Enter a domain
Drop in any domain you want to inspect — a company's, a competitor's, or your own. No login, no account, nothing to install; a single domain is all the lookup needs to start.
Mail exchanger lookup
Enter any domain to read its mail exchanger records in priority order, see the mail server behind them, and know whether the domain accepts email.
Trusted by 500,000+ leading GTM teams of all sizes
No login, no install. Enter any domain to resolve its MX records in priority order, identify the mail provider, and confirm it accepts email.
Drop in any domain you want to inspect — a company's, a competitor's, or your own. No login, no account, nothing to install; a single domain is all the lookup needs to start.
Verifox runs a live DNS query for the domain's MX records, the same mail-routing resolution the verification engine performs before it ever touches a mailbox, resolved over encrypted DNS-over-HTTPS.
See the MX records in priority order, the provider that runs the mail, and whether the domain accepts mail at all — the routing signal a deliverability check starts from.
One question of a domain's DNS: which mail servers does it trust, and in what order?
A mail exchanger lookupreads a domain's MX records, the DNS entries that decide where its email is delivered, each naming a mail server and a priority number. The hostnames reveal the provider: aspmx.l.google.com means Google Workspace, mail.protection.outlook.commeans Microsoft 365, and a custom host usually means a self-hosted or niche setup. The priority numbers show the routing, lowest number first and higher ones as fallbacks. In a single pass you learn who runs a domain's mail and whether it can receive any at all.
The same nine-check engine our paid email verification API runs. Every email, every verification, every time.
Every address runs a full RFC 5321 and RFC 5322 compliance pass before a single network call goes out. The engine catches what visual scanning misses, the double dot in [email protected], the trailing period, the IDN homograph that looks valid but resolves to a different domain.
Bundled typo suggestions let your form offer “did you mean [email protected]?” instead of rejecting silently.


Once syntax passes, the engine resolves the domain. We confirm the DNS records exist, fetch the MX record priority list in order, and verify at least one mail-exchange server is actively accepting connections right now.
Misspelled domains like gmial.com, expired domains, and parked-for-sale domains all fail this gate before the engine wastes a single SMTP roundtrip.


The engine opens a TCP connection on port 25, performs the EHLO handshake, then negotiates MAIL FROM and RCPT TO. Every server response code (220, 250, 550, 552) is parsed deterministically against the IANA enhanced-status registry.
This is the moment a mailbox proves it actually exists. No third-party guesses, no statistical heuristics, just the receiving server's own answer.


Some domains accept every email regardless of whether the mailbox exists, a setup known as a catch-all configuration. The engine sends a deterministic probe to a deliberately fake address ([email protected]); if the server returns the same 250 OK it returned for the real address, the domain is catch-all.
The verdict isn't dropped, it's flagged RISKY so you know the deliverability signal is degraded.


The engine maintains a curated registry of 10,247 disposable email providers, including Mailinator, Guerrilla Mail, 10MinuteMail, Tempmail, and the long tail of regional clones.
Any address matching the blocklist is flagged INVALID. Deliverability to a mailbox that exists for 10 minutes and is never checked is functionally zero, regardless of whether the SMTP handshake passes.


info@, support@, no-reply@, admin@, billing@. These are shared inboxes, not individuals.
The engine extracts the local-part of every address, matches it against the known role-prefix registry, and tags the result with a reduced engagement score.
You don't drop them automatically. The verdict flags them as roles so you can decide.


Fresh-spam domains registered hours ago are the single biggest source of inbound abuse. The engine queries WHOIS and RDAP for every unique domain, extracts the registration date, and flags anything under 30 days old with a “fresh” warning.
Domains aged 5+ years pick up a corresponding trust signal. The same heuristic spam filters have been using since the early 2000s, ported into the verdict.


SPF, DKIM, and DMARC together prove the sender is authorised to send from that domain.
The engine reads each policy via DNS, validates SPF includes recursively, scans six common DKIM selectors, and confirms DMARC alignment with the From: header.
A failing DMARC policy means the sender can be spoofed, so the verdict warns you before you reply.


Beyond “exists vs doesn't exist”, the engine extracts the precise mailbox state from the SMTP server's response. Full inbox (552 / 522 quota), disabled mailbox (550 5.1.1), out-of-office autoresponder, frozen account.
Each state maps to a specific retry policy. Full inbox retries in 6 hours. Disabled drops permanently. The verdict tells you which bucket the bounce belongs in so your retry logic doesn't waste cycles.


An MX lookup is a read-only window into how a domain receives email. In one query you learn who runs the mail, how it routes, and if its sendable
The same DNS resolution the Verifox verification engine runs first on every address it checks.
The MX hosts name the provider — Google Workspace, Microsoft 365, Proofpoint, or a self-hosted server.
Records return lowest-number-first, so you read the primary server and its fallbacks straight away.
No MX record, or a broken one, means mail bounces before it is ever sent.
An MX lookup starts the story; verifying the address confirms the mailbox itself is real.
An MX lookup is only the first step. Verifying the address confirms the mailbox is real and deliverable.
The single most useful thing a mail exchanger lookup tells you — who to talk to about mail.
MXToolbox, DNSChecker, and Google Toolbox all return MX records. Verifox names the provider in plain English and verifies the mailbox.
Most tools reset your balance every month. Verifox sells credits that sit in your account until you spend them.
forever
1,000credits on signup
No card required
2,500 with a work email
Free includes
one time
10,000credits
$0.0059 eachSAVE 34%
Everything in Free, plus
per month
15,000credits a month
$0.0053 each
Unused credits roll over
Everything in packs, plus
One credit verifies one address; a find costs 10. All prices in USD, checkout via Stripe.
Growth leads, marketers, and engineers running real campaigns on real lists, with a verified email on every byline.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

We were paying ZeroBounce a four-figure monthly bill and still landing 3% bounces on cold campaigns. Switched the pipeline to Verifox, dropped to 0.4% bounces, and cut the bill by more than 90%.

Ran a 50,000-address outbound list through Verifox before our quarterly campaign. Bounces landed at 0.7%, sender reputation didn't move, replies were up 22% over last quarter.

Our SDRs were enriching from three tools and 14% of the emails were invalid before they hit the sequencer. Verifox sits in the pipeline now and the team stopped seeing 'undeliverable' replies the next week.

Other tools flag 30% of our B2B list as 'risky catch-all' and leave the call to us. Verifox returns a real verdict on those addresses, with a confidence score. We send more, we send safer.

Their MCP server let me wire email verification directly into our internal Claude agent in about ten minutes. Zero glue code. No other vendor in this space has thought about that workflow.

Bulk upload, sorted CSV back in twenty minutes, plug into our growth stack. The half-day list-hygiene project per cohort turned into something the marketing intern runs on autopilot.

We had a Gmail spam-folder problem after a bad list import. Verifox cleaned the list and the warmup ran on the same engine. Back in primary inbox in six weeks. One vendor, half the cost.

Tested Verifox at 10,000 verifications per minute on a Tuesday morning. Latency held under 400ms median, no soft failures, no rate-limit walls. The vendor we benched throttled at 2,000/min.

Verifox returns a 0-100 confidence score per address, not just a label. We thresholded at 75 for the cold sequencer, 60 for nurture, and our deliverability team finally has a knob they can tune.
Every layer of the stack carries a third-party attestation, so you can ship into regulated industries without rebuilding your compliance posture.

Independently audited to the SOC 2 Type II standard.

Built for the EU with full GDPR data-subject rights.

California opt-out, do-not-sell, plus DSAR handling.

Information security held to the ISO 27001 standard.

AI governance aligned to the new ISO 42001 standard.
An investigation into the money leaking out of your list - and the nine checks that decide whether your email is read, or never arrives at all.

57 pages, free PDF, no signup
Common questions
Common questions about MX records: what the priority numbers mean, why a lookup returns nothing, and how MX records connect to deliverability.
An MX lookup, or mail exchanger lookup, queries a domain's DNS for its MX records, the entries that say which servers are responsible for receiving email for that domain. Type a domain into the tool above and Verifox reads those records back in priority order.
It answers three questions at once: does this domain accept mail, which provider runs it, and in what order servers are tried — the same DNS resolution our verification engine performs before it touches a mailbox.
A mail exchange record (MX record) is a DNS entry that points a domain's email to a mail server. Each record carries a hostname and a priority number, and a domain can publish several so there are backups if the primary server is unreachable.
The priority is a preference value: the lowest number is tried first. So a record at priority 1 is the primary mail server, and higher numbers are fallbacks. The format is defined in RFC 5321, and the MX lookup above lists them in that exact order.
The simplest way is to paste the domain into the lookup above and read the records back. No account, no install. You can also run nslookup -type=mx example.com or dig example.com MX in a terminal, but those return raw hostnames you have to interpret yourself.
Verifox names the mail provider in plain English, not just the hostnames, and flows into a real mailbox verification when you need to go past routing. Configuring a mail client? The IMAP and SMTP settings come from the same DNS records.
Three things. First, who runs the mail, the MX hosts reveal whether a domain is on Google Workspace, Microsoft 365, Proofpoint, or a self-hosted server. Second, how mail routes, the priority order shows the primary server and its fallbacks. Third, whether mail is accepted at all.
A domain with no MX record cannot receive email, an instant red flag for deliverability. To confirm a specific address is reachable, the mailbox itself has to be checked — a step no lookup alone can do.
A failed MX lookup usually means one of two things: the domain publishes no MX records, so it cannot receive email, or the domain itself does not resolve (a typo, an expired registration, or a DNS misconfiguration). Either way, mail to it bounces.
Some domains intentionally route mail without MX records, but for most, a missing MX means mail bounces. If the records look right but mail still fails, run an SMTP test against the server or check SPF, DKIM, and DMARC on the same domain.
Yes. The single lookup above is free with no account. For a list of domains, the REST API runs the same MX resolution as part of every verification call, so you can read the mail records behind a whole list of domains programmatically.
Bulk checks run on the same pay-as-you-go credits as the rest of the platform, localized to your region, and those credits never expire.
No, and the difference matters. An MX lookup checks the domain, can it receive mail at all, and who runs it. Verifying an email checks the specific mailbox, does [email protected] actually exist and accept mail.
A domain can have perfect MX records while a given address on it is dead. That is why the MX lookup is step one of deliverability and the free email checker is step two. Verifox runs both on the same engine.
No. The domain you enter is resolved in memory and discarded the moment the lookup completes. Nothing logged, nothing retained, nothing sold. A domain's MX records are public DNS data, but your queries are still yours.
Verifox is SOC 2 Type II compliant and GDPR ready. All queries run over encrypted DNS-over-HTTPS and nothing is retained after the lookup completes. Read the privacy policy for the full breakdown of what we log and what we do not.
Yes. Every call documented in the REST API reference runs the MX resolution as its first stage and reports the domain-level result, so you can wire mail-server checks into your CRM, your onboarding flow, or any tool that speaks REST.
Verifox also ships native MCP server support, so AI agents (Claude, Cursor, custom LLM apps) can look up a domain's mail records and verify addresses without glue code. Live uptime at status.verifox.ai is public for anyone auditing reliability.
For most domains, rarely. Moving from one mail provider to another, say Google Workspace to Microsoft 365, is the main reason records change, and even then the switch typically happens over a few hours as the DNS TTL expires. Day-to-day, the records are stable.
A sudden MX change on a domain you send to can mean it migrated providers, expired and was re-registered, or was compromised. Periodic mail domain lookups on high-value domains catch provider changes before they affect your bounce rate.
An MX lookup is a read-only window into how a domain receives email. In one query you learn who runs the mail, how it routes, and if its sendable
The same DNS resolution the Verifox verification engine runs first on every address it checks.
The MX hosts name the provider — Google Workspace, Microsoft 365, Proofpoint, or a self-hosted server.
Records return lowest-number-first, so you read the primary server and its fallbacks straight away.
No MX record, or a broken one, means mail bounces before it is ever sent.
An MX lookup starts the story; verifying the address confirms the mailbox itself is real.
An MX lookup is only the first step. Verifying the address confirms the mailbox is real and deliverable.
The single most useful thing a mail exchanger lookup tells you — who to talk to about mail.