8-Signal Verification Engine
Every address is run through eight independent checks - syntax, MX, SPF/DKIM/DMARC, disposable domains, blacklists, and domain age - and resolved into one 0-100 trust score. No signup. No API key. Checked locally, on your own server.
Checked locally on your own server by default - your visitors' emails never leave this site unless you turn on the optional cloud lookup.
0 emails verified on this site so far
The Diagnostic Pipeline
Each signal narrows the verdict a little further. Nothing is a black box - every one of these is a real record read directly from the domain, not a guess.
Validates RFC syntax and catches common webmail typos - "gmial.com" → "gmail.com" - with a one-click fix.
Confirms the domain has a live mail server actually willing to accept mail.
Reads the raw authentication records for the domain, not just a pass/fail flag.
Flags throwaway inboxes and domains configured to silently accept anything.
Cross-checks the domain and IP against major public spam blacklists.
A domain registered yesterday scores differently than one that's been live for years.
Flags shared inboxes like info@ or support@ instead of a named person.
Every signal above resolves into one 0-100 number, with a valid / risky / invalid verdict.
The Toolkit
Drop the full checker into a page, or hand a client a single-purpose tool that works entirely on its own.
Full 10-signal check with a 0-100 trust score and one-click typo fixes.
Try it →Paste a document, CSV, or page source and pull out every address in it.
Try it →Confirms a domain can actually receive mail - see every server behind it.
Try it →Shows the actual raw authentication records for a domain - not just pass/fail.
Try it →Flags throwaway and catch-all domains before they land on your list.
Try it →Cross-references a domain, IP, or email against major public spam blacklists.
Try it →Catches malformed addresses and common webmail typos before a bounce happens.
Try it →Search a domain to see its category, industry, and trust score at a glance.
Try it →Prove you own a domain via a one-time email code, then edit its public profile.
Try it →Daily automated SPF, DMARC, BIMI, MX and blacklist checks, with an alert the moment something breaks.
Try it →Guest vs. Registered vs. Premium
Start checking with no account at all - register or upgrade only when you actually need more.
Try it instantly, nothing to sign up for.
Verify your email once - no card required.
For agencies and teams checking at volume.
| Feature | 👤 Guest | ✅ Registered | ⭐ Premium |
|---|---|---|---|
| Email checks | 1, no sign-up | 5, refreshed every 24h | Unlimited |
| Standalone tools (MX, SPF/DKIM/DMARC, Disposable, Blacklist, Syntax, Extractor) | ✓ | ✓ | ✓ |
| Per-IP anonymous daily cap applies | Yes, shared - 10/day | No | No |
| Company Profile directory | Search only | Claim & edit | Claim & edit |
| Bulk (list) checking | – | ✓ | ✓ |
| Referral rewards | – | ✓ | ✓ |
| Payment required | Never | Never | bKash/Nagad/Rocket/Stripe |
Who It's For
Don't know which tool you need yet? Find your team below.
Live
This is the real checker - the same one the shortcode above adds to any page.
Built for teams like these
For Developers & AI Agents
The same 10-signal engine is available as a REST API, documented with a full OpenAPI spec so scripts, no-code tools, and AI coding agents can discover every endpoint on their own - no key needed just to look. A sandbox key lets you build and test against realistic, instant mock responses before you ever touch a live key or your daily quota.
Every route documented and machine-discoverable at /openapi.json.
Give Claude, ChatGPT, or any MCP-speaking agent direct tool access - no copy-pasting results back and forth.
Build against instant mock responses - no daily quota spent, nothing recorded, while you're still testing.
For Site Owners
This is a separate, site-wide license from visitor Premium above - it covers what you (the site owner) can turn on, not what a checking visitor gets. Every service below stays free until you deliberately gate it on the Settings tab, so a Pro license only ever changes what you already chose to lock.
| Pro Service | Included | ⭐ Pro |
|---|---|---|
|
Site-wide Protection Auto-blocking invalid/risky emails on WooCommerce, CF7, WPForms, Gravity Forms, Elementor Forms, and Ninja Forms. | – | ✓ |
|
Bulk Verification API POST /v1/bulk and its Zapier / Google Sheets bulk-verify integrations. | – | ✓ |
|
Breach / Identity Risk Signal The 9th trust-score signal that checks an address against the XposedOrNot public breach database. | – | ✓ |
|
Email Finder API GET /v1/finder/{domain} and its MCP find_email / Zapier find-email-for-domain integrations - the same page-scan lookup as the admin Unclaimed Domains screen, exposed to API callers. Distinct from the AI Email Finder's External AI engine, which is metered separately by its own credit balance rather than this Pro gate. | – | ✓ |
|
Company Directory Edit Editing a claimed company profile at /company/{domain}/. Looking up a profile and claiming (OTP domain-ownership verification) both stay free. | – | ✓ |
|
Inbox Placement Testing Seed-mailbox inbox/spam placement checks from the Deliverability Monitor dashboard (FEC_Seed_Test). Ongoing SPF/DMARC/BIMI/MX/blacklist monitoring itself stays free - this only gates the seed-pool send-and-poll test. Unlike the other services above, this one is freemium rather than all-or-nothing: each domain still gets a configurable number of free tests per rolling 30 days once this is on (see the field below), only requiring an active license past that. | – | ✓ |
|
Business Multi-Domain Digest For an owner verified on 2 or more monitored domains (agencies and multi-brand clients) - combines every Deliverability Monitor alert from a single daily check run into one digest email per owner instead of a separate email per domain. Only the email routing changes: each domain is still checked daily and the fec_widget_domain_health_changed webhook still fires per domain regardless of this gate. An owner under the 2-domain threshold, or on a site without this gate turned on, keeps getting the original one-email-per-domain alert unchanged. | ✓ | ✓ |
|
Custom-Branded "Verified by" Badge (White-Label) Lets this site's owner replace the default "Verified by {site name}" text, checkmark color, and (optionally) logo on the embeddable badge shown to a domain owner right after FEC_Domain_Claim_Widget::buildBadgeSnippet() generates it - the snippet a verified owner copies onto their own site. Only the wording/colors/logo of that outbound badge change; the OTP domain-verification flow itself, and the "Verified" pill on this site's own [fec_company_profile] pages, are untouched. With this gate off (or no active license), every owner keeps getting the plain default badge exactly as before. | ✓ | ✓ |
Not all services will show as gated - a site owner opts each one into Pro individually, so this table always reflects what this specific site currently requires.
Free to run, checked locally, live in one shortcode.
A few details before we start
This conversation has ended.