Skip to main content
TA for WhoisXmlAPI app icon

TA for WhoisXmlAPI

A custom command that adds whois data from WhoisXMLAPI.Built by Greg Ford
splunk product badge

Default Version 1.7.2

October 29, 2025

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0

Rating
0
(0)

Log in to rate this app

Support
Not Supported

A custom command that adds whois data from WhoisXMLAPI. This add-on provides a custom command that takes the domain from one or more events and uses the WhoisXMLAPI API to populate whois information for each domain. The add-on stores API credentials securely using Splunk's native password storage API, making it suitable for Splunk Cloud deployment.