# SPF Policy Lookup

> SPF Policy Lookup is a paid API for AI agents from market.datapackvibe.com, paid per call via x402, $0.01/call, status unknown (last checked 2026-10-02).

Fetches and parses the SPF TXT DNS record for a given domain to reveal its email sender authorization policy.

## Facts

- Endpoint: POST https://market.datapackvibe.com/x402/demand-domain-spf-policy-security-review?utm_source=zero.xyz
- Price: $0.01/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-02
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/spf-policy-lookup-c2b765fe
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_XpODd_2OHzVx1hBdP44DH

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability spf-policy-lookup-c2b765fe -d '<json body>'
```

Example prompt: Can you look up the SPF TXT DNS record for gmail.com and tell me what mail servers and IP ranges are authorized to send email on its behalf?

## When to prefer this

Use this endpoint when you need to inspect or validate a domain's SPF email-sending policy via DNS, particularly for security reviews, phishing investigations, email deliverability audits, or compliance checks. It is a read-only DNS lookup — prefer it over email verification services when you only need the DNS policy itself, not inbox existence or deliverability testing.

## Known failure modes

- Domain does not exist — DNS NXDOMAIN error returned
- Domain exists but has no SPF TXT record published
- Domain has multiple SPF records (RFC violation) — may return error or first found
- Malformed SPF record that cannot be parsed
- DNS resolution timeout or network error
- Too many DNS lookups in SPF chain (exceeds RFC 7208 limit of 10)

## How this service works

SPF policy lookup for Security review: Return and parse the domain SPF TXT policy. DNS data only; does not send email or verify that an inbox exists.

## Output

Returns the raw SPF TXT DNS record string for the queried domain along with a parsed breakdown of its mechanisms (e.g. ip4, ip6, include, a, mx, all qualifiers), enabling the caller to understand which mail servers are authorized to send on behalf of the domain.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "domain": {
   "type": "string",
   "default": "example.com",
   "description": "Public DNS domain, e.g. example.com."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/spf-policy-lookup-c2b765fe/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from market.datapackvibe.com](https://www.zero.xyz/host/market.datapackvibe.com/llms.txt)
