Domain Intelligence Report

notion.so

DNS records, WHOIS/RDAP registration, SSL certificate, subdomain enumeration, and email-security posture — aggregated in real time and cached.

5
DNS record types
47d
SSL cert remaining
56
Subdomains found
SPF + DMARC
Email security signals
Generated 2026-07-28 12:56 UTC Refresh data
Look up another:
Please enter a valid domain.
Get alerts when notion.so changes
Free email alerts when its SSL certificate nears expiry, or its subdomains, DNS, WHOIS, or SPF/DMARC/DKIM records change. One domain free — no credit card.
Put this data into your code — for any domain, any workflow
Same DNS, WHOIS, SSL, subdomain & email-security data via REST API — every field above as structured JSON. Drop it into monitoring scripts, CRM enrichment, security audits, fraud detection, or internal dashboards. Scales up to 5M requests/month.
Get free API key →
Common uses: SSL expiry monitoring Subdomain change alerts CRM lead enrichment SPF/DMARC/DKIM audits Domain reputation scoring Attack surface mapping Bulk WHOIS lookup SaaS onboarding checks
curl "https://domain-intelligence-api.p.rapidapi.com/lookup/notion.so" \
  -H "X-RapidAPI-Host: domain-intelligence-api.p.rapidapi.com" \
  -H "X-RapidAPI-Key: YOUR_RAPIDAPI_KEY"
import requests

url = "https://domain-intelligence-api.p.rapidapi.com/lookup/notion.so"
headers = {
    "X-RapidAPI-Host": "domain-intelligence-api.p.rapidapi.com",
    "X-RapidAPI-Key": "YOUR_RAPIDAPI_KEY",
}
r = requests.get(url, headers=headers, timeout=15)
data = r.json()
print(data["subdomains"]["count"], "subdomains found")
// Node 18+ has built-in fetch — no import needed
const res = await fetch(
  "https://domain-intelligence-api.p.rapidapi.com/lookup/notion.so",
  { headers: {
      "X-RapidAPI-Host": "domain-intelligence-api.p.rapidapi.com",
      "X-RapidAPI-Key": "YOUR_RAPIDAPI_KEY",
  }}
);
const data = await res.json();
console.log(data.dns.A, data.email_security.spf);
<?php
$ch = curl_init("https://domain-intelligence-api.p.rapidapi.com/lookup/notion.so");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
curl_setopt($ch, CURLOPT_HTTPHEADER, [
    "X-RapidAPI-Host: domain-intelligence-api.p.rapidapi.com",
    "X-RapidAPI-Key: YOUR_RAPIDAPI_KEY",
]);
$data = json_decode(curl_exec($ch), true);
curl_close($ch);
echo $data["subdomains"]["count"];
Free tier: 1,000 requests/month · no credit card · all endpoints included See all plans →
DNS

DNS Records

All record types resolved from authoritative DNS for notion.so.

A 2 records
  • 208.103.161.2
  • 208.103.161.1
AAAA 2 records
  • 2602:f79a::2
  • 2602:f79a::1
TXT 8 records
  • "facebook-domain-verification=2agf76ffad9vxlxya597jrzil7xoxf"
  • "v=spf1 ~all"
  • "proxy-ssl.webflow.com"
  • "google-site-verification=01Xid8U6cE4LuiG2OeRTL-hnDC9MxKvVD6mAgAS51Oo"
  • "google-site-verification=LBOGI6TChsA_9vwaJYLU7RXgunDGAWKG0fcHxiU2-o4"
  • "google-site-verification=U2r6h9FWkKMadZDxW94daNJ1YUGXP-9_tJ7PUYfYz4c"
  • "google-site-verification=_aahlmtDiPlbg224pU3M_8w9Ka-3tcGUmBd6ZW052AU"
  • "_eohaffzltripfzavo0ehlmi84k0tkxw"
NS 2 records
  • woz.ns.cloudflare.com.
  • dana.ns.cloudflare.com.
SOA 1 record
  • dana.ns.cloudflare.com. dns.cloudflare.com. 2410499181 10000 2400 604800 1800
Registration

WHOIS / RDAP

Registration data for notion.so via the RDAP protocol, with port-43 WHOIS fallback if RDAP is unavailable.

whois via port43:whois.nic.so (via iana-referral)
Registrar
1API
Created
2015-03-31T00:00:00Z
Updated
2026-04-24T19:02:39Z
Expires
2027-03-31T00:00:00Z
Handle
31288-sonic
Nameservers
dana.ns.cloudflare.comwoz.ns.cloudflare.com
Status
activeclientTransferProhibited
TLS

SSL Certificate

Live TLS handshake against notion.so. No third-party scanner.

ssl 47 days remaining
Issuer
CN=WE1,O=Google Trust Services,C=US
Subject
CN=notion.so
Valid from
2026-06-15T22:41:17+00:00
Valid to
2026-09-13T23:41:14+00:00
Serial
281866685362041598307040322181379775154
SANs (5)
notion.so*.notion.so*.dev.notion.so*.stg.notion.so*.www.notion.so
Reconnaissance

Subdomains discovered

Aggregated from 5 upstream sources in parallel — crt.sh, certspotter, hackertarget, rapiddns, and VirusTotal — plus an always-on DNS bruteforce across a curated 773-word wordlist with automatic wildcard filtering, and background enrichment aggregating 25+ passive sources for comprehensive coverage.

subdomains 56 found
certspotter: 27 foundrapiddns: 18 founddns-brute: 11 foundresolving live hosts…
  • 2.front-preview.notion.so
  • admin-dev.notion.so
  • admin-stg.front-preview.notion.so
  • admin-stg.notion.so
  • admin.notion.so
  • affiliate.notion.so
  • aif.notion.so
  • analytics.pgncs.notion.so
  • api.mail.dev.notion.so
  • api.mail.notion.so
  • api.pgncs.notion.so
  • app.mail.dev.notion.so
  • calendar-api-dev.notion.so
  • calendar-api-stg.notion.so
  • calendar-api.notion.so
  • calendar-dev.notion.so
  • calendar-stg.notion.so
  • calendar.front-preview.notion.so
  • calendar.notion.so
  • cspreports.mail.dev.notion.so
  • cspreports.mail.notion.so
  • dev.notion.so
  • developers.notion.so
  • email.updates.notion.so
  • exp.notion.so
  • file-dev.notion.so
  • file-stg.notion.so
  • file.notion.so
  • front-dev.notion.so
  • front-preview.notion.so
  • front-prod.notion.so
  • front-stg.notion.so
  • identity.dev.notion.so
  • identity.notion.so
  • info.notion.so
  • login.notion.so
  • mail-resource-proxy.mail.dev.notion.so
  • mail-resource-proxy.mail.notion.so
  • mail.dev.notion.so
  • mail.notion.so
  • mcp.mail.dev.notion.so
  • mg.mail.notion.so
  • msgstore.www.notion.so
  • node.2.front-preview.notion.so
  • notion.so
  • op-scim-bridge.notion.so
  • ops-vpn.notion.so
  • privacycenter.notion.so
  • redir.front-preview.notion.so
  • retool.mail.notion.so
  • server2msgstore-i.front-preview.notion.so
  • sp.2.front-preview.notion.so
  • status.notion.so
  • stg.notion.so
  • utility.notion.so
  • www.notion.so
Email

Email Security Posture

SPF and DMARC presence and records for notion.so, plus DKIM keys auto-probed across 29 common selectors (Google Workspace, Microsoft 365, Mailchimp, SendGrid, Postmark and more).

SPF present
  • v=spf1 ~all
DMARC present
  • v=DMARC1; p=quarantine; pct=100; rua=mailto:re+1b3a27dd30bc@inbound.dmarcdigests.com;
DKIM none via common selectors

Probed common selectors (Google, Microsoft 365, Mailchimp, SendGrid, etc.). Custom or hash-based selectors aren't auto-discoverable.

Run this on any domain.

Same data, JSON response, REST API. Free tier available, no card required.

View API → RapidAPI Listing
Related

More domain reports

Browse intelligence reports for other popular domains.