← All glossary terms

Domains

DNS evidence

DNS evidence is the recorded DNS snapshot or change context used to explain what public DNS showed at a point in time.

Updated 24 July 2026

What it means

DNS evidence is a dated record of externally visible DNS values and DNS-change context. It can include record-group counts, current values, previous/current comparisons, and neutral not-found states. It helps a team explain what public DNS showed without relying on a screenshot or a manually copied terminal output.

Why it matters

DNS changes can affect websites, email, verification flows, and trust signals. When something changes, the practical question is not only whether DNS is right now. It is what changed, when it was seen, and whether that change belongs to a known operational decision. DNS evidence gives teams a stable record for review and reporting.

How CertPilot uses the term

CertPilot shows DNS evidence as display and reporting context. It does not edit DNS records, restore old values, roll back provider settings, or connect to DNS provider APIs. The evidence is based on public DNS observation and should be interpreted as a check result, not remediation.

What to record

  • Hostname and record type or group.
  • Observed values and checked date.
  • Previous/current comparison when available.
  • Known reason, owner, or follow-up note for a change.

What not to assume

  • DNS evidence is not DNS management.
  • A not-found result can be valid depending on the record type.
  • A public lookup does not prove every resolver cache has updated.