{"uid":"cap_R0mFnSewoMNGfQWoi2MTr","slug":"permissive-spf-policy-security-check-68adde8b","name":"Permissive SPF Policy Security Check","description":"Permissive SPF policy check for Security review: Flag an SPF policy ending in +all or ?all and list its mechanisms. DNS data only; does not send email or verify that an inbox exists.","url":"https://market.datapackvibe.com/x402/demand-domain-spf-permissive-policy-security-review?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"domain":{"type":"string","default":"example.com","description":"Public DNS domain, e.g. example.com."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_s7XZ_hzgYNwGOE2WroYYX","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Checks a domain's SPF DNS record for permissive policies ending in +all or ?all and lists the mechanisms found","exampleAgentPrompt":"Can you check if acme.com has a dangerously permissive SPF policy — specifically if it ends in +all or ?all — and list all the mechanisms in its SPF record?","exampleUseCases":[{"title":"Pre-acquisition domain security audit","prompt":"We're about to acquire a company using the domain bigcorp.io — can you check if their SPF record is permissively configured with +all or ?all, and tell me what mechanisms are listed so we can flag it in our security review?"},{"title":"Red team email spoofing assessment","prompt":"I'm doing a security assessment and want to know if targetcompany.com has a permissive SPF policy like +all or ?all that would make it easy to spoof their email — can you check and list the SPF mechanisms?"},{"title":"Bulk vendor email security review","prompt":"We're vetting a new vendor at vendor-domain.com — please check their SPF record for any permissive policies ending in +all or ?all and show me what mechanisms are configured so I can include it in my compliance report."}],"resultDescription":"Returns whether the domain's SPF TXT DNS record ends in a permissive qualifier (+all or ?all), flags the policy as permissive or not, and lists all the individual SPF mechanisms found in the record. Data is DNS-only; no email is sent and no inbox is verified.","failureModes":["Domain has no SPF TXT record — returns no-policy or not-found result","Domain does not exist in DNS — returns DNS resolution error","Malformed SPF record that cannot be parsed — may return parse error","Network or DNS timeout — returns timeout or service error","Invalid domain format provided — returns input validation error"],"whenToPreferThis":"Choose this endpoint when you need a lightweight, DNS-only check specifically to detect permissive SPF policies (+all or ?all) for security audits, compliance reviews, or red team assessments. It is ideal when you only need to flag email spoofing risk at the SPF level without doing full email deliverability testing or DMARC/DKIM analysis.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T12:41:31.693Z","isFirstParty":false,"canonicalSlug":"permissive-spf-policy-security-check-68adde8b"}