LúminaKite

Domain trust

DNS and email security monitoring

Turn DNS snapshots and email-authentication checks into comparable evidence for detecting drift, errors, and changes that affect availability or impersonation risk.

DNS changes quickly and affects more than resolution

A change to A, AAAA, CNAME, MX, or nameservers can reroute traffic. TXT changes may weaken SPF or DMARC without making the website unavailable.

Manual lookups show current state but rarely preserve which record disappeared, when the difference began, or who should review it.

Records and controls covered

LuminaKite snapshots authorized domains, compares records, and evaluates email controls.

Resolution and delegation

A, AAAA, CNAME, NS, SOA, and nameserver changes.

Mail delivery

MX and signals that alter email routing.

Authentication

SPF, DKIM, and DMARC posture and syntax issues.

Mail transport

MTA-STS and TLS-RPT where published.

Alerts with operating context

Diffs separate additions, removals, and value changes. The goal is not to alert on every TTL but to highlight meaningful modifications for owner review.

A lookup is not continuous monitoring

`dig` and `nslookup` are excellent diagnostic tools. Monitoring adds repetition, history, and prioritization; it does not administer or automatically repair your DNS zone.

Frequently asked questions

Does LuminaKite change DNS records?

No. It reads and compares public metadata; changes remain under your DNS provider.

Is every DNS change an incident?

No. Many are legitimate deployments. History helps operators confirm whether a change was planned.

Does this include DMARC aggregate reports?

DMARC RUA processing is available where enabled by plan and configuration and is covered on the dedicated DMARC page.

Detect DNS and email drift

Centralize domains and review changes with historical evidence.

Start free

Related content