WHOIS lookup
Registrar, registration and expiry dates, nameservers and status for any domain (via RDAP).
Registrar, registration and expiry dates, nameservers and status for any domain (via RDAP).
A WHOIS lookup retrieves the public registration details for any domain—owner information, registrar, creation date, expiration date, and current status. This data comes from ICANN's centralized database that stores registration records for every registered domain globally.
A WHOIS lookup returns registration details stored in the domain registry. Here's what you'll typically see in the results:
The registrar is the official authority for all these details. When a domain owner updates their registration information through their registrar's dashboard, that data syncs into the WHOIS database within 24 to 48 hours. Not all fields appear in every lookup—some registries or registrars restrict certain data for privacy or compliance reasons, and domains with privacy protection will show a privacy provider's information instead of the actual owner's details.
The lookup is instant. You receive results immediately without waiting for a crawl or email confirmations. The data comes directly from ICANN's central registry.
WHOIS results include a domain status field that communicates the current registration state. These status codes follow the EPP (Extensible Provisioning Protocol) standard that all registries and registrars worldwide use to track domain states consistently.
| Status Code | Meaning | What It Means for the Domain |
|---|---|---|
| ok | Domain is active and operating normally | No issues; registration is current |
| clientHold | Registrar has placed a hold on the domain | Usually due to non-payment or policy violation; owner must contact registrar to resolve |
| clientTransferProhibited | Domain is locked and cannot be transferred | Transfer lock is active; must be removed by registrar before moving to another provider |
| autoRenewPeriod | Domain has expired and is set to auto-renew | Registrar will renew automatically if billing is valid; no action needed |
| redemptionPeriod | Domain expired but is within the grace period | Owner can restore it within ~30 days; after that it moves to pending deletion |
| pendingDelete | Domain is scheduled for deletion | Passed grace period; will be deleted and become available for new registration |
| transferPending | A transfer request to another registrar is in progress | Wait for transfer to complete or cancel it if unauthorized |
A domain can have multiple statuses simultaneously. For example, clientTransferProhibited and autoRenewPeriod together mean the domain is locked against transfers and will auto-renew—both are normal protective settings. If you see an unexpected or concerning status, check your registrar's support documentation or contact them directly to understand what action is needed.
By default, WHOIS lookups return the registrant's actual contact details: name, email address, and physical address. This public visibility allows anyone to reach the domain owner for business or legal purposes, but it also exposes personal information to spammers, scammers, and bad actors who harvest contact details from the database.
Domain privacy (also called WHOIS privacy or domain privacy protection) is a service that substitutes your personal information with a privacy provider's proxy contact information. When you look up a domain with privacy enabled, you'll see the privacy provider's name and forwarding email address instead of the actual owner's details. You can still reach the domain owner through that forwarding address—the privacy provider passes your message along—but their direct contact information remains hidden. Some registrars include free WHOIS privacy with domain registration; others charge an annual fee.
Privacy regulations also constrain WHOIS data exposure. The European Union's GDPR (General Data Protection Regulation) and similar privacy laws require explicit consent before exposing personal data publicly. As a result, many registries in Europe and other regions proactively hide certain WHOIS fields or apply privacy protection automatically to comply with regulations. This means a European domain may display less information than a .com domain, even without privacy protection enabled by the owner.
Privacy protection is optional—you control whether your actual contact details are public. If you're a domain investor, business owner, or individual who values privacy, enabling privacy protection is recommended to reduce spam and protect your personal information from misuse.
WHOIS lookups serve many practical purposes:
ICANN enforces accuracy rules to keep WHOIS data reliable. Registrars are required to verify that domain owners maintain current contact details. ICANN sends annual verification reminders to registrants asking them to confirm their information is still correct. If an owner ignores these reminders or provides false information, the registrar can suspend or delete the domain.
When you update your WHOIS information through your registrar's control panel, those changes do not appear instantly in the public database. Most changes propagate within 24 hours, though some registries or registrars may take up to 48 hours to sync updates. If you look up your own domain immediately after making an update, you may still see the old information. This delay is normal and expected.
Domains with privacy protection may show outdated information for longer periods. The privacy provider maintains the proxy forwarding address, which is more stable than registrant details that change frequently. If you need to verify the actual owner's current information for a privacy-protected domain, you can contact the forwarding email—the privacy provider will pass your message to the real owner.
WHOIS is a registration lookup—it tells you who registered a domain and when, but it does not indicate whether the website is legitimate, actively maintained, trustworthy, or currently operating. A domain registered by a legitimate company can host malware; a domain owned by a scammer can appear professional. WHOIS results are one data point in a larger assessment, not a security evaluation.
WHOIS also does not show you website content, SSL certificate information, detailed DNS records, traffic data, or hosting details. For a complete domain and website safety assessment, combine WHOIS results with other tools—such as SSL certificate checkers, DNS lookup utilities, site scanning services, and reputation databases. If you suspect a domain is fraudulent or malicious, report it directly to the registrar, ICANN, or your local authority rather than relying solely on WHOIS data.
A WHOIS lookup retrieves public registration information for a domain name from ICANN's central database. It shows you the registrar, owner contact details, creation and expiration dates, and current status. Think of it as a public directory for domain ownership—anyone can look up who registered a domain and when.
WHOIS data is only as accurate as the domain owner keeps it. ICANN requires registrars to verify owner information annually and maintain accuracy, but registrars depend on the owner to report changes correctly. Owners receive annual reminders to confirm their details are current. If you see outdated information, the owner likely has not updated their registrar records. Updates typically propagate to the public WHOIS database within 24 to 48 hours after a change.
Yes. Most registrars offer domain privacy protection (also called WHOIS privacy or domain privacy) that replaces your actual name, email, and address with a privacy provider's forwarding information. Some registrars include it free with registration; others charge an annual fee. When privacy is enabled, WHOIS lookups show the privacy provider's contact details instead of yours. Messages sent to that address are forwarded to you.
Log into your registrar's control panel or Domain Manager and edit your domain's contact information. You can update your name, email, address, phone number, and administrative contacts. Changes propagate to the public WHOIS database within 24 to 48 hours. Your registrar will also send annual verification emails asking you to confirm your details are correct—responding to these helps ensure accuracy.
WHOIS data is hidden for two main reasons: the domain owner enabled privacy protection, or the registry applies privacy rules to comply with regulations. The European Union's GDPR and similar privacy laws in other jurisdictions restrict public exposure of personal data without consent. Many registries in Europe and elsewhere proactively hide certain WHOIS fields to comply with these laws, even if the owner did not purchase privacy protection.
Domain status shows the current operating state of the registration. 'ok' means the domain is active and in good standing. Other statuses like 'clientTransferProhibited' mean the domain is locked against transfers, 'autoRenewPeriod' means it will auto-renew after expiration, and 'pendingDelete' means it expired and is scheduled for deletion. A domain can have multiple statuses at once. Status codes follow the EPP standard used by all registries worldwide.
If WHOIS shows a domain is registered and active, it is not available for new registration. However, if it is expiring soon, it may become available when the current owner lets it lapse. Expired domains enter a grace period where the owner can restore them; if they do not, the domain eventually becomes available for new registration. Domain brokers and monitoring services can alert you when popular domains become available.
ICANN (Internet Corporation for Assigned Names and Numbers) maintains the WHOIS system and sets policy for how domain registration data is handled. Individual registries (for .com, .net, .org, and other TLDs) and domain registrars are responsible for storing and updating domain registration data according to ICANN rules. Each registry may have slightly different policies on which WHOIS fields are public and which are restricted for privacy reasons.