{"uid":"cap_584oRfomlM5ZfQd1_CQVd","slug":"permissive-spf-policy-check-a76836ca","name":"Permissive SPF Policy Check","description":"Permissive SPF policy check for IT administration: Flag an SPF policy ending in +all or ?all and list its mechanisms. DNS data only; does not send email or verify that an inbox exists.","url":"https://market.datapackvibe.com/x402/demand-domain-spf-permissive-policy-it-administration?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"domain":{"type":"string","default":"example.com","description":"Public DNS domain, e.g. example.com."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_YJ5BHDPh3P6YHhxZFlV0o","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Checks a domain's SPF DNS record for permissive policies (+all or ?all) and lists all SPF mechanisms","exampleAgentPrompt":"Can you check whether example.com has a permissive SPF policy — specifically if it ends in +all or ?all — and list out all the mechanisms in its SPF record?","exampleUseCases":[{"title":"Security audit of company domain","prompt":"Check if our company domain acmecorp.com has a dangerously permissive SPF policy like +all or ?all, and show me all the SPF mechanisms it uses."},{"title":"Vendor email security review","prompt":"I'm onboarding a new vendor at vendor-partner.io — can you check their SPF record to see if it's configured with a permissive policy that would let anyone spoof their email?"},{"title":"Post-incident domain misconfiguration check","prompt":"We had a phishing report involving emails from contoso.com — can you pull their SPF record and flag whether it ends in +all or ?all so I can see if they have a weak policy?"}],"resultDescription":"Returns whether the domain's SPF record ends in a permissive qualifier (+all or ?all), a flag indicating if the policy is overly permissive, and a list of all SPF mechanisms found in the DNS TXT record. Data is sourced from live DNS lookups only; no email is sent and no inbox is verified.","failureModes":["Domain has no SPF TXT record — returns no SPF found","Domain does not exist in DNS — returns DNS resolution failure","Domain input is malformed — returns validation error","SPF record exists but is non-standard or unparseable — partial results","Network or DNS timeout — returns lookup failure"],"whenToPreferThis":"Choose this endpoint when you specifically need to audit a domain's SPF policy for permissive configurations (+all or ?all) that allow any sender to spoof email from that domain. It is ideal for IT security audits, vendor assessments, and compliance checks where the goal is to identify misconfigured SPF records via DNS without sending test emails or verifying mailboxes.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T12:44:13.921Z","isFirstParty":false,"canonicalSlug":"permissive-spf-policy-check-57d1eb8a"}