# Permissive SPF Policy Check

> Permissive SPF Policy Check is a paid API for AI agents from market.datapackvibe.com, paid per call via x402, $0.01/call, status unknown (last checked 2026-10-02).

Checks a domain's SPF DNS record for permissive policies (+all or ?all) and lists all SPF mechanisms

## Facts

- Endpoint: POST https://market.datapackvibe.com/x402/demand-domain-spf-permissive-policy-it-administration?utm_source=zero.xyz
- Price: $0.01/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-02
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/permissive-spf-policy-check-a76836ca
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_584oRfomlM5ZfQd1_CQVd

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability permissive-spf-policy-check-a76836ca -d '<json body>'
```

Example prompt: Can you check whether example.com has a permissive SPF policy — specifically if it ends in +all or ?all — and list out all the mechanisms in its SPF record?

## When to prefer this

Choose this endpoint when you specifically need to audit a domain's SPF policy for permissive configurations (+all or ?all) that allow any sender to spoof email from that domain. It is ideal for IT security audits, vendor assessments, and compliance checks where the goal is to identify misconfigured SPF records via DNS without sending test emails or verifying mailboxes.

## Known failure modes

- Domain has no SPF TXT record — returns no SPF found
- Domain does not exist in DNS — returns DNS resolution failure
- Domain input is malformed — returns validation error
- SPF record exists but is non-standard or unparseable — partial results
- Network or DNS timeout — returns lookup failure

## How this service works

Permissive SPF policy check for IT administration: Flag an SPF policy ending in +all or ?all and list its mechanisms. DNS data only; does not send email or verify that an inbox exists.

## Output

Returns whether the domain's SPF record ends in a permissive qualifier (+all or ?all), a flag indicating if the policy is overly permissive, and a list of all SPF mechanisms found in the DNS TXT record. Data is sourced from live DNS lookups only; no email is sent and no inbox is verified.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "domain": {
   "type": "string",
   "default": "example.com",
   "description": "Public DNS domain, e.g. example.com."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/permissive-spf-policy-check-a76836ca/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from market.datapackvibe.com](https://www.zero.xyz/host/market.datapackvibe.com/llms.txt)
