What is this domain's reputation?
Enter any domain. We return a risk level, whether it is a throwaway-mailbox provider, whether it appears in our malicious-domain dataset, and how the verdict was reached.
Disposable email domain.
mailinator.com is a throwaway mailbox provider. Expect fake signups and trial abuse from addresses here.
Pre-filled with a known disposable provider. Type any domain to check yours.
Behind every check
19.8 million
IP addresses profiled
2.4 million
malicious domains tracked
208,000
disposable email domains
1.9 million
networks scored
Counts read live from the engine, not written into the page. The full dataset is published on GitHub under the MIT license and rebuilt every 30 minutes.
What this checks
Phishing and malicious history
Whether the domain appears in our malicious-domain dataset, assembled from threat feeds, malware-family trackers, and our own sensors.
Disposable mailbox provider
Whether the domain exists to hand out throwaway inboxes, which is a different problem from being outright malicious and deserves a different response.
Allowlist status
Whether the domain is one of the major mailbox or infrastructure providers that we will never flag, so you can tell a genuine clean verdict from a simple absence of data.
Detection route
How the verdict was reached: a confirmed database listing, a heuristic pattern match on a brand-new burner service, an allowlist hit, or a link to a known spam address. Different routes justify different amounts of trust.
Why unknown is not the same as clean
Most domains on the internet are unremarkable and appear on no list anywhere, which is exactly what a brand-new attack domain also looks like on its first day. A clean verdict from us means we hold no negative evidence, and for an established domain that is meaningful. For a domain registered this week it mostly means nobody has caught it yet. Newly registered domains deserve extra suspicion regardless of what any reputation service says, because reputation systems are structurally late to domains that have no history to have a reputation about.
What this is not
This is not a sender-reputation or mail-delivery score. It does not tell you how inbox providers will treat mail from your domain, it does not read your SPF, DKIM, or DMARC records, and it will not explain why your newsletter is landing in spam. It answers whether a domain has a history of being used to deceive or to generate throwaway mailboxes.
Real domains, real verdicts.
Live results, fetched as this page loaded. Disposable and malicious are separate verdicts and deserve separate responses.
mailinator.com
high risk
disposable mailbox provider
The canonical public throwaway inbox. Anyone can read any mailbox on it, which is precisely why it turns up in fake signups.
temp-mail.org
high risk
disposable mailbox provider
One of the most-searched temp-mail brands, and a fleet operator: the same organisation runs a great many domains at once.
00000000.me
critical risk
malicious domain
Not disposable, malicious. It sits in our phishing dataset, which is a different and more serious verdict.
gmail.com
low risk
allowlisted major provider
Permanently allowlisted. No data source can ever push a major provider onto the disposable list.
protonmail.com
low risk
allowlisted major provider
A real privacy-focused mailbox, and a useful test: privacy is not disposability, and treating it as such rejects genuine customers.
Every verdict above was fetched from the engine when this page loaded. Nothing here is a screenshot or a stored example, so if a number looks surprising, that is what our data actually says right now.
Reading the result
Low
No negative evidence. For an established domain that is a real signal; for a domain registered days ago, treat it as unproven rather than safe.
Medium
Something is present: a heuristic pattern match, or a weaker association. Worth friction, not a hard block.
High to critical
Confirmed disposable or malicious. Safe to act on.
Questions people ask
How do I check a domain's reputation?
Type the domain into the box above. You get a risk level plus the specifics behind it: whether the domain is a disposable-mailbox provider, whether it appears in our malicious-domain dataset, whether it is on our allowlist of major providers, and which detection route produced the verdict. No signup and no limit.
What makes a domain reputation bad?
In our data, two things above all. Appearing in the malicious-domain dataset, which means the domain has been observed in phishing, malware distribution, or scam infrastructure. Or operating as a disposable-mailbox service, which is not malicious in itself but makes any signup from that domain unreliable. Naming which of the two applies matters, because the right response to each is different.
Why does a domain I know is bad come back clean?
Usually because it is too new. Reputation systems depend on observed behavior, and a domain registered a few days ago has not yet generated any. This is the fundamental limit of every reputation service, ours included, and we would rather say so than imply a confidence we do not have. Treat domain age as an independent signal alongside reputation, never as a substitute for it.
Is the domain reputation data available as a download?
Yes. The disposable-domain list is published in full on GitHub under the MIT license and rebuilt every 30 minutes from the live engine, so you can screen domains locally with no API calls at all.
Other free tools
Email blacklist check
Paste any email address. Disposable, phishing, role account, known spammer, and community reports, in one verdict.
Disposable email checker
Check whether an email domain hands out throwaway mailboxes, and whether to block it at signup.
IP reputation
A 0 to 100 fraud score for any IP address, with every signal that produced it shown in the open.
Do it in code.
The same answer from a free API endpoint, or download the whole database and never call an API at all. No card, no quota, no expiry.