ct_check_caa
Checks CAA DNS records for a domain and its parents, analyzing issue, issuewild, and iodef tags to flag missing CAA, unrestricted wildcards, and missing iodef.
Instructions
Check CAA (Certification Authority Authorization) DNS records for a domain and its parents. Analyzes issue, issuewild, and iodef tags. Flags missing CAA, unrestricted wildcards, and missing iodef.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | The domain to check CAA records for (e.g. 'sub.example.com') |