WHOIS History Services Compared: The Major Domain History Archives, Side by Side, and How to Pick the Right One
A WHOIS history service is an archive that stores past registration records for a domain, so the snapshots a registry once published stay readable long after the live record changes. The live WHOIS or RDAP lookup shows only who holds a domain today. A history service shows who held it before, and when each handover happened.
That past matters because a domain carries its history into every future use. Prior owners, registration gaps, and ownership churn are signals an investor and an SEO read before money changes hands. The catch is that the serious archives are commercial products, each sells only itself, and none publishes a neutral comparison of the field.
This guide fills that gap. It sets the four major paid archives side by side on the criteria that decide a choice, explains why the archive start year is the single criterion that outweighs the rest, and maps each service to the job it suits. The diligence this enables is the same diligence SEO Domains runs on the curated aged and expired domains in its marketplace before they are listed, a 220,000-plus catalogue spanning 100-dollar entry-level aged domains through premium acquisitions.
What is a WHOIS history service, and why a domain’s past matters
A WHOIS history service is a commercial database that captures and stores WHOIS registration snapshots over time, so the record a registry published on a past date can be retrieved after the live record has changed. It answers who owned a domain before, across each ownership change, where a live WHOIS or RDAP query answers only who owns it now.
The difference between a live lookup and a history archive
A live WHOIS or RDAP query returns the present state of a domain: the current registrant fields the registry exposes, the registrar, the status codes, and the dates. It is a snapshot of today, and it overwrites itself the moment the registration changes. The mechanics of that live query are covered in WHOIS: protocol and how to read the data.
A history service runs that same query on a schedule, stores each result as a dated record, and keeps the old snapshots when the live one moves on. The archive is the byproduct of doing the lookup repeatedly for years and never throwing the older copies away.
Why a domain’s registration past carries weight
A domain inherits its history. An aged name that passed cleanly through one long-term owner reads differently from one that churned through four registrants and two dropped registrations in three years. The first pattern signals continuity, the second signals a name that was flipped, parked, or abandoned, and that distinction shapes what the domain is worth and how safe it is to build on.
The record also dates the entity. A first-registration date establishes genuine age, and ownership continuity confirms the name was used by a real operator, not recycled through a spam cycle. Reading that record is the first diligence step on any acquisition, a point the closing section returns to.
Live WHOIS or RDAP lookup
The current registration only: present registrant fields, registrar, status codes, and dates. Free at the registry. Overwrites itself on every change, so the past is gone.
WHOIS history service
A dated archive of past snapshots: prior owners, ownership-change timing, and pre-redaction records. Commercial. Retrieves what the live lookup has already discarded.
Why the archive start year is the first criterion: GDPR and the RDAP switch
The difference that outweighs every other between WHOIS history services is how far back the archive reaches, because two regulatory events split the data into eras. GDPR redacted gTLD registrant identities from 25 May 2018, and RDAP replaced WHOIS as the ICANN standard on 28 January 2025. An archive that started before 2018 holds owner names that no live lookup will ever show again.
The GDPR redaction line of 2018
The General Data Protection Regulation took effect on 25 May 2018. To comply, ICANN had adopted the Temporary Specification for gTLD Registration Data on 17 May 2018, which required registrars to redact the registrant name, email, and contact details from public gTLD WHOIS output. From that point, a live lookup on a privacy-affected gTLD domain returns redacted contact fields in place of a named owner.
That single change is what makes a pre-2018 archive valuable. WhoisXML API states plainly that its history records from before 2018 are available without privacy redactions, which means an archive that was capturing snapshots in 2015 holds named-owner records that a live query in 2026 cannot reproduce. The archive froze the data before the redaction rule erased it from the public view.
The RDAP switch of January 2025
The second era boundary is the protocol change. RDAP, the Registration Data Access Protocol, replaced WHOIS as the standard ICANN registration-data service on 28 January 2025, returning the same registration data in a structured JSON format with tiered access. The successor protocol and what it changes are detailed in RDAP: the successor to WHOIS.
For a history archive, the switch matters in two ways. Records collected after that date originate from RDAP, not legacy WHOIS, and DomainTools itself carries a notice flagging the possible deprecation of its WHOIS services after 28 January 2025. The serious archives are migrating their collection to RDAP, and the records on either side of that boundary come from different protocols.
DomainTools begins tracking WHOIS history, the earliest published collection start among the major archives. Source: DomainTools.
Later entrants begin large-scale collection. WhoisXML API records date back to around 2010, and Whoxy began recording in November 2012. Source: vendor archives.
ICANN adopts the Temporary Specification for gTLD Registration Data ahead of GDPR, requiring redaction of registrant contact details. Source: ICANN.
GDPR takes effect. Public gTLD WHOIS output is redacted from this date, freezing named-owner data behind privacy. Source: GDPR record.
RDAP replaces WHOIS as the ICANN registration-data standard. New history records originate from RDAP from this point. Source: ICANN.
The major WHOIS history services, side by side
Four commercial archives lead the field: DomainTools, WhoisXML API, WhoisFreaks, and Whoxy. They differ on archive start year, the scale of records and domains covered, pre-2018 redaction handling, free access, and price model. Each vendor publishes its own figures and sells only its own product, so the comparison below is assembled from those published numbers, side by side, in one place.
The headline figures, as each vendor publishes them
The four archives split into two camps. DomainTools owns the longest lookback and the investigator reputation, but gates everything behind a subscription. The three API-first vendors compete on scale, freshness, and price, with free tiers that make a single lookup cheap or free.
| Service | Archive starts | Published scale | Pre-2018 unredacted | Free access | API | Price model |
|---|---|---|---|---|---|---|
| DomainTools | 1995 | WHOIS history of millions of domains since 1995 | Yes, by virtue of the 1995 start | No, subscription only | Enterprise (Iris) | Subscription membership |
| WhoisXML API | ~2010 | 28.7 billion-plus records, 1.2 billion-plus domains, 7,596-plus TLDs | Yes, records before 2018 without redactions | 500 API credits, web UI capped at 10 queries and the last 3 records | Yes | Freemium, paid plans plus quarterly DB downloads |
| WhoisFreaks | 1986 | 4 billion-plus records, 919.9 million-plus domains, 1,528 TLDs | Yes, by virtue of the early start | Free API credits on signup | Yes | API plans, monthly updates, deduplicated records |
| Whoxy | November 2012 | 699,835,178 domains | Partial, the archive postdates 2012 only | Free trial credits, pay as you go | Yes, XML and JSON | 1,000 queries at 5 USD down to a 1 USD CPM in bulk |
How to read the scale numbers
The record and domain counts are vendor-reported marketing figures, so they are best treated as order-of-magnitude, not audited fact. A higher record count signals more snapshots captured over time, while a higher domain count signals broader coverage of which names the archive has watched at all. The two move together but are not the same: an archive can hold billions of records on a smaller set of frequently changing domains.
Start year resists that ambiguity, which is one more reason it is the cleanest selection criterion. WhoisFreaks claims records back to 1986 and DomainTools claims tracking since 1995, both of which predate the 2018 redaction line by decades, while Whoxy’s November 2012 start sits comfortably before it as well. WhoisXML API’s roughly 2010 start also clears 2018, so all four hold a pre-redaction era of records, with the earlier two reaching deepest.
Free versus paid, web lookup versus API, and bulk export
Access splits along two axes: free trial versus paid, and single web lookup versus programmatic API. ICANN Lookup and the lightweight free tools handle a one-off current check at no cost. The four archives gate deep history behind credits or a subscription, and the API plus bulk-download tier is what separates a casual check from an investor screening names at volume.
The single-lookup path
For one domain, the friction is low. WhoisXML API grants 500 API credits and a capped web tool that returns the last three records for a quick look. Whoxy hands new users free trial credits and bills per query with no monthly fee, so a single history query costs cents. WhoisFreaks issues free API credits on signup. The free tools at osint.sh and IQWHOIS return a basic history with no account at all.
The trade is depth. A free or capped lookup typically surfaces recent records, not the full pre-2018 archive, so a one-off check confirms broad ownership shape without the deep lookback the paid tiers unlock.
The volume path: API and bulk download
Screening names at scale is a different problem. An investor checking a list of dropped domains, or an SEO vetting a backlink-acquisition target set, needs the API to query in bulk and, for offline work, a database download. WhoisXML API publishes quarterly database releases alongside its API. Whoxy’s API returns XML and JSON and prices down to a 1 USD CPM in bulk, the cheapest at volume. WhoisFreaks deduplicates and updates monthly, storing a new record only when the WHOIS data genuinely changed, which keeps the dataset lean.
Freshness varies. A monthly or quarterly update cycle means a recent ownership change can take weeks to appear, so none of these archives is a real-time feed. For the historical question they answer, which is who owned a domain in the past, that lag is irrelevant.
| Access need | Best fit | Why |
|---|---|---|
| One-off current record, no cost | ICANN Lookup | The authoritative live registration record, free, but current only with no history |
| One-off history check, low or no cost | Whoxy, WhoisXML API free tier, osint.sh | Free trial credits or capped web lookups surface recent records cheaply |
| Deep pre-2018 lookback | DomainTools, WhoisFreaks | Earliest archive starts, 1995 and 1986, reach furthest behind the redaction line |
| Bulk screening at volume | Whoxy, WhoisXML API | API plus bulk pricing or quarterly database downloads handle large name lists |
| Offline dataset | WhoisXML API | Quarterly database releases for local processing |
Which WHOIS history service fits which job
The right WHOIS history service follows the job, not a ranking. A domain investor vetting acquisitions, an SEO running due diligence, a brand-protection team, an OSINT investigator, and a person making one free check each have a different ideal tool. Matching the profile to the archive avoids paying for a subscription a single lookup never needed, or trusting a free tool with a decision that warranted the deep archive.
The five buyer profiles
Each profile is defined by depth of lookback, query volume, and budget. The investor and the SEO overlap heavily, since both read history to judge whether a name is safe to build on, and both benefit from the deepest archive that fits the budget.
| Profile | What the job needs | Best-fit archive |
|---|---|---|
| Domain investor vetting acquisitions | Deep lookback plus bulk screening of drop lists, on a per-query budget | Whoxy for volume economics, WhoisFreaks or DomainTools for the deepest history |
| SEO running pre-purchase due diligence | Pre-2018 owner identity and ownership churn on a shortlist of names | WhoisXML API or WhoisFreaks, free tier first, paid for depth |
| Brand-protection and legal team | Investigator-grade records and a recognised evidentiary source | DomainTools, the long-standing investigator standard |
| OSINT and security researcher | API access, reverse lookups, and large-scale correlation | WhoisXML API or WhoisFreaks for API breadth |
| One-off curious check | A single free history glance with no account | osint.sh, IQWHOIS, or a free-tier web lookup |
The criteria that actually decide it
Three questions resolve the choice for almost every profile, in order of weight:
- How far back does the answer need to reach? If the pre-2018 owner is the point, the archive start year is decisive, and DomainTools or WhoisFreaks lead.
- One domain or a list? A single name suits a free or capped tier; a screening list needs the API and bulk pricing, where Whoxy is cheapest at volume.
- Is the record evidence? A legal or brand matter favours the recognised investigator source, which is where DomainTools holds its reputation.
Run those three questions against the comparison in Figure 3 and the answer is rarely ambiguous. The mistake is choosing on the headline record count, which is the one figure that says least about whether the specific record needed is in the archive.
ICANN Lookup and the current-versus-historical mix-up
ICANN Lookup is the official registration-data service, and it ranks for WHOIS history searches, but it returns current data only, with no history. Searchers reach for it expecting a past-ownership answer and find a present-state record. Knowing the line between the authoritative current lookup and a commercial history archive prevents the single likeliest wasted search in this field.
What ICANN Lookup is, and is not
ICANN Lookup, at lookup.icann.org, is the registry-fed service that returns the current registration record for a domain, now drawing on RDAP. It is authoritative, free, and the correct starting point for who holds a domain today, including registrar, status codes, and dates. The status codes it returns, and how to read them, sit alongside the WHOIS protocol in WHOIS: protocol and how to read the data.
What it is not is an archive. It holds no past snapshots, so it cannot answer who owned a domain before the present registrant. A query against it returns one record, the live one, and that is the source of the confusion: a tool ranking for history searches that, by design, has no history to give.
The practical rule is to use ICANN Lookup to confirm the present state and registry status, then move to a history service for anything about the past. The redaction that GDPR introduced applies to that live ICANN record too, which is the deeper reason the pre-2018 commercial archives carry information the official current lookup no longer can. The privacy mechanics behind that redaction are covered in GDPR impact on WHOIS.
How to run a WHOIS history lookup, step by step
A WHOIS history lookup runs in five steps: confirm the current record at the registry, choose an archive on start-year and volume, query the domain, read the ownership-change timeline, and cross-check the findings. Each step has a common misread that turns a clean record into a wrong conclusion, listed alongside it so the procedure produces a defensible answer, not a guess.
-
Confirm the current record first
Start at ICANN Lookup to establish the present registrant, registrar, status codes, and dates. This is the baseline the history is measured against, and it is free and authoritative.
The misread: treating the current redacted record as evidence the domain has no history. Redaction hides today’s owner, not the archived past.
-
Choose the archive on start year and volume
Pick the service against the job. For a pre-2018 owner, choose the deepest archive that fits the budget, DomainTools or WhoisFreaks. For a list of names, choose API and bulk pricing, where Whoxy is cheapest. Figure 3 is the reference.
The misread: choosing on the headline record count. The largest archive is useless if its start year postdates the era the answer lives in.
-
Query the domain and pull every record
Run the lookup and retrieve the full set of dated snapshots, not the capped free preview. A deep answer needs the paid tier when the free tool returns only the last few records.
The misread: drawing a conclusion from a three-record free preview and assuming it is the whole history. The capped view is a sample, not the archive.
-
Read the ownership-change timeline
Order the records by date and trace the handovers. A single long-held registration reads as continuity; repeated registrant changes, registrar hops, and registration gaps read as churn. The pattern, not any one record, is the signal.
The misread: mistaking a privacy-service registrant, such as a proxy provider, for a real owner change. A switch to privacy is a redaction event, not necessarily a sale.
-
Cross-check against independent sources
Confirm the WHOIS history story against archived site content and the backlink record before trusting it. A registration timeline gains weight when the Wayback record and the link profile agree with it.
The misread: trusting registration dates alone. A clean WHOIS history on a domain whose archived pages show prior spam is a partial picture, not an all-clear.
The consolidated misreads checklist
The mistakes above collapse into one short reference. Each is a way a correct record produces a wrong conclusion, and each has a fix that comes down to reading more of the archive, or reading it against a second source.
| The misread | Why it goes wrong | The fix |
|---|---|---|
| Redacted current record means no history | Redaction hides today’s owner, not the archived past | Query a history archive that captured pre-2018 records |
| Largest archive is the best archive | Record count says nothing about start-year reach | Select on archive start year against the era needed |
| Free preview is the full history | Free tiers cap output to the last few records | Pull the complete record set on the paid tier when depth matters |
| Privacy registrant equals an owner change | A switch to a proxy service is a redaction, not a sale | Read the change as privacy adoption unless other fields confirm a sale |
| Clean registration dates equal a clean domain | WHOIS history omits content and link history | Cross-check against archived content and the backlink profile |
| Vendor figures are audited fact | Scale numbers are self-reported marketing claims | Treat record and domain counts as order-of-magnitude only |
WHOIS history frequently asked questions
The five questions investors and SEOs raise when they compare WHOIS history services, answered against the vendors’ published figures and the ICANN and GDPR record.
Q1Is there a free WHOIS history service?
Yes, with limits. Whoxy, WhoisXML API, and WhoisFreaks each grant free trial credits, and osint.sh and IQWHOIS offer free history lookups with no account. The free path surfaces recent records and confirms the broad ownership shape of a domain. The deep pre-2018 lookback usually sits behind a paid tier or a subscription, so a free check answers a quick question, not a full diligence pass.
Q2Which WHOIS history archive goes back the furthest?
WhoisFreaks states its records reach back to 1986, and DomainTools states it has tracked WHOIS history since 1995. Both predate the 2018 GDPR redaction line by decades, so both can return named-owner records that no live lookup will show today. WhoisXML API records date back to around 2010 and Whoxy began recording in November 2012, which still clears the 2018 boundary but reaches less deep.
Q3Why does my WHOIS lookup show redacted instead of an owner name?
Because of GDPR. The regulation took effect on 25 May 2018, and ICANN’s Temporary Specification of 17 May 2018 required registrars to redact registrant contact details from public gTLD WHOIS output. A current lookup on a privacy-affected domain returns redacted fields in place of a named owner. A WHOIS history archive that captured records before 2018 can still show the pre-redaction owner.
Q4Does ICANN Lookup show WHOIS history?
No. ICANN Lookup returns the current registration record only, drawing on RDAP since the protocol replaced WHOIS as the standard on 28 January 2025. It is authoritative and free for confirming who holds a domain today, but it holds no past snapshots. Historical ownership lives in the commercial archives that captured and stored the old records over time.
Q5Does RDAP replacing WHOIS break historical lookups?
No, the existing archives stand. Records captured under WHOIS before 28 January 2025 remain in the history databases, and the serious archives now collect new records through RDAP. DomainTools carries a notice about possible deprecation of its WHOIS services after that date, which reflects the migration to RDAP collection, not a loss of the stored past. The history a service already captured does not vanish when the live protocol changes.
Reading a domain’s WHOIS history before acquiring it
WHOIS history is read, in the end, to answer one question: is this domain safe to own. Ownership continuity, registration churn, and prior-owner red flags decide whether an aged or expired domain is a clean asset or a liability. That diligence is the same screening SEO Domains runs on the curated aged and expired domains in its marketplace, so a listed name arrives already vetted.
What the history tells an acquirer
A WHOIS history read for acquisition looks for three things. Continuity, a name held by one operator over a long span, signals a genuine entity, not a recycled shell. Churn, repeated registrant and registrar changes with registration gaps, signals a name that was flipped or abandoned. Red flags, a switch to privacy right before a drop or a prior owner tied to spam, signal a history to verify before building anything on the name.
None of this is read in isolation. A WHOIS history pairs with the archived content record and the backlink profile, since a clean registration timeline on a domain that once hosted spam is only part of the picture. The metrics that complete that read sit in the Domain Authority & Metrics hub, and the acquisition diligence around expiry and drops sits in the Expired Domain Fundamentals hub.
Where the diligence is already done
The WHOIS history read is the manual version of what a curated marketplace does at scale. Reading registration history, checking ownership continuity, and screening for prior-owner red flags across a catalogue is exactly the work SEO Domains performs before a domain is listed and priced. A buyer sourcing from screened inventory starts from a name whose past has been read, not from an unvetted drop list where the history is the buyer’s own problem to chase.
The honest position on the tools is that they are a means, not the end. A WHOIS history service answers who owned a domain before. The reason that matters is the acquisition decision it feeds, and the cleanest way to act on a clean history is to own the domain openly and build something real on it. That is the product behind every WHOIS history search: access to aged and expired domains whose past has been read.
