dns_lookup
Query DNS records (A, AAAA, MX, TXT, NS, CNAME, SOA, CAA) for an authorized domain without contacting the target's servers, resolving hostnames during reconnaissance.
Instructions
Look up DNS records (A, AAAA, MX, TXT, NS, CNAME, SOA, CAA) for a domain in scope. Passive: the target's own servers are not contacted. Does NOT do subdomain enumeration or zone transfers. Cost: 1 quota unit, usually under a second.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| host | Yes | Domain name in scope. | |
| record_types | No | Record types to query, e.g. ['A','MX','TXT']. |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| host | Yes | ||
| errors | No | ||
| records | No | ||
| truncated | No | ||
| elapsed_ms | No | ||
| canonical_host | Yes |