and RFC 5322, verdict “Valid format”.
  2. 02

    Domain & MX

    Once syntax passes, the engine resolves the domain. We confirm the DNS records exist, fetch the MX record priority list in order, and verify at least one mail-exchange server is actively accepting connections right now.

    Misspelled domains like gmial.com, expired domains, and parked-for-sale domains all fail this gate before the engine wastes a single SMTP roundtrip.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the MX Record tile is ringed in the result board, beside a card showing the real MX 0 record avencera-ai.mail.protection.outlook.com on Microsoft 365, verdict “MX record found”.
  3. 03

    SMTP handshake

    The engine opens a TCP connection on port 25, performs the EHLO handshake, then negotiates MAIL FROM and RCPT TO. Every server response code (220, 250, 550, 552) is parsed deterministically against the IANA enhanced-status registry.

    This is the moment a mailbox proves it actually exists. No third-party guesses, no statistical heuristics, just the receiving server's own answer.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the SMTP Connect tile is ringed in the result board, beside a card showing the EHLO → MAIL FROM → RCPT TO exchange and the server’s 250 2.1.5 Recipient OK reply, verdict “Mailbox proven”.
  4. 04

    Catch-all detection

    Some domains accept every email regardless of whether the mailbox exists, a setup known as a catch-all configuration. The engine sends a deterministic probe to a deliberately fake address ([email protected]); if the server returns the same 250 OK it returned for the real address, the domain is catch-all.

    The verdict isn't dropped, it's flagged RISKY so you know the deliverability signal is degraded.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Catch-All tile is ringed in the result board, beside a card comparing the real address (250 OK) with a deliberately fake probe (550 rejected), verdict “Validates recipients”.
  5. 05

    Disposable

    The engine maintains a curated registry of 10,247 disposable email providers, including Mailinator, Guerrilla Mail, 10MinuteMail, Tempmail, and the long tail of regional clones.

    Any address matching the blocklist is flagged INVALID. Deliverability to a mailbox that exists for 10 minutes and is never checked is functionally zero, regardless of whether the SMTP handshake passes.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Disposable tile is ringed in the result board, beside a card showing the 10,247-provider throwaway blocklist and no match for avencera.ai, verdict “Legitimate domain”.
  6. 06

    Role address

    info@, support@, no-reply@, admin@, billing@. These are shared inboxes, not individuals.

    The engine extracts the local-part of every address, matches it against the known role-prefix registry, and tags the result with a reduced engagement score.

    You don't drop them automatically. The verdict flags them as roles so you can decide.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Role Address tile is ringed in the result board, beside a card matching the local-part matthamnett against the info@ / support@ / no-reply@ / admin@ role registry with no match, verdict “Personal address”.
  7. 07

    Domain age

    Fresh-spam domains registered hours ago are the single biggest source of inbound abuse. The engine queries WHOIS and RDAP for every unique domain, extracts the registration date, and flags anything under 30 days old with a “fresh” warning.

    Domains aged 5+ years pick up a corresponding trust signal. The same heuristic spam filters have been using since the early 2000s, ported into the verdict.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Domain Age tile is ringed in the result board, beside a card showing the WHOIS creation date 2025-07-10 against the 30-day fresh-spam threshold, verdict “1y old”.
  8. 08

    Email authentication

    SPF, DKIM, and DMARC together prove the sender is authorised to send from that domain.

    The engine reads each policy via DNS, validates SPF includes recursively, scans six common DKIM selectors, and confirms DMARC alignment with the From: header.

    A failing DMARC policy means the sender can be spoofed, so the verdict warns you before you reply.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the DMARC tile is ringed in the result board, beside a card showing the real SPF include, DKIM selector1/selector2 and DMARC p=reject records, verdict “Aligned & enforcing”.
  9. 09

    Mailbox state

    Beyond “exists vs doesn't exist”, the engine extracts the precise mailbox state from the SMTP server's response. Full inbox (552 / 522 quota), disabled mailbox (550 5.1.1), out-of-office autoresponder, frozen account.

    Each state maps to a specific retry policy. Full inbox retries in 6 hours. Disabled drops permanently. The verdict tells you which bucket the bounce belongs in so your retry logic doesn't waste cycles.

    /dashboard/verify
    The Verifox dashboard verifying matthamnett@avencera.ai: the Inbox Exists tile is ringed in the result board, beside a card showing the live 250 2.1.5 active reply against the full-inbox and disabled states that drive retry policy, verdict “Inbox confirmed”.
What it tells you

What an MX lookup reveals about a domain

An MX lookup is a read-only window into how a domain receives email. In one query you learn who runs the mail, how it routes, and if its sendable

Verification engine
9

checks on every
address

The same DNS resolution the Verifox verification engine runs first on every address it checks.

Who runs the mail

The MX hosts name the provider — Google Workspace, Microsoft 365, Proofpoint, or a self-hosted server.

Routing and priority

Records return lowest-number-first, so you read the primary server and its fallbacks straight away.

A deliverability signal

No MX record, or a broken one, means mail bounces before it is ever sent.

The first deliverability step

An MX lookup starts the story; verifying the address confirms the mailbox itself is real.

Verify the mailbox itself

An MX lookup is only the first step. Verifying the address confirms the mailbox is real and deliverable.

Verify an address — free

Provider at a glance

The single most useful thing a mail exchanger lookup tells you — who to talk to about mail.

How we stack up

Verifox vs other
mail domain lookup tools

MXToolbox, DNSChecker, and Google Toolbox read MX records; Verifox plainly identifies providers and verifies real mailboxes.

★ The complete lookupVerifox
MXToolbox
DNSChecker
Google Toolbox
MXToolboxHostnames
DNSCheckerHostnames
Google ToolboxHostnames
MXToolbox
DNSChecker
Google Toolbox
MXToolbox
DNSChecker
Google Toolbox
MXToolbox
DNSChecker
Google Toolbox
MXToolbox
DNSChecker
Google Toolbox
MXToolbox
DNSChecker
Google Toolbox
MXToolboxSubscription
DNSCheckerFree
Google ToolboxFree
Pricing

Pay once, or not at all

Most tools reset your balance every month. Verifox sells credits that sit in your account until you spend them.

FreeProve it on your own list before you spend anything.$0

forever

1,000credits on signup

No card required

2,500 with a work email

Free includes

  • All 9 checks included
  • Full API and bulk CSV
  • Catch-all confidence scoring
  • No card required
Most popular
Credit packsBuy once, spend whenever. Slide to price your list.$59

one time

10,000credits

$0.0059 eachSAVE 34%

Everything in Free, plus

  • Credits never expire
  • Verify or find from one pool
  • Up to 79% off at volume
  • No contract, no minimum
Verifox ONECredits land monthly and stack on your balance.$79

per month

15,000credits a month

$0.0053 each

Unused credits roll over

Everything in packs, plus

  • Unused credits roll over
  • Our lowest per-email rate
  • 50 requests per second API
  • Cancel anytime

One credit verifies one address; a find costs 10. All prices in USD, checkout via Stripe.

What teams are saying

Built for the teams that ship outbound

Growth leads, marketers, and engineers running real campaigns on real lists, with a verified email on every byline.

Thomas George, GTM Lead at Stripe

90% lower bill, 0.4% bounces

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.
Thomas G.GTM Lead, Stripe
Brittany King, GTM Lead at HubSpot

Catch-all finally has a verdict

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.
Brittany K.GTM Lead, HubSpot
Dale Micallef, GTM Lead at Slack

Reputation rebuilt in 6 weeks

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.
Dale M.GTM Lead, Slack
Erica Kovalkoski, GTM Lead at Discord

0.7% bounce on 50k

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.
Erica K.GTM Lead, Discord
Greg Lindsay, GTM Lead at OpenAI

MCP in 10 minutes

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.
Greg L.GTM Lead, OpenAI
Rini Vasana, Product Manager at Vercel

10k/min held under 400ms

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.
Rini V.Product Manager, Vercel
Jonathan Aharon, GTM Lead at MongoDB

Hygiene that doesn't break pipeline

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.
Jonathan A.GTM Lead, MongoDB
Emma Fox, GTM Lead at Linear

Bulk that actually ships

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.
Emma F.GTM Lead, Linear
David Hare, GTM Lead at Snowflake

Scores you can act on

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.
David H.GTM Lead, Snowflake
Trust & compliance

Enterprise-grade security and scale

Every layer of the stack carries a third-party attestation, so you can ship into regulated industries without rebuilding your compliance posture.

  • Claymation Japanese hanko seal in jade-green clay with a twisted shimenawa rope rim, the words SOC 2 TYPE II embossed in cream clay on its face.

    SOC 2 Type II

    Independently audited to the SOC 2 Type II standard.

  • Claymation Japanese hanko seal in cobalt-blue clay with a twisted shimenawa rope rim, the word GDPR embossed in cream clay on its face.

    GDPR

    Built for the EU with full GDPR data-subject rights.

  • Claymation Japanese hanko seal in rose-pink clay with a twisted shimenawa rope rim, the word CCPA embossed in cream clay on its face.

    CCPA

    California opt-out, do-not-sell, plus DSAR handling.

  • Claymation Japanese hanko seal in terracotta clay with a twisted shimenawa rope rim, the text ISO 27001 embossed in cream clay on its face.

    ISO 27001

    Information security held to the ISO 27001 standard.

  • Claymation Japanese hanko seal in lilac-purple clay with a twisted shimenawa rope rim, the text ISO 42001 embossed in cream clay on its face.

    ISO 42001

    AI governance aligned to the new ISO 42001 standard.

Free field manual

The Dead List

An investigation into the money leaking out of your list - and the nine checks that decide whether your email is read, or never arrives at all.

The Dead List field manual, held up by the Verifox fox
Get the free manual

57 pages, free PDF, no signup

Common questions

Mail domain lookups, answered.

Common questions for mail domain lookups: what the tool returns, why some domains show no records & where it fits next to address verification.

What is a mail domain lookup?

A mail domain lookup takes a single domain and reads back its mail configuration: the provider behind it, its MX records in priority order, and whether the domain can receive mail at all. Verifox returns that snapshot in under two seconds.

Where a raw record lookup makes you read hostnames, a mail domain lookup answers the orienting question first, who handles this domain’s mail and is it configured. It is the same DNS resolution our verification engine performs before it ever touches a mailbox.

How do I find the mail server for a domain?

Paste the domain into the lookup above and read the result. The mail server, or servers, for a domain live in its MX records, and Verifox lists them in priority order along with the provider behind them. No account, no install.

You can also run nslookup -type=mx example.com or dig example.com MX in a terminal, but those return raw hostnames to decode. Configuring a mail client? The IMAP and SMTP settings page reads those out directly.

How do I find out which provider hosts a domain's email?

The mail provider is written into a domain’s MX hostnames, and a mail domain lookup reads it for you. Hosts ending in aspmx.l.google.com mean Google Workspace, mail.protection.outlook.com means Microsoft 365, and a custom hostname usually points to a self-hosted or niche provider.

Verifox names that provider in plain English rather than leaving you to recognise the hostnames, which is the fastest way to learn who hosts a domain’s email before you reach out to it or add it to a sending list.

What does a mail domain lookup tell me?

Three things at a domain level. First, who runs the mail, the provider behind the MX records. Second, how mail routes, the MX records in priority order, with the primary server and its fallbacks. Third, whether mail is accepted, a domain with no MX record cannot receive email at all.

To confirm a specific address is actually reachable, the mailbox itself has to be checked - a step no domain-level lookup can do. The domain lookup tells you mail can land; the mailbox check tells you this exact inbox will.

Why does a domain not accept email?

Usually one of two reasons shows up in a mail domain lookup: the domain publishes no MX records, so there is nowhere for mail to land, or the domain itself does not resolve, a typo, an expired registration, or a DNS misconfiguration. Either way, mail sent to it will bounce.

Some domains intentionally route mail without MX records, but for most, a missing MX means mail bounces. If the MX looks right but mail still fails, an SMTP test confirms the mail server answers, and an authentication check covers SPF, DKIM, and DMARC.

Is a mail domain lookup the same as looking up MX records?

They overlap, but a mail domain lookup is the broader of the two. A raw MX lookup returns the hosts and priorities. A mail domain lookup wraps that in a provider name and a yes-or-no on whether the domain can receive mail.

Think overview versus detail. Start here to learn who runs the mail and whether it accepts it, then go to the MX page for each record, or the SPF, DKIM, and DMARC page for the authentication layer.

Can I look up the mail setup for many domains in bulk?

Yes. The single lookup above is free with no account. For a list of domains, the REST API returns the MX records and the detected provider for each one, so you can run a bulk mail domain lookup across a whole list programmatically.

Bulk lookups run on the same pay-as-you-go credits as the rest of the platform, localized to your region, and those credits never expire. One credit covers a single domain lookup.

Does a mail domain lookup confirm an email address works?

No, and the difference matters. A mail domain lookup checks the domain, can it receive mail at all and who runs it. Confirming an email checks the specific mailbox, does [email protected] actually exist and accept mail.

A domain can have a flawless mail setup while a given address on it is dead. The domain lookup is step one; the free email checker is step two, and Verifox runs both on the same engine.

Is it private to run a mail domain lookup on someone else's domain?

Completely. A domain's mail configuration is public DNS data - the same answers any resolver returns - so the domain owner is never notified. On our side, the domain is resolved in memory and gone the instant the result renders.

That handling sits inside Verifox’s SOC 2 Type II controls and GDPR posture, and the privacy policy spells out exactly what we touch and what we never keep.

Can I run a mail domain lookup from my own app or AI agent?

Yes. The REST API reference documents a lookup endpoint that returns the MX records and the detected provider for any domain, so you can wire domain mail lookups into your CRM, your onboarding flow, or any tool that speaks REST.

Verifox also ships native MCP server support, so AI agents (Claude, Cursor, custom LLM apps) can look up a domain’s mail setup and verify addresses without glue code. Live uptime and incident history are at status.verifox.ai.