TXT Record Lookup
List and classify every TXT record on a domain.
Related Tools
SPF Checker
Check a domain's SPF record. Follows every include and counts the 10-lookup limit.
Use tool →DMARC Checker
Check a domain's DMARC policy. Tags explained in plain English, reporting verified.
Use tool →MX Record Lookup
Look up MX records for any domain. See mail servers, priorities, and misconfigurations.
Use tool →DKIM Checker
Look up and validate DKIM records by selector. Key type, size, and testing flags.
Use tool →How to Look Up TXT Records
Type a domain and hit Check. The tool queries Cloudflare's public DNS resolver over HTTPS, straight from your browser, and lists every TXT record it finds. Each record gets classified: SPF, DKIM, DMARC, or one of two dozen known verification token formats. Records split across 255-character strings are joined for you, the way mail servers and verifiers actually read them.
You can also look up subdomains and special names directly. Paste selector1._domainkey.yourdomain.com to see a DKIM key, or _dmarc.yourdomain.com to see a DMARC policy in raw form.
What TXT Records Do
TXT records started as free-form notes in DNS. Then the internet needed somewhere to put machine-readable claims about a domain, and TXT was the only open slot. Now they carry your email authentication (SPF, DKIM, DMARC), your ownership proofs for Google Search Console and Microsoft 365, and a growing pile of verification tokens from every tool your company signed up for since 2015.
That pile matters. Old verification tokens for services you stopped using are safe to delete, and trimming them keeps your DNS responses small. This tool counts your records and flags the domains that have collected more than 20.
The Email Records Hiding in Your TXT
Three email authentication systems live entirely in TXT records. SPF sits at your root domain and lists the servers allowed to send your mail. Receivers reject the record entirely if you publish more than one, which is a surprisingly common mistake, so this tool checks the count. DKIM public keys sit under _domainkey subdomains. DMARC policies belong at _dmarc, and if one shows up at your root domain instead, it does nothing. We flag that too.