{"uid":"cap_w23kZ73Rxzw1LxWNJi_cU","slug":"caa-record-lookup-for-certificate-authority-policy-50735a7b","name":"CAA Record Lookup for Certificate Authority Policy","description":"Certificate authority policy lookup for Security review: Return CAA records that constrain certificate issuance. DNS data only; does not send email or verify that an inbox exists.","url":"https://market.datapackvibe.com/x402/demand-domain-certificate-authorities-security-review?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"domain":{"type":"string","default":"example.com","description":"Public DNS domain, e.g. example.com."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm__UQwzVUvVhss71twYKC93","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns DNS CAA (Certification Authority Authorization) records for a domain to show which certificate authorities are permitted to issue TLS certificates for it.","exampleAgentPrompt":"Can you check the CAA records for stripe.com and tell me which certificate authorities are authorized to issue TLS certificates for it?","exampleUseCases":[{"title":"Pre-issuance CA authorization check","prompt":"Before I request a TLS certificate from DigiCert for my domain acmecorp.com, can you look up the CAA records to confirm DigiCert is actually authorized to issue certs there?"},{"title":"Security audit of domain CA policy","prompt":"I'm doing a security review — can you pull the CAA DNS records for shopify.com so I can see whether their certificate issuance is locked down to specific authorities?"},{"title":"Debugging certificate issuance failure","prompt":"My Let's Encrypt certificate renewal for myblog.io just failed — can you check the CAA records for myblog.io to see if Let's Encrypt is even permitted to issue certificates for that domain?"}],"resultDescription":"Returns the CAA (Certification Authority Authorization) DNS records for the specified domain, listing which certificate authorities are permitted to issue TLS/SSL certificates for it. This is pure DNS data — no email verification or inbox checks are performed.","failureModes":["Domain does not exist in DNS — returns empty or NXDOMAIN-equivalent response","Domain has no CAA records configured — returns empty record set (meaning any CA can issue)","Malformed domain input — may return an error or unexpected result","Network or DNS resolution timeout — transient failure with no data returned"],"whenToPreferThis":"Use this endpoint when you need to programmatically inspect a domain's certificate issuance policy as part of a security review, compliance audit, or pre-issuance validation workflow. It is specifically designed for CAA record lookups — prefer it over general DNS lookup tools when your focus is certificate authority authorization policy. It does not send email, verify inboxes, or perform any active probing beyond DNS.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T12:44:37.897Z","isFirstParty":false,"canonicalSlug":"caa-record-lookup-for-certificate-authority-policy-50735a7b"}