DNS report
icloud.com
Complete DNS, mail, web and security analysis.
Cached report
Report created: 2026-09-20 03:49:28 EDT
7 h 59 min ago
Refresh report
DNS cache tools
If you have recently made DNS changes and they are not yet reflected in the report, you can try to flush the DNS cache of these public resolvers: The domain name will be copied to your clipboard automatically when clicking on a button
Category Status Test Details
WHOIS0.2 ms
Domain Status
Source: WHOIS (port 43) whois.comlaude.com
RegistrarNOM-IQ Ltd dba Com Laude
Name Serversa.ns.apple.com
b.ns.apple.com
c.ns.apple.com
d.ns.apple.com
WHOIS NS match DNS
Updated Date2026-01-10 23:04:29
Creation Date1999-01-15 00:00:00
Registry Expiry Date✅ 2027-01-15 00:00:00
Domain StatusRegistry Lock Service https://www.icann.org/epp#Registry Lock Service
clientDeleteProhibited https://www.icann.org/epp#clientDeleteProhibited
clientTransferProhibited https://www.icann.org/epp#clientTransferProhibited
clientUpdateProhibited https://www.icann.org/epp#clientUpdateProhibited
serverDeleteProhibited https://www.icann.org/epp#serverDeleteProhibited
serverTransferProhibited https://www.icann.org/epp#serverTransferProhibited
serverUpdateProhibited https://www.icann.org/epp#serverUpdateProhibited
Registrar lock enabled
The domain exposes a transfer lock status, such as clientTransferProhibited or serverTransferProhibited.
PARENT0.0 ms
Domain NS records
Nameserver records returned by the parent servers are:

a.ns.apple.com [2620:149:ae0::53] (GLUE) [TTL=172800]
b.ns.apple.com [2620:149:ae7::53] (GLUE) [TTL=172800]
c.ns.apple.com [2620:171:800:714::1] (GLUE) [TTL=172800]
d.ns.apple.com [2620:171:801:714::1] (GLUE) [TTL=172800]

j.gtld-servers.net was kind enough to give us that information.
TLD Parent Check
j.gtld-servers.net has information for your TLD.
This is a good thing as there are some other domain extensions like "co.us" for example that are missing a direct check.
Your nameservers are listed
j.gtld-servers.net has your nameservers listed.
This is a must if you want to be found as anyone that does not know your DNS servers will first ask the parent nameservers.
DNS Parent sent Glue
4 of 4 nameservers sent GLUE.

The parent nameserver a.gtld-servers.net sent GLUE, meaning it sent your nameservers as well as the IPs of your nameservers.
Glue records are A records that are associated with NS records to provide "bootstrapping" information to the nameserver. (See RFC 1912 section 2.3)
Nameservers A records
Every nameserver listed has A records.
This is a must if you want to be found.
NS4225.6 ms
NS records from your NameServers
NS records returned by the currently delegated nameservers are:

Hostname IP TTL Latency Last SOA change Last WHOIS change
a.ns.apple.com 2620:149:ae0::53 43200 46 ms 2026-09-03 2026-01-10 23:04:29
b.ns.apple.com 2620:149:ae7::53 43200 44 ms 2026-09-03 2026-01-10 23:04:29
c.ns.apple.com 2620:171:800:714::1 43200 50 ms 2026-09-03 2026-01-10 23:04:29
d.ns.apple.com 2620:171:801:714::1 43200 37 ms 2026-09-03 2026-01-10 23:04:29

All NS records have the same TTL: 43200 seconds.

Public Resolver
🌐 Cloudflare (GLOBAL)
1.1.1.1
🌐 Google DNS (GLOBAL)
8.8.8.8
🌐 Quad9 (GLOBAL)
9.9.9.9
OpenDNS (US)
208.67.222.222
CIRA Canadian Shield (CA)
149.112.121.10
CleanBrowsing (EU)
185.228.168.9
Quad9 (MX)
149.112.112.112
OpenDNS (ZA)
208.67.220.220
AdGuard DNS (EU)
94.140.14.14
ControlD (EU)
76.76.2.0
Yandex (RU)
77.88.8.8
114DNS (CN)
114.114.114.114
Mismatched NS records
The NS records at all your nameservers are identical to those listed by the parent.
DNS servers responded
All nameservers listed at the parent server responded.
Name of nameservers are valid
All of the NS records that your nameservers report seem valid.
Multiple Nameservers
You have 4 nameservers. According to RFC2182 section 5, this is recommended.
Missing nameservers reported by parent
All NS records are the same at the parent and at your nameservers.
Missing nameservers reported by your nameservers
All nameservers returned by the parent server are the same as the ones reported by your nameservers.
Domain CNAMEs
OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
NSs CNAME check
OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
Different subnets
You have nameservers on different subnets.
Recursive Queries
a.ns.apple.com → ✅ does not allow recursion (good)
b.ns.apple.com → ✅ does not allow recursion (good)
c.ns.apple.com → ✅ does not allow recursion (good)
d.ns.apple.com → ✅ does not allow recursion (good)
Same Glue
Mismatch between parent GLUE and zone A records:
a.ns.apple.com → Parent: 2620:149:ae0::53 | Zone: 17.253.200.1
b.ns.apple.com → Parent: 2620:149:ae7::53 | Zone: 17.253.207.1
c.ns.apple.com → Parent: 2620:171:800:714::1 | Zone: 204.19.119.1
d.ns.apple.com → Parent: 2620:171:801:714::1 | Zone: 204.26.57.1
Make sure both match to comply with DNS best practices.
NS Self-IP Consistency
Some nameservers return IPs that differ from their declared A records:
a.ns.apple.com → Declared: 2620:149:ae0::53 | Resolved: 17.253.200.1
b.ns.apple.com → Declared: 2620:149:ae7::53 | Resolved: 17.253.207.1
c.ns.apple.com → Declared: 2620:171:800:714::1 | Resolved: 204.19.119.1
d.ns.apple.com → Declared: 2620:171:801:714::1 | Resolved: 204.26.57.1
Check your NS host A records are correct and publicly resolvable.
Glue for NS records
GLUE was not sent when I asked your nameservers for your NS records.
This is ok but you should know that in this case an extra A record lookup is required.
The nameservers without glue are:
    17.253.200.1
    17.253.207.1
    204.19.119.1
    204.26.57.1
You can fix this by adding A records to your nameservers.
Nameservers are lame
All the nameservers listed at the parent servers answer authoritatively for your domain.
IPs of nameservers are public
Ok. Looks like the IP addresses of your nameservers are public.
This is a good thing because it will prevent DNS delays and other problems.
DNS servers allow TCP connection
OK. Seems all your DNS servers allow TCP connections.
This is a good thing and useful even if UDP connections are used by default.
Different autonomous systems
Authoritative name servers are spread across multiple autonomous systems:
    a.ns.apple.com → AS714
    b.ns.apple.com → AS714
    c.ns.apple.com → AS42
    d.ns.apple.com → AS42
Stealth NS records sent
Ok. No stealth NS records are sent
DNSSEC137.2 ms
Zone signed
DNSSEC: Unsigned
No RRSIG record found. The zone is not signed with DNSSEC.
DNSKEY records
No DNSKEY records found.
DS record in parent
No DS record found in the parent zone.
NSEC/NSEC3 record
No NSEC or NSEC3 record found when querying a non-existent subdomain.
This may indicate a misconfiguration or lack of proper DNSSEC denial-of-existence support.
SOA0.1 ms
SOA Record
The SOA (Start of Authority) record is:
    Primary nameserver: ns-ext-prod.jackfruit.apple.com
    Hostmaster E-mail address: dnscontact@apple@com
    Serial #: 2026090300
    Refresh: 300
    Retry: 300
    Expire: 3628800
    Default TTL: 300
NSs have same SOA serial
OK. All your nameservers agree that your SOA serial number is 0.
SOA MNAME entry
ns-ext-prod.jackfruit.apple.com is NOT listed at the parent level. This could cause issues with zone transfer or delegation.
SOA Serial
Your SOA serial number is: 2026090300. This appears to follow the recommended YYYYMMDDnn format.
SOA REFRESH
SOA Refresh is too low (300). Should be at least 3600 seconds.
SOA RETRY
Your SOA RETRY value is: 300. OK.
SOA EXPIRE
Your SOA EXPIRE number is: 3628800. Looks OK.
SOA MINIMUM TTL
Minimum TTL is low (300). Recommended: 1h+ (3600).
A low minimum TTL results in more frequent DNS queries, which can increase server load. A higher value improves cache efficiency.
MX
...
MX Records
TXT0.1 ms
TXT Records
Host Type Value Size TTL
icloud.com TXT "google-site-verification=Ik3jMkCjHnUgyIoFR0Kw74srr0H5ynFmUk8fyY1uBck" 68 754
icloud.com TXT "google-site-verification=knAEOH4QxR29I4gjRkpkvmUmP2AA7WrDk8Kq0wu9g9o" 68 754
icloud.com TXT "yahoo-verification-key=Ga0ZBHHIemhhe2EkR77Byx+IKXuf2Ezi90h0e6draoQ=" 67 754
icloud.com TXT "google-site-verification=Gc0Hl3EIrWDLXgisvPdkUCAEwNs0gg5JHtd2pZD3J04" 68 754
icloud.com TXT "v=spf1 redirect=_spf.icloud.com" 31 754
Duplicate TXT records
Multiple TXT records were found for the same host/selector. This can break email authentication.
Host/Selector Type Count Status Details
icloud.com Verification 3 Warn Multiple verification tokens detected for Google verification token. Only one is usually required.
SPF
...
SPF Analysis
DMARC26.1 ms
DMARC Configuration
DMARC Record was found:
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:[email protected]; ruf=mailto:[email protected]

Policy summary:
  • Policy: quarantine
  • Subdomain policy: quarantine
  • Percentage applied: 100%
Report settings:Parsed DMARC tags:
TagValueDescription
vDMARC1Version (must be DMARC1)
pquarantinePolicy for domain
spquarantineSubdomain policy
ruamailto:[email protected]Aggregate report URI(s)
rufmailto:[email protected]Forensic report URI(s)
fodefault (fo=0)Failure reporting options
pctdefault (pct=100)Percentage of mail to apply policy to
adkimdefault (adkim=r)Alignment mode for DKIM
aspfdefault (aspf=r)Alignment mode for SPF
ridefault (ri=86400)Report interval (in seconds)
rfdefault (rf=afrf)Report format
Your real DMARC is:
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:[email protected]; ruf=mailto:[email protected]; fo=0; pct=100; adkim=r; aspf=r; ri=86400; rf=afrf;
DMARC Evaluation Score: 1.5/3
To improve your score:
  • Policy is 'quarantine'. Consider upgrading to 'reject' for full protection.
  • Missing DKIM/SPF alignment settings (adkim, aspf), default to relaxed.
MTA-STS / TLS-RPT66.5 ms
Mail TLS security
TXT _mta-stsNot found
Policy URLhttps://mta-sts.icloud.com/.well-known/mta-sts.txt (HTTP 0, policy missing)
Modenot set
Authorized MXnot set
max_agenot set
Policy fileNo valid MTA-STS policy file was fetched.
TXT _smtp._tlsNot found
MTA-STS score 0/5
Recommendations:
  • Publish an _mta-sts TXT record containing v=STSv1; id=. Change id whenever the HTTPS policy changes.
  • Publish the MTA-STS policy at https://mta-sts.icloud.com/.well-known/mta-sts.txt with version: STSv1, mode, mx, and max_age.
  • Use mode: enforce to prevent delivery to MX hosts that do not satisfy the TLS policy.
  • Add at least one mx: line matching the domain's legitimate MX hosts.
  • Set max_age to at least 604800 seconds once the policy is stable.
  • Publish an _smtp._tls TXT record with v=TLSRPTv1; rua=mailto:tlsrpt@yourdomain to receive TLS reports.
DKIM
...
DKIM Records Detected
BIMI25.4 ms
BIMI Record
Logo Delivery Checks
    Logo URLNot specified
    HTTPS URL❌ Failed
    Accessible (HTTP 200)❌ Failed
    File Size⚠️ 0 KB Recommended max: 32 KB
BIMI Record Publishedv=BIMI1; l=; a=;
BIMI Image FormatUnknown
Unknown
BIMI Certificate AuthorityNo certificate provided
No certificate provided
BIMI Syntax Check✅ OK
DMARC Record Published✅ OK
DMARC Policy Not Enforced⚠️ BIMI requires DMARC policy "reject"
BIMI Evaluation Score: 2 / 5
To improve BIMI configuration:
  • A valid Verified Mark Certificate (VMC or CMC) must be provided.
  • Logo file size exceeds 32 KB — recommended maximum for BIMI.


⚠️ Logo will not display
One or more required items are missing or invalid. In that case, some providers may not display the BIMI logo in the inbox.
  • Missing BIMI logo URL (l= tag).
  • Logo is not SVG Tiny 1.2 compliant (tiny or tiny-ps).
  • Logo exceeds 32 KB.
  • Missing or invalid VMC/CMC certificate (often required to display the logo).
SSL
...
SSL Certificate Summary
CAA
...
CAA Records
HSTS
...
HSTS
HTTPS
...
HTTPS
HTTPS (DNS)
...
HTTPS DNS record
WWW
...
A Record
AXFR
(Zone Transfer)229.4 ms
AXFR status for the zone
AXFR is refused by the authoritative nameservers for icloud.com.
Nameservers tested:
    a.ns.apple.com, b.ns.apple.com, c.ns.apple.com, d.ns.apple.com
Security note
Zone transfers (AXFR) should be disabled in production unless explicitly required and restricted.
Leaving AXFR open allows anyone to enumerate your entire DNS zone (subdomains, MX, TXT, internal hosts, etc.).
PORTS
...
Open ports detected (17.253.144.10)
PORTS
Open ports detected (2620:149:af0::10)
IPv6 scan skipped: this DNSprobe server does not currently have outbound IPv6 connectivity.
REPUTATION
...
IP in blacklists (17.253.144.10)
REPUTATION
...
IP in blacklists (2620:149:af0::10)
DNS found
...
Test Details
Website Preview0.0 ms
Snapshot is generated through DNSprobe's rendering proxy and may be served from a short cache.
Security Headers130.3 ms
Score: 86/100 (B)
Good security, some improvements possible

HeaderValue
HTTP/2
HTTP/2 200
HTTP version reported by the server.
set-cookie
x-apple-group=false; Domain=.icloud.com; Path=/; Secure; HttpOnly
Session cookies should include the Secure attribute to ensure they are never sent over unencrypted connections.
Missing SameSite attribute.
expires
None
Legacy caching header. Prefer Cache-Control.
cache-control
public, max-age=300
Controls caching. For sensitive pages consider 'no-store'.
Authenticated responses: consider 'private, no-store'.
pragma
None
Legacy HTTP/1.0 directive. Prefer Cache-Control.
content-type
text/html
Declares MIME type; pair with X-Content-Type-Options: nosniff.
content-encoding
br
Compression used for the response (gzip, br…).
vary
accept-encoding
Tells caches which request headers affect the response.
date
Sun, 20 Sep 2026 07:49:34 GMT
Origin date of the response.
age
None
Indicates how long the response has been cached.
x-powered-by
Not defined
May reveal framework/version. Removing lowers fingerprinting.
strict-transport-security
max-age=31536000; includeSubDomains; preload
Enforces HTTPS for a period, strengthening TLS.
x-xss-protection
1; mode=block
Deprecated. X-XSS-Protection sets the configuration for the legacy XSS Auditor in older browsers.
The recommended value used to be "X-XSS-Protection: 1; mode=block" but you should now look at Content Security Policy instead.
x-content-type-options
nosniff
Stops MIME sniffing. Only valid value: 'nosniff'.
x-permitted-cross-domain-policies
Not defined
Controls Flash/Adobe cross-domain policies. Use 'none'.
Prefer X-Permitted-Cross-Domain-Policies: none.
referrer-policy
Not defined
Controls referrer information sent on navigation.
Recommended: strict-origin-when-cross-origin.
permissions-policy
Not defined
Restricts powerful features (camera, mic, geolocation…).
Add a Permissions-Policy to restrict powerful features.
expect-ct
max-age=30, report-uri="https://feedbackws.icloud.com/reportRaw"
Deprecated control, should be removed if present.
The Expect-CT header is deprecated and can be removed.
x-frame-options
CSP frame-ancestors
Protects against clickjacking. Prefer CSP frame-ancestors today.
content-security-policy
img-src 'self' blob: data: icloud.com *.icloud.com *.apple.com *.cdn-apple.com *.icloud-content.com *.icloud-content.com.cn *.apple-mapkit.com *.mzstatic.com; media-src 'self' blob: data: *.icloud.com *.apple.com *.cdn-apple.com *.icloud-content.com *.icloud-content.com.cn; font-src 'self' blob: data: icloud.com *.icloud.com *.apple.com *.cdn-apple.com; connect-src blob: 'self' data: icloud.com *.icloud.com *.apple.com *.cdn-apple.com *.icloud-content.com *.icloud-content.com.cn *.apple-mapkit.com wss://*.push.apple.com; frame-src 'self' blob: mailto: sms: tel: *.icloud.com *.apple.com *.icloud-sandbox.com *.icloud-content.com *.icloud-content.com.cn; frame-ancestors 'self' *.icloud.com *.apple.com; form-action 'self' *.icloud.com *.apple.com; child-src blob: 'self'; base-uri 'self' *.icloud.com *.cdn-apple.com; report-uri https://feedbackws.icloud.com/reportRaw
CSP limits content sources to mitigate XSS.
object-src missing; recommend 'object-src 'none''.
cross-origin-embedder-policy
Not defined
COEP is part of cross-origin isolation (with COOP).
cross-origin-embedder-policy-report-only
Not defined
COEP in report-only mode (not enforced).
cross-origin-opener-policy
same-origin-allow-popups
COOP isolates browsing context groups when set to same-origin.
cross-origin-opener-policy-report-only
Not defined
COOP in report-only mode (not enforced).
cross-origin-resource-policy
Not defined
CORP restricts who can load this resource.
access-control-allow-origin
Not defined
CORS: which origins are allowed to read this response.
access-control-allow-methods
Not defined
CORS: which methods are allowed.
access-control-allow-headers
Not defined
CORS: which request headers are allowed.
alt-svc
Not defined
Advertises alternative services (e.g., HTTP/3 via QUIC).
Other detected headers
Additional headers returned by the server. Shown for information only and not included in the score.
HeaderValue
serverAppleHttpServer/cff317772116
content-length9783
etag"1a0708e58202637"
content-languageen-us
content-location/system/icloud.com/index.html.en-us.br
content-versionV1
x-apple-request-uuid46e9da84-15a1-4fef-b28b-7d081461da44
access-control-expose-headersX-Apple-Request-UUID,Via
x-ew-version0.3.8
Recommended starter configuration (.htaccess)
Starter configuration to copy and adapt. CSP, CORS and cookie rewriting are intentionally commented because they can break some sites if enabled blindly.


#BEGIN SECURITY HEADERS

# -------------------------------------------------------
# Safe baseline
# -------------------------------------------------------
<IfModule mod_rewrite.c>
  RewriteEngine On
  RewriteCond %{HTTPS} !=on
  RewriteCond %{HTTP:X-Forwarded-Proto} !https [NC]
  RewriteRule ^ https://%{HTTP_HOST}%{REQUEST_URI} [R=301,L]
</IfModule>

Options -Indexes

<IfModule mod_headers.c>
  # Reduce fingerprinting
  # The Server header usually cannot be removed from .htaccess; configure it at the web server level if needed.
  Header always unset X-Powered-By
  Header always unset X-Redirect-By

  # TLS / transport security (only when HTTPS)
  Header always set Strict-Transport-Security "max-age=63072000; includeSubDomains; preload" env=HTTPS

  # MIME sniffing protection
  Header always set X-Content-Type-Options "nosniff"

  # Referrer policy
  Header always set Referrer-Policy "strict-origin-when-cross-origin"

  # Adobe cross-domain policy
  Header always set X-Permitted-Cross-Domain-Policies "none"

  # Clickjacking protection (consistent with CSP frame-ancestors 'self')
  Header always set X-Frame-Options "SAMEORIGIN"

  # Cross-Origin isolation headers (sane defaults)
  Header always set Cross-Origin-Opener-Policy "same-origin"
  Header always set Cross-Origin-Resource-Policy "same-origin"
  # COEP is powerful but can break third-party embeds/resources if not CORP/CORS-enabled.
  # Header always set Cross-Origin-Embedder-Policy "require-corp"

  # Deprecated header; modern browsers rely on CSP instead, but some scanners still like to see it.
  Header always set X-XSS-Protection "0"

  # Permissions-Policy (balanced: blocks sensitive features, allows reasonable ones on self)
  Header always set Permissions-Policy "accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=(), display-capture=(), autoplay=(self), encrypted-media=(self), fullscreen=(self), picture-in-picture=(self), clipboard-write=(self), publickey-credentials-get=(self)"

  # Vary (keep small; don’t add Referer/User-Agent unless you truly vary by them)
  Header always merge Vary "Accept-Encoding"
</IfModule>

# -------------------------------------------------------
# Cache-Control (HTML pages)
# -------------------------------------------------------
<IfModule mod_headers.c>
  # Apply to HTML responses (works for WordPress permalinks too). Requires Apache 2.4+ expressions.
  # If you do not use a page cache (LiteSpeed Cache, cache plugins, etc.), you can uncomment the line below. Keep it commented if a page cache is active.
  # Header always set Cache-Control "private, no-cache, must-revalidate" "expr=%{CONTENT_TYPE} =~ m#^text/html#"
  # Header always unset Pragma "expr=%{CONTENT_TYPE} =~ m#^text/html#"
  # Header always unset Expires "expr=%{CONTENT_TYPE} =~ m#^text/html#"
</IfModule>

# -------------------------------------------------------
# CSP - Content Security Policy (minimal safe baseline)
# -------------------------------------------------------
<IfModule mod_headers.c>
  # (Keeps your current intent; strengthen later with default-src/script-src/etc.)
  # Adjust img-src, script-src, style-src, font-src, connect-src as needed (e.g., add trusted CDNs).
  # Header always set Content-Security-Policy "default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; img-src 'self' data: https:; script-src 'self'; style-src 'self'; font-src 'self' data:; connect-src 'self'; form-action 'self'; upgrade-insecure-requests"
</IfModule>

# -------------------------------------------------------
# CORS - Cross-Origin Ressource Sharing (optional; keep commented unless needed)
# -------------------------------------------------------
<IfModule mod_headers.c>
  # IMPORTANT:
  # - Do NOT enable global CORS unless you have a real API need.
  # If you need CORS, uncomment and set a fixed allowlist.
  # SetEnvIf Origin "^https?://(icloud\.com|www\.icloud\.com)(:\d{1,5})?$" CORS_ALLOW_ORIGIN=$0
  # Header always set Access-Control-Allow-Origin "%{CORS_ALLOW_ORIGIN}e" env=CORS_ALLOW_ORIGIN
  # Header always merge Vary "Origin" env=CORS_ALLOW_ORIGIN
  # Header always set Access-Control-Allow-Methods "GET, POST, OPTIONS" env=CORS_ALLOW_ORIGIN
  # Header always set Access-Control-Allow-Headers "Content-Type, Authorization" env=CORS_ALLOW_ORIGIN
  # Header always set Access-Control-Max-Age "86400" env=CORS_ALLOW_ORIGIN
</IfModule>

# -------------------------------------------------------
# Cookies hardening (optional)
# -------------------------------------------------------
<IfModule mod_headers.c>
  # Apache only: uses Header edit/edit* to append Secure/HttpOnly/SameSite when missing. Not valid / not supported reliably on LiteSpeed/OpenLiteSpeed.
  # Header always edit* Set-Cookie "(?i)^((?:(?!;\s*Secure).)+)$" "$1; Secure" env=HTTPS
  # Header always edit* Set-Cookie "(?i)^((?:(?!;\s*HttpOnly).)+)$" "$1; HttpOnly"
  # Header always edit* Set-Cookie "(?i)^((?:(?!;\s*SameSite=).)+)$" "$1; SameSite=Lax"
</IfModule>

# -------------------------------------------------------
# Reporting headers (optional)
# -------------------------------------------------------
<IfModule mod_headers.c>
  # Header always set Reporting-Endpoints "default=\"https://icloud.com/reporting\""
  # Header always set Cross-Origin-Opener-Policy-Report-Only "same-origin"
  # Header always set Cross-Origin-Embedder-Policy-Report-Only "require-corp"
</IfModule>

#END SECURITY HEADERS
WHOIS117.9 ms
Source: WHOIS (port 43) whois.comlaude.com
WHOIS Summary
Domain Name: icloud.com
Registry Domain ID:
Registrar WHOIS Server: whois.comlaude.com
Registrar URL: https://www.comlaude.com
Updated Date: 2026-01-10 23:04:29
Creation Date: 1999-01-15 00:00:00
Registrar Registration Expiration Date: 2027-01-15 00:00:00
Registrar: NOM-IQ Ltd dba Com Laude
Registrar IANA ID: 470
Domain Status: Registry Lock Service https://www.icann.org/epp#Registry Lock Service
Domain Status: clientDeleteProhibited https://www.icann.org/epp#clientDeleteProhibited
Domain Status: clientTransferProhibited https://www.icann.org/epp#clientTransferProhibited
Domain Status: clientUpdateProhibited https://www.icann.org/epp#clientUpdateProhibited
Domain Status: serverDeleteProhibited https://www.icann.org/epp#serverDeleteProhibited
Domain Status: serverTransferProhibited https://www.icann.org/epp#serverTransferProhibited
Domain Status: serverUpdateProhibited https://www.icann.org/epp#serverUpdateProhibited
Registry Registrant ID: REDACTED
Registrant Name: REDACTED
Registrant Organization: Apple Inc.
Registrant Street: REDACTED
Registrant City: REDACTED
Registrant State/Province: CA
Registrant Postal Code: REDACTED
Registrant Country: US
Registrant Phone: REDACTED
Registrant Phone Ext: REDACTED
Registrant Fax: REDACTED
Registrant Fax Ext: REDACTED
Registrant Email: [email protected]
Registry Admin ID: REDACTED
Admin Name: REDACTED
Admin Organization: REDACTED
Admin Street: REDACTED
Admin City: REDACTED
Admin State/Province: REDACTED
Admin Postal Code: REDACTED
Admin Country: REDACTED
Admin Phone: REDACTED
Admin Phone Ext: REDACTED
Admin Fax: REDACTED
Admin Fax Ext: REDACTED
Admin Email: [email protected]
Registry Tech ID: REDACTED
Tech Name: REDACTED
Tech Organization: REDACTED
Tech Street: REDACTED
Tech City: REDACTED
Tech State/Province: REDACTED
Tech Postal Code: REDACTED
Tech Country: REDACTED
Tech Phone: REDACTED
Tech Phone Ext: REDACTED
Tech Fax: REDACTED
Tech Fax Ext: REDACTED
Tech Email: [email protected]
Name Server: a.ns.apple.com
Name Server: b.ns.apple.com
Name Server: c.ns.apple.com
Name Server: d.ns.apple.com
DNSSEC: Unsigned Delegation
Registrar Abuse Contact Email: [email protected]
Registrar Abuse Contact Phone: +44.2074218250
URL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/ >>> Last update of WHOIS database: 2026-09-20T07:49:29Z <<<
For more information on Whois status codes, please visit https://www.icann.org/resources/pages/epp-status-codes-2014-06-16-en
Please query the RDDS service of the Registrar of Record identified in this output for information on how to contact the Registrant, Admin, or Tech contact of the queried domain name.
------------------------------------------------------------------------------- Com Laude registers, maintains and renews domain names around the world for leading intellectual property owners and the law firms that support them. If you have queries about this domain, you may contact us via our website at www.comlaude.com. -------------------------------------------------------------------------------
The data in the Com Laude Whois database is provided to assist you in obtaining information about a domain name registration record. Com Laude makes this information available "as is," and does not guarantee its accuracy. By submitting a WHOIS query, you agree that you will use this data only for lawful purposes and that, under no circumstances will you use this data to:
(1) allow, enable, or otherwise support the transmission of mass unsolicited, commercial advertising or solicitations via e-mail (spam), telephone or fax; or (2) enable high volume, automated, electronic processes that that send queries or data to Com Laude or the systems of any Registry Operator or ICANN-Accredited registrar. The compilation, repackaging, dissemination or other use of this data is expressly prohibited without the prior written consent of Com Laude.
Com Laude reserves the right to modify these terms at any time. By submitting this query, you agree to abide by these terms. If you fail to abide by this policy, we may terminate your access to this WHOIS database.
------------------------------------------------------------------------------- Com Laude protects intellectual property in the domain name system. Com Laude only registers domain names for legitimate rights owners. Should you have any queries about the legitimacy of this name or our work as a UK based, ICANN Accredited Registrar, contact us at: Com Laude, 28 Little Russell Street, London WC1A 2HN, UK. Com Laude is a business name of Nom IQ Ltd. -------------------------------------------------------------------------------
WHOIS RAW
Domain Name: icloud.com
Registry Domain ID: 
Registrar WHOIS Server: whois.comlaude.com
Registrar URL: https://www.comlaude.com
Updated Date: 2026-01-10T23:04:29Z
Creation Date: 1999-01-15T00:00:00Z
Registrar Registration Expiration Date: 2027-01-15T00:00:00Z
Registrar: NOM-IQ Ltd dba Com Laude
Registrar IANA ID: 470
Domain Status: Registry Lock Service https://www.icann.org/epp#Registry Lock Service
Domain Status: clientDeleteProhibited https://www.icann.org/epp#clientDeleteProhibited
Domain Status: clientTransferProhibited https://www.icann.org/epp#clientTransferProhibited
Domain Status: clientUpdateProhibited https://www.icann.org/epp#clientUpdateProhibited
Domain Status: serverDeleteProhibited https://www.icann.org/epp#serverDeleteProhibited
Domain Status: serverTransferProhibited https://www.icann.org/epp#serverTransferProhibited
Domain Status: serverUpdateProhibited https://www.icann.org/epp#serverUpdateProhibited
Registry Registrant ID: REDACTED
Registrant Name: REDACTED
Registrant Organization: Apple Inc.
Registrant Street: REDACTED
Registrant City: REDACTED
Registrant State/Province: CA
Registrant Postal Code: REDACTED
Registrant Country: US
Registrant Phone: REDACTED
Registrant Phone Ext: REDACTED
Registrant Fax: REDACTED
Registrant Fax Ext: REDACTED
Registrant Email: [email protected]

Registry Admin ID: REDACTED
Admin Name: REDACTED
Admin Organization: REDACTED
Admin Street: REDACTED
Admin City: REDACTED
Admin State/Province: REDACTED
Admin Postal Code: REDACTED
Admin Country: REDACTED
Admin Phone: REDACTED
Admin Phone Ext: REDACTED
Admin Fax: REDACTED
Admin Fax Ext: REDACTED
Admin Email: [email protected]
Registry Tech ID: REDACTED
Tech Name: REDACTED
Tech Organization: REDACTED
Tech Street: REDACTED
Tech City: REDACTED
Tech State/Province: REDACTED
Tech Postal Code: REDACTED
Tech Country: REDACTED
Tech Phone: REDACTED
Tech Phone Ext: REDACTED
Tech Fax: REDACTED
Tech Fax Ext: REDACTED
Tech Email: [email protected]
Name Server: a.ns.apple.com
Name Server: b.ns.apple.com
Name Server: c.ns.apple.com
Name Server: d.ns.apple.com
DNSSEC: Unsigned Delegation
Registrar Abuse Contact Email: [email protected]
Registrar Abuse Contact Phone: +44.2074218250
URL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/
>>> Last update of WHOIS database: 2026-09-20T07:49:29Z <<<

For more information on Whois status codes, please visit https://www.icann.org/resources/pages/epp-status-codes-2014-06-16-en

Please query the RDDS service of the Registrar of Record identified in this
output for information on how to contact the Registrant, Admin, or Tech contact
of the queried domain name.

-------------------------------------------------------------------------------
Com Laude registers, maintains and renews domain names around the world for
leading intellectual property owners and the law firms that support them.
If you have queries about this domain, you may contact us via our website
at www.comlaude.com.
-------------------------------------------------------------------------------

The data in the Com Laude Whois database is provided to assist you in obtaining
information about a domain name registration record. Com Laude makes this
information available "as is," and does not guarantee its accuracy.
By submitting a WHOIS query, you agree that you will use this data only for
lawful purposes and that, under no circumstances will you use this data to:

(1) allow, enable, or otherwise support the transmission of mass unsolicited,
commercial advertising or solicitations via e-mail (spam), telephone or fax; or
(2) enable high volume, automated, electronic processes that that send queries
or data to Com Laude or the systems of any Registry Operator or ICANN-Accredited
registrar. The compilation, repackaging, dissemination or other use of this
data is expressly prohibited without the prior written consent of Com Laude.

Com Laude reserves the right to modify these terms at any time. By submitting
this query, you agree to abide by these terms. If you fail to abide by this
policy, we may terminate your access to this WHOIS database.

-------------------------------------------------------------------------------
Com Laude protects intellectual property in the domain name system. Com Laude
only registers domain names for legitimate rights owners. Should you have any
queries about the legitimacy of this name or our work as a UK based, ICANN
Accredited Registrar, contact us at:
Com Laude, 28 Little Russell Street, London WC1A 2HN, UK.
Com Laude is a business name of Nom IQ Ltd.
-------------------------------------------------------------------------------
RDAP
117.5 ms
Source: RDAP rdap.org → rdap.verisign.com → rdap.comlaude.com
Domain Name:ICLOUD.COM
Registry Domain ID:3079972_DOMAIN_COM-VRSN
RDAP self:https://rdap.verisign.com/com/v1/domain/icloud.com
Updated Date:2026-01-10 23:04:29
Creation Date:1999-01-15 05:00:00
Registry Expiry Date:✅ 2027-01-15 05:00:00
Registrar:Nom-iq Ltd. dba COM LAUDE
Registrar Abuse Contact Email:[email protected]
Registrar Abuse Contact Phone:+442074218250
Domain Status:clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
clientTransferProhibited https://icann.org/epp#clientTransferProhibited
clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
serverDeleteProhibited https://icann.org/epp#serverDeleteProhibited
serverTransferProhibited https://icann.org/epp#serverTransferProhibited
serverUpdateProhibited https://icann.org/epp#serverUpdateProhibited
Name Servers:a.ns.apple.com
b.ns.apple.com
c.ns.apple.com
d.ns.apple.com
WHOIS NS match DNS
DNSSEC:unsigned (delegationSigned=false)
RDAP notices:Terms of Service — https://www.verisign.com/domain-names/registration-data-access-protocol/terms-service/index.xhtml
Status Codes — https://icann.org/epp
RDDS Inaccuracy Complaint Form — https://icann.org/wicf
Registrar
Registrar:
Name Nom-iq Ltd. dba COM LAUDE
Handle: 470
Abuse contact:
Phone +442074218250
RDAP JSON (raw)
{
    "objectClassName": "domain",
    "handle": "3079972_DOMAIN_COM-VRSN",
    "ldhName": "ICLOUD.COM",
    "links": [
        {
            "value": "https://rdap.verisign.com/com/v1/domain/icloud.com",
            "rel": "self",
            "href": "https://rdap.verisign.com/com/v1/domain/icloud.com",
            "type": "application/rdap+json"
        },
        {
            "value": "https://rdap.verisign.com/com/v1/domain/icloud.com",
            "rel": "related",
            "href": "https://rdap.comlaude.com/rdap/domain/ICLOUD.COM",
            "type": "application/rdap+json"
        }
    ],
    "status": [
        "client delete prohibited",
        "client transfer prohibited",
        "client update prohibited",
        "server delete prohibited",
        "server transfer prohibited",
        "server update prohibited"
    ],
    "entities": [
        {
            "objectClassName": "entity",
            "handle": "470",
            "roles": [
                "registrar"
            ],
            "links": [
                {
                    "href": "http://www.comlaude.com",
                    "type": "text/html",
                    "value": "https://rdap.comlaude.com/rdap/",
                    "rel": "about"
                }
            ],
            "publicIds": [
                {
                    "type": "IANA Registrar ID",
                    "identifier": "470"
                }
            ],
            "vcardArray": [
                "vcard",
                [
                    [
                        "version",
                        [],
                        "text",
                        "4.0"
                    ],
                    [
                        "fn",
                        [],
                        "text",
                        "Nom-iq Ltd. dba COM LAUDE"
                    ]
                ]
            ],
            "entities": [
                {
                    "objectClassName": "entity",
                    "roles": [
                        "abuse"
                    ],
                    "vcardArray": [
                        "vcard",
                        [
                            [
                                "version",
                                [],
                                "text",
                                "4.0"
                            ],
                            [
                                "fn",
                                [],
                                "text",
                                ""
                            ],
                            [
                                "tel",
                                {
                                    "type": "voice"
                                },
                                "uri",
                                "tel:+442074218250"
                            ],
                            [
                                "email",
                                [],
                                "text",
                                "[email protected]"
                            ]
                        ]
                    ]
                }
            ]
        }
    ],
    "events": [
        {
            "eventAction": "registration",
            "eventDate": "1999-01-15T05:00:00Z"
        },
        {
            "eventAction": "expiration",
            "eventDate": "2027-01-15T05:00:00Z"
        },
        {
            "eventAction": "last changed",
            "eventDate": "2026-01-10T23:04:29Z"
        },
        {
            "eventAction": "last update of RDAP database",
            "eventDate": "2026-09-20T07:49:29Z"
        }
    ],
    "secureDNS": {
        "delegationSigned": false
    },
    "nameservers": [
        {
            "objectClassName": "nameserver",
            "ldhName": "A.NS.APPLE.COM"
        },
        {
            "objectClassName": "nameserver",
            "ldhName": "B.NS.APPLE.COM"
        },
        {
            "objectClassName": "nameserver",
            "ldhName": "C.NS.APPLE.COM"
        },
        {
            "objectClassName": "nameserver",
            "ldhName": "D.NS.APPLE.COM"
        }
    ],
    "rdapConformance": [
        "rdap_level_0",
        "icann_rdap_technical_implementation_guide_1",
        "icann_rdap_response_profile_1"
    ],
    "notices": [
        {
            "title": "Terms of Service",
            "description": [
                "Service subject to Terms of Use."
            ],
            "links": [
                {
                    "href": "https://www.verisign.com/domain-names/registration-data-access-protocol/terms-service/index.xhtml",
                    "type": "text/html",
                    "value": "https://rdap.verisign.com/com/v1/domain/icloud.com",
                    "rel": "terms-of-service"
                }
            ]
        },
        {
            "title": "Status Codes",
            "description": [
                "For more information on domain status codes, please visit https://icann.org/epp"
            ],
            "links": [
                {
                    "href": "https://icann.org/epp",
                    "type": "text/html",
                    "value": "https://rdap.verisign.com/com/v1/domain/icloud.com",
                    "rel": "glossary"
                }
            ]
        },
        {
            "title": "RDDS Inaccuracy Complaint Form",
            "description": [
                "URL of the ICANN RDDS Inaccuracy Complaint Form: https://icann.org/wicf"
            ],
            "links": [
                {
                    "href": "https://icann.org/wicf",
                    "type": "text/html",
                    "value": "https://rdap.verisign.com/com/v1/domain/icloud.com",
                    "rel": "help"
                }
            ]
        }
    ]
}

You like this tool?

Buy Me A Coffee

Processed in 0.009 seconds.
Made with with PHP and a bit of JS.
Lines of code: 20,351

⚙️ Configuration
(Check / Uncheck All)