Cloudflare Radar rolls out Top-Level Domain insights for every domain ending
Cloudflare Radar now offers Top-Level Domain (TLD) insights, letting researchers, website owners and everyday users explore data across all domain endings from .com to newer generic and country-code TLDs.
On October 27, 2025, Cloudflare Radar, the company's public internet observatory, introduced Top-Level Domain (TLD) insights. A TLD is the last part of a domain name after the final dot, such as .com, .org or .net, and these new insights cover the full range from familiar legacy endings to newer generic and country-code TLDs. The announcement was made by Cloudflare researchers André Jesus and David Belson, and it expands the data already available through Radar, which tracks internet traffic, security events and outages around the world.
To understand why TLD insights matter, it helps to know how the Domain Name System (DNS) works. DNS is often described as the phonebook of the internet: when you type a website name into your browser, DNS translates that human-readable name into the numeric IP address computers use to connect. TLDs sit at the very top of the DNS naming hierarchy, just below the root, and they organize the entire domain namespace. By adding TLD-level insights, Cloudflare Radar now gives a view into how different top-level domains are used, how they perform and how they behave across the global internet.
Cloudflare Radar already provides a free, public dashboard with trends on internet adoption, traffic patterns and security threats. The new TLD insights layer extends that view to the domain namespace itself. Researchers can compare adoption and usage across different TLDs, while registrars and businesses can monitor the health and reputation of the domains under a given TLD. Although the announcement does not list specific metrics, the addition aligns with Radar's existing focus on research and registrar-related data, giving a more complete picture of how the internet's naming system is evolving.
For security and privacy, TLD insights are especially valuable. Some top-level domains have historically been associated with higher rates of phishing, malware distribution or spam. Understanding these patterns helps users and organizations make smarter decisions about which domains to trust. The insights can also shed light on DNSSEC adoption, a security extension that digitally signs DNS records to prevent spoofing and hijacking. Cloudflare operates the popular encrypted DNS resolver 1.1.1.1, and while the blog post does not specify the exact data sources for TLD insights, Radar's global network gives it a broad vantage point across many top-level domains.
For everyday internet users and website owners, the new TLD insights from Cloudflare Radar offer a useful reference. Website owners can keep an eye on their own TLD's reputation and watch for suspicious lookalike domains registered under similar endings. Everyday users can become more aware that not all domain endings carry the same level of risk. For readers who want to go further, using a private, encrypted DNS service such as AEU DNS helps keep your domain lookups private and can block known malicious domains before they load, adding a practical layer of protection on top of the visibility that Cloudflare Radar provides.
Terms explained
- DNS
- The Domain Name System, which translates website names into the numeric IP addresses computers use to connect.
- Top-Level Domain (TLD)
- The last part of a domain name after the final dot, such as .com or .org.
- DNSSEC
- A security system that digitally signs DNS records to make sure they come from the real owner and have not been tampered with.
- Encrypted DNS
- A way of sending DNS queries over a secure, private connection so nobody else can see which websites you are looking up.
- Resolver
- The server that receives your DNS query and looks up the correct IP address for the website you want to visit.
How to protect yourself
- Use a trusted DNS resolver that supports encrypted DNS so your internet provider cannot see which websites you visit.
- If you own a website, ask your domain registrar how to enable DNSSEC for your domain to prevent hijacking.
- Be extra careful before clicking links with unusual or unfamiliar domain endings, as some are more often used for phishing.
- Regularly check Cloudflare Radar's TLD insights to see whether a particular top-level domain has a bad reputation before you trust a site with that ending.
- Consider switching your devices to a private encrypted DNS service like AEU DNS to reduce tracking and block known malicious domains automatically.
Source: blog.cloudflare.com
