WHOIS History Services Compared: The Major Domain History Archives, Side by Side, and How to Pick the Right One

· Last reviewed · 17 min read

A WHOIS history service is an archive that stores past registration records for a domain, so the snapshots a registry once published stay readable long after the live record changes. The live WHOIS or RDAP lookup shows only who holds a domain today. A history service shows who held it before, and when each handover happened.

That past matters because a domain carries its history into every future use. Prior owners, registration gaps, and ownership churn are signals an investor and an SEO read before money changes hands. The catch is that the serious archives are commercial products, each sells only itself, and none publishes a neutral comparison of the field.

This guide fills that gap. It sets the four major paid archives side by side on the criteria that decide a choice, explains why the archive start year is the single criterion that outweighs the rest, and maps each service to the job it suits. The diligence this enables is the same diligence SEO Domains runs on the curated aged and expired domains in its marketplace before they are listed, a 220,000-plus catalogue spanning 100-dollar entry-level aged domains through premium acquisitions.

What is a WHOIS history service, and why a domain’s past matters

A WHOIS history service is a commercial database that captures and stores WHOIS registration snapshots over time, so the record a registry published on a past date can be retrieved after the live record has changed. It answers who owned a domain before, across each ownership change, where a live WHOIS or RDAP query answers only who owns it now.

The difference between a live lookup and a history archive

A live WHOIS or RDAP query returns the present state of a domain: the current registrant fields the registry exposes, the registrar, the status codes, and the dates. It is a snapshot of today, and it overwrites itself the moment the registration changes. The mechanics of that live query are covered in WHOIS: protocol and how to read the data.

A history service runs that same query on a schedule, stores each result as a dated record, and keeps the old snapshots when the live one moves on. The archive is the byproduct of doing the lookup repeatedly for years and never throwing the older copies away.

Why a domain’s registration past carries weight

A domain inherits its history. An aged name that passed cleanly through one long-term owner reads differently from one that churned through four registrants and two dropped registrations in three years. The first pattern signals continuity, the second signals a name that was flipped, parked, or abandoned, and that distinction shapes what the domain is worth and how safe it is to build on.

The record also dates the entity. A first-registration date establishes genuine age, and ownership continuity confirms the name was used by a real operator, not recycled through a spam cycle. Reading that record is the first diligence step on any acquisition, a point the closing section returns to.

Live WHOIS or RDAP lookup

The current registration only: present registrant fields, registrar, status codes, and dates. Free at the registry. Overwrites itself on every change, so the past is gone.

WHOIS history service

A dated archive of past snapshots: prior owners, ownership-change timing, and pre-redaction records. Commercial. Retrieves what the live lookup has already discarded.

Figure 1. The live lookup answers who owns a domain today; the history service answers who owned it before. The two solve different problems, and the searches that confuse them lead people to the wrong tool.

Why the archive start year is the first criterion: GDPR and the RDAP switch

The difference that outweighs every other between WHOIS history services is how far back the archive reaches, because two regulatory events split the data into eras. GDPR redacted gTLD registrant identities from 25 May 2018, and RDAP replaced WHOIS as the ICANN standard on 28 January 2025. An archive that started before 2018 holds owner names that no live lookup will ever show again.

The GDPR redaction line of 2018

The General Data Protection Regulation took effect on 25 May 2018. To comply, ICANN had adopted the Temporary Specification for gTLD Registration Data on 17 May 2018, which required registrars to redact the registrant name, email, and contact details from public gTLD WHOIS output. From that point, a live lookup on a privacy-affected gTLD domain returns redacted contact fields in place of a named owner.

That single change is what makes a pre-2018 archive valuable. WhoisXML API states plainly that its history records from before 2018 are available without privacy redactions, which means an archive that was capturing snapshots in 2015 holds named-owner records that a live query in 2026 cannot reproduce. The archive froze the data before the redaction rule erased it from the public view.

The RDAP switch of January 2025

The second era boundary is the protocol change. RDAP, the Registration Data Access Protocol, replaced WHOIS as the standard ICANN registration-data service on 28 January 2025, returning the same registration data in a structured JSON format with tiered access. The successor protocol and what it changes are detailed in RDAP: the successor to WHOIS.

For a history archive, the switch matters in two ways. Records collected after that date originate from RDAP, not legacy WHOIS, and DomainTools itself carries a notice flagging the possible deprecation of its WHOIS services after 28 January 2025. The serious archives are migrating their collection to RDAP, and the records on either side of that boundary come from different protocols.

1995

DomainTools begins tracking WHOIS history, the earliest published collection start among the major archives. Source: DomainTools.

2010 to 2012

Later entrants begin large-scale collection. WhoisXML API records date back to around 2010, and Whoxy began recording in November 2012. Source: vendor archives.

17 May 2018

ICANN adopts the Temporary Specification for gTLD Registration Data ahead of GDPR, requiring redaction of registrant contact details. Source: ICANN.

25 May 2018

GDPR takes effect. Public gTLD WHOIS output is redacted from this date, freezing named-owner data behind privacy. Source: GDPR record.

28 January 2025

RDAP replaces WHOIS as the ICANN registration-data standard. New history records originate from RDAP from this point. Source: ICANN.

Figure 2. Two regulatory boundaries, 2018 and 2025, split WHOIS history into eras. An archive is only as revealing as the earliest era it was already capturing, which is why the start year is the first thing to check.

The major WHOIS history services, side by side

Four commercial archives lead the field: DomainTools, WhoisXML API, WhoisFreaks, and Whoxy. They differ on archive start year, the scale of records and domains covered, pre-2018 redaction handling, free access, and price model. Each vendor publishes its own figures and sells only its own product, so the comparison below is assembled from those published numbers, side by side, in one place.

The headline figures, as each vendor publishes them

The four archives split into two camps. DomainTools owns the longest lookback and the investigator reputation, but gates everything behind a subscription. The three API-first vendors compete on scale, freshness, and price, with free tiers that make a single lookup cheap or free.

ServiceArchive startsPublished scalePre-2018 unredactedFree accessAPIPrice model
DomainTools1995WHOIS history of millions of domains since 1995Yes, by virtue of the 1995 startNo, subscription onlyEnterprise (Iris)Subscription membership
WhoisXML API~201028.7 billion-plus records, 1.2 billion-plus domains, 7,596-plus TLDsYes, records before 2018 without redactions500 API credits, web UI capped at 10 queries and the last 3 recordsYesFreemium, paid plans plus quarterly DB downloads
WhoisFreaks19864 billion-plus records, 919.9 million-plus domains, 1,528 TLDsYes, by virtue of the early startFree API credits on signupYesAPI plans, monthly updates, deduplicated records
WhoxyNovember 2012699,835,178 domainsPartial, the archive postdates 2012 onlyFree trial credits, pay as you goYes, XML and JSON1,000 queries at 5 USD down to a 1 USD CPM in bulk
Figure 3. The four major WHOIS history archives on the criteria that decide a choice, assembled from each vendor’s own published figures (DomainTools, WhoisXML API, WhoisFreaks, Whoxy). Scale numbers are vendor-reported, not independently audited, and are best read as order-of-magnitude.

How to read the scale numbers

The record and domain counts are vendor-reported marketing figures, so they are best treated as order-of-magnitude, not audited fact. A higher record count signals more snapshots captured over time, while a higher domain count signals broader coverage of which names the archive has watched at all. The two move together but are not the same: an archive can hold billions of records on a smaller set of frequently changing domains.

Start year resists that ambiguity, which is one more reason it is the cleanest selection criterion. WhoisFreaks claims records back to 1986 and DomainTools claims tracking since 1995, both of which predate the 2018 redaction line by decades, while Whoxy’s November 2012 start sits comfortably before it as well. WhoisXML API’s roughly 2010 start also clears 2018, so all four hold a pre-redaction era of records, with the earlier two reaching deepest.

Free versus paid, web lookup versus API, and bulk export

Access splits along two axes: free trial versus paid, and single web lookup versus programmatic API. ICANN Lookup and the lightweight free tools handle a one-off current check at no cost. The four archives gate deep history behind credits or a subscription, and the API plus bulk-download tier is what separates a casual check from an investor screening names at volume.

The single-lookup path

For one domain, the friction is low. WhoisXML API grants 500 API credits and a capped web tool that returns the last three records for a quick look. Whoxy hands new users free trial credits and bills per query with no monthly fee, so a single history query costs cents. WhoisFreaks issues free API credits on signup. The free tools at osint.sh and IQWHOIS return a basic history with no account at all.

The trade is depth. A free or capped lookup typically surfaces recent records, not the full pre-2018 archive, so a one-off check confirms broad ownership shape without the deep lookback the paid tiers unlock.

The volume path: API and bulk download

Screening names at scale is a different problem. An investor checking a list of dropped domains, or an SEO vetting a backlink-acquisition target set, needs the API to query in bulk and, for offline work, a database download. WhoisXML API publishes quarterly database releases alongside its API. Whoxy’s API returns XML and JSON and prices down to a 1 USD CPM in bulk, the cheapest at volume. WhoisFreaks deduplicates and updates monthly, storing a new record only when the WHOIS data genuinely changed, which keeps the dataset lean.

Freshness varies. A monthly or quarterly update cycle means a recent ownership change can take weeks to appear, so none of these archives is a real-time feed. For the historical question they answer, which is who owned a domain in the past, that lag is irrelevant.

Access needBest fitWhy
One-off current record, no costICANN LookupThe authoritative live registration record, free, but current only with no history
One-off history check, low or no costWhoxy, WhoisXML API free tier, osint.shFree trial credits or capped web lookups surface recent records cheaply
Deep pre-2018 lookbackDomainTools, WhoisFreaksEarliest archive starts, 1995 and 1986, reach furthest behind the redaction line
Bulk screening at volumeWhoxy, WhoisXML APIAPI plus bulk pricing or quarterly database downloads handle large name lists
Offline datasetWhoisXML APIQuarterly database releases for local processing
Figure 4. Access model mapped to need. The free path answers a single question; the API and bulk-download path answers a screening workflow. The choice follows the job, not the brand.

Which WHOIS history service fits which job

The right WHOIS history service follows the job, not a ranking. A domain investor vetting acquisitions, an SEO running due diligence, a brand-protection team, an OSINT investigator, and a person making one free check each have a different ideal tool. Matching the profile to the archive avoids paying for a subscription a single lookup never needed, or trusting a free tool with a decision that warranted the deep archive.

The five buyer profiles

Each profile is defined by depth of lookback, query volume, and budget. The investor and the SEO overlap heavily, since both read history to judge whether a name is safe to build on, and both benefit from the deepest archive that fits the budget.

ProfileWhat the job needsBest-fit archive
Domain investor vetting acquisitionsDeep lookback plus bulk screening of drop lists, on a per-query budgetWhoxy for volume economics, WhoisFreaks or DomainTools for the deepest history
SEO running pre-purchase due diligencePre-2018 owner identity and ownership churn on a shortlist of namesWhoisXML API or WhoisFreaks, free tier first, paid for depth
Brand-protection and legal teamInvestigator-grade records and a recognised evidentiary sourceDomainTools, the long-standing investigator standard
OSINT and security researcherAPI access, reverse lookups, and large-scale correlationWhoisXML API or WhoisFreaks for API breadth
One-off curious checkA single free history glance with no accountosint.sh, IQWHOIS, or a free-tier web lookup
Figure 5. The service follows the job. No single archive wins every profile; the deepest one is wasted on a one-off check, and a free tool is too thin for a six-figure acquisition decision.

The criteria that actually decide it

Three questions resolve the choice for almost every profile, in order of weight:

  • How far back does the answer need to reach? If the pre-2018 owner is the point, the archive start year is decisive, and DomainTools or WhoisFreaks lead.
  • One domain or a list? A single name suits a free or capped tier; a screening list needs the API and bulk pricing, where Whoxy is cheapest at volume.
  • Is the record evidence? A legal or brand matter favours the recognised investigator source, which is where DomainTools holds its reputation.

Run those three questions against the comparison in Figure 3 and the answer is rarely ambiguous. The mistake is choosing on the headline record count, which is the one figure that says least about whether the specific record needed is in the archive.

ICANN Lookup and the current-versus-historical mix-up

ICANN Lookup is the official registration-data service, and it ranks for WHOIS history searches, but it returns current data only, with no history. Searchers reach for it expecting a past-ownership answer and find a present-state record. Knowing the line between the authoritative current lookup and a commercial history archive prevents the single likeliest wasted search in this field.

What ICANN Lookup is, and is not

ICANN Lookup, at lookup.icann.org, is the registry-fed service that returns the current registration record for a domain, now drawing on RDAP. It is authoritative, free, and the correct starting point for who holds a domain today, including registrar, status codes, and dates. The status codes it returns, and how to read them, sit alongside the WHOIS protocol in WHOIS: protocol and how to read the data.

What it is not is an archive. It holds no past snapshots, so it cannot answer who owned a domain before the present registrant. A query against it returns one record, the live one, and that is the source of the confusion: a tool ranking for history searches that, by design, has no history to give.

The expectation
ICANN is the authority on domains, so ICANN Lookup must hold the full historical registration record, including past owners, for free.
The reality
ICANN Lookup returns the current registration only. Past ownership lives in commercial archives that captured and stored the old snapshots. The authoritative current source and the historical source are two different tools.

The practical rule is to use ICANN Lookup to confirm the present state and registry status, then move to a history service for anything about the past. The redaction that GDPR introduced applies to that live ICANN record too, which is the deeper reason the pre-2018 commercial archives carry information the official current lookup no longer can. The privacy mechanics behind that redaction are covered in GDPR impact on WHOIS.

How to run a WHOIS history lookup, step by step

A WHOIS history lookup runs in five steps: confirm the current record at the registry, choose an archive on start-year and volume, query the domain, read the ownership-change timeline, and cross-check the findings. Each step has a common misread that turns a clean record into a wrong conclusion, listed alongside it so the procedure produces a defensible answer, not a guess.

  1. Confirm the current record first

    Start at ICANN Lookup to establish the present registrant, registrar, status codes, and dates. This is the baseline the history is measured against, and it is free and authoritative.

    The misread: treating the current redacted record as evidence the domain has no history. Redaction hides today’s owner, not the archived past.

  2. Choose the archive on start year and volume

    Pick the service against the job. For a pre-2018 owner, choose the deepest archive that fits the budget, DomainTools or WhoisFreaks. For a list of names, choose API and bulk pricing, where Whoxy is cheapest. Figure 3 is the reference.

    The misread: choosing on the headline record count. The largest archive is useless if its start year postdates the era the answer lives in.

  3. Query the domain and pull every record

    Run the lookup and retrieve the full set of dated snapshots, not the capped free preview. A deep answer needs the paid tier when the free tool returns only the last few records.

    The misread: drawing a conclusion from a three-record free preview and assuming it is the whole history. The capped view is a sample, not the archive.

  4. Read the ownership-change timeline

    Order the records by date and trace the handovers. A single long-held registration reads as continuity; repeated registrant changes, registrar hops, and registration gaps read as churn. The pattern, not any one record, is the signal.

    The misread: mistaking a privacy-service registrant, such as a proxy provider, for a real owner change. A switch to privacy is a redaction event, not necessarily a sale.

  5. Cross-check against independent sources

    Confirm the WHOIS history story against archived site content and the backlink record before trusting it. A registration timeline gains weight when the Wayback record and the link profile agree with it.

    The misread: trusting registration dates alone. A clean WHOIS history on a domain whose archived pages show prior spam is a partial picture, not an all-clear.

Figure 6. The five-step lookup, each step paired with the misread that derails it. The procedure exists to turn a stack of dated records into a defensible read of a domain’s past, not a guess from a single snapshot.

The consolidated misreads checklist

The mistakes above collapse into one short reference. Each is a way a correct record produces a wrong conclusion, and each has a fix that comes down to reading more of the archive, or reading it against a second source.

The misreadWhy it goes wrongThe fix
Redacted current record means no historyRedaction hides today’s owner, not the archived pastQuery a history archive that captured pre-2018 records
Largest archive is the best archiveRecord count says nothing about start-year reachSelect on archive start year against the era needed
Free preview is the full historyFree tiers cap output to the last few recordsPull the complete record set on the paid tier when depth matters
Privacy registrant equals an owner changeA switch to a proxy service is a redaction, not a saleRead the change as privacy adoption unless other fields confirm a sale
Clean registration dates equal a clean domainWHOIS history omits content and link historyCross-check against archived content and the backlink profile
Vendor figures are audited factScale numbers are self-reported marketing claimsTreat record and domain counts as order-of-magnitude only
Figure 7. The misreads checklist. Every fix converges on one habit: read more of the archive than the free preview shows, and never read a WHOIS history in isolation from the content and link record.

WHOIS history frequently asked questions

The five questions investors and SEOs raise when they compare WHOIS history services, answered against the vendors’ published figures and the ICANN and GDPR record.

Q1Is there a free WHOIS history service?

Yes, with limits. Whoxy, WhoisXML API, and WhoisFreaks each grant free trial credits, and osint.sh and IQWHOIS offer free history lookups with no account. The free path surfaces recent records and confirms the broad ownership shape of a domain. The deep pre-2018 lookback usually sits behind a paid tier or a subscription, so a free check answers a quick question, not a full diligence pass.

Q2Which WHOIS history archive goes back the furthest?

WhoisFreaks states its records reach back to 1986, and DomainTools states it has tracked WHOIS history since 1995. Both predate the 2018 GDPR redaction line by decades, so both can return named-owner records that no live lookup will show today. WhoisXML API records date back to around 2010 and Whoxy began recording in November 2012, which still clears the 2018 boundary but reaches less deep.

Q3Why does my WHOIS lookup show redacted instead of an owner name?

Because of GDPR. The regulation took effect on 25 May 2018, and ICANN’s Temporary Specification of 17 May 2018 required registrars to redact registrant contact details from public gTLD WHOIS output. A current lookup on a privacy-affected domain returns redacted fields in place of a named owner. A WHOIS history archive that captured records before 2018 can still show the pre-redaction owner.

Q4Does ICANN Lookup show WHOIS history?

No. ICANN Lookup returns the current registration record only, drawing on RDAP since the protocol replaced WHOIS as the standard on 28 January 2025. It is authoritative and free for confirming who holds a domain today, but it holds no past snapshots. Historical ownership lives in the commercial archives that captured and stored the old records over time.

Q5Does RDAP replacing WHOIS break historical lookups?

No, the existing archives stand. Records captured under WHOIS before 28 January 2025 remain in the history databases, and the serious archives now collect new records through RDAP. DomainTools carries a notice about possible deprecation of its WHOIS services after that date, which reflects the migration to RDAP collection, not a loss of the stored past. The history a service already captured does not vanish when the live protocol changes.

Reading a domain’s WHOIS history before acquiring it

WHOIS history is read, in the end, to answer one question: is this domain safe to own. Ownership continuity, registration churn, and prior-owner red flags decide whether an aged or expired domain is a clean asset or a liability. That diligence is the same screening SEO Domains runs on the curated aged and expired domains in its marketplace, so a listed name arrives already vetted.

What the history tells an acquirer

A WHOIS history read for acquisition looks for three things. Continuity, a name held by one operator over a long span, signals a genuine entity, not a recycled shell. Churn, repeated registrant and registrar changes with registration gaps, signals a name that was flipped or abandoned. Red flags, a switch to privacy right before a drop or a prior owner tied to spam, signal a history to verify before building anything on the name.

None of this is read in isolation. A WHOIS history pairs with the archived content record and the backlink profile, since a clean registration timeline on a domain that once hosted spam is only part of the picture. The metrics that complete that read sit in the Domain Authority & Metrics hub, and the acquisition diligence around expiry and drops sits in the Expired Domain Fundamentals hub.

Where the diligence is already done

The WHOIS history read is the manual version of what a curated marketplace does at scale. Reading registration history, checking ownership continuity, and screening for prior-owner red flags across a catalogue is exactly the work SEO Domains performs before a domain is listed and priced. A buyer sourcing from screened inventory starts from a name whose past has been read, not from an unvetted drop list where the history is the buyer’s own problem to chase.

The honest position on the tools is that they are a means, not the end. A WHOIS history service answers who owned a domain before. The reason that matters is the acquisition decision it feeds, and the cleanest way to act on a clean history is to own the domain openly and build something real on it. That is the product behind every WHOIS history search: access to aged and expired domains whose past has been read.

Zhivko Stoyanov, Head of AI & Business Efficiency at SEO Domains

Zhivko Stoyanov

Head of AI & Business Efficiency @ SEO Domains

With close to 20 years in theoretical and mathematical physics, Zhivko brings deep analytical rigour to SEO Domains. For more than four years he has driven the speed, efficiency, and data discipline behind the company’s internal processes.

He leads SEO at the SEO Domains marketplace, which operates a 220,000+ curated catalogue from $100 entry-level domains through premium acquisitions, screened across registration history, backlink profile, and authority metrics, with Managed Account expert support for premium-tier clients.

· Last reviewed