Data feed subscription
Domain Infrastructure Change CSV Feed
A product page for security, brand-protection, and incident response teams that may prefer a recurring CSV feed before API integration.
Daily CSV export
observed_at,domain,change_type,registrar,nameserver,certificate_issuer,source
2026-07-02T18:10:00Z,example-security.test,nameserver_changed,Sample Registrar,ns1.example.net,,RDAP
2026-07-02T17:45:00Z,login-example.test,certificate_issued,,,"Sample CA",Certificate Transparency
2026-07-02T16:30:00Z,brand-watch.test,registration_updated,Example Registrar,ns2.example.net,,RDAP
Likely Buyers
This page supports buyers comparing recurring feeds, report exports, and API access.
- SOC teams reviewing public domain and certificate changes.
- Brand-protection teams watching lookalike or newly active domains.
- Security tooling teams that need normalized infrastructure deltas.
Request Path
Buyers can review the sample, request a recurring feed, or use the current SEC API subscription path where live endpoints are available.
- CSV subscription for teams that start with review queues.
- API subscription for watchlists and enrichment workflows.
- No private WHOIS, personal data enrichment, or takedown workflow without approved workflow scope.
Inspect the sample first
The current public CSV sample is available at
/datasets/domain-infrastructure-sample.csv. Larger recurring feeds can be scoped
around source coverage, cadence, and delivery format.