Cloudflare not redacting our RDAP data on new domain registration?
As title, purchased a new domain through cloudflare and have been getting targeted with spam emails. I was very surprised to see my contact info openly displayed in the RDAP registry whereas all of my WHOIS data is redacted. Is this expected ?
14 Replies
Is this a .ai domain?
Yes it is. Is that a part of the issue?
.ai domains don't support whois redaction, which is the only kind of whois protection Cloudflare offers.
Cloudflare is working on making this more clear during the registration process.
Hmm my WHOIS data for the domain is redacted though. It’s the RDAP data that is delivered in JSON format that is not redacted. As far as I’m aware, RDAP is the successor and I think it was finally adopted earlier this year?
http://whois.nic.ai
Is it redacted on there?
Nope, but isn’t that just a scraper of the JSON data?
That's the whois service of the ai domain.
This is what I see when I do a lookup on ICANN
ICANN probably queries Cloudflare's whois service, which is redacted. It's also not helping you.
the .ai domain simply does not offer whois redaction.
That seems…deliberate?
Would you happen to know if I can workaround this to scrub my info? Really not interested in being spammed like this lol
Other registrars offer privacy services where they submit their own contact data to the registry, but Cloudflare doesn't.
Also would be nice if they added something to this page about it https://developers.cloudflare.com/registrar/account-options/whois-redaction/
Cloudflare Docs
WHOIS redaction · Cloudflare Registrar docs
Cloudflare Registrar provides personal data redaction on WHOIS information, if permitted by the registry.
As the data is already out there, I doubt whatever you're doing now is going to have much of an effect...
You're certainly not the first to suggest that and probably not the last 😉
But I'm absolutely with you.
Appreciate the insights on this, I was quite confused
Honestly at this point it would just be the peace of mind knowing it’s not out there in the open even though I’m sure it’s already stored in countless databases.