# SPF Record Change Watch

> SPF Record Change Watch is a paid API for AI agents from intel.rallylive.ca, paid per call via x402, $0.02/call, status unknown (last checked 2026-09-14).

Monitors an email domain's SPF record for changes by running a check and comparing it against the previous result, returning current value, changed flag, field-level diffs, and last-seen timestamp.

## Facts

- Endpoint: GET https://intel.rallylive.ca/watch/email/spf
- Price: $0.02/call
- Payment: x402
- Status: unknown
- Last checked: 2026-09-14
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/spf-record-change-watch-01b7f26a
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_pc88BXyX9GaUkrt_HAnG-

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability spf-record-change-watch-01b7f26a
```

Example prompt: Check if the SPF record for example.com has changed since you last checked it, and tell me exactly what fields changed with the before and after values.

## When to prefer this

Use this endpoint when you need to detect changes to an SPF record over time rather than just fetching the current value. It is ideal for scheduled monitoring workflows, compliance auditing, or security alerting where knowing what changed (not just what exists) is the goal. Prefer it over a plain SPF lookup when you want field-level diffs and a change signal without maintaining your own state.

## Known failure modes

- Domain not found or does not exist — returns error indicating unresolvable domain
- No SPF record published for the domain — returns empty or null SPF value
- First-time call for a domain has no previous result to compare — changed flag may be null or false with no diff
- Rate limiting or payment failure — HTTP 402 if payment not processed
- 90-day retention window exceeded — previous result no longer available, diff cannot be produced

## How this service works

Change watch for spf record check: runs the check and compares it with the result from your previous call for the same domain (kept 90 days), returning the current answer, changed true/false, exactly which fields changed with before/after values, and when it was last seen. Call it on a schedule to be told when spf record check for a domain changes. $0.01 per check.

## Output

Returns the current SPF record value, a boolean indicating whether it changed since the last call, a field-level diff showing exactly which fields changed with before/after values, and the timestamp of when the record was last seen. Previous results are retained for 90 days.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "$schema": "https://json-schema.org/draft/2020-12/schema",
 "required": [
  "input"
 ],
 "properties": {
  "input": {
   "type": "object",
   "required": [
    "type",
    "method"
   ],
   "properties": {
    "type": {
     "type": "string",
     "const": "http"
    },
    "method": {
     "enum": [
      "GET"
     ],
     "type": "string"
    },
    "queryParams": {
     "type": "object",
     "properties": {}
    }
   },
   "additionalProperties": false
  },
  "output": {
   "type": "object",
   "required": [
    "type"
   ],
   "properties": {
    "type": {
     "type": "string"
    },
    "example": {
     "type": "object"
    }
   }
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/spf-record-change-watch-01b7f26a/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from intel.rallylive.ca](https://www.zero.xyz/host/intel.rallylive.ca/llms.txt)
