Alerts & Integrations

DNS Spy can deliver every alert — record changes, domain outages, security check failures, phishing look-alike detections — to the tools your team already lives in. Alert channels are configured per team, and each channel can subscribe to exactly the notification types it cares about.

Available Channels

  • Email – send alerts to one or more recipients.

  • Slack and Discord – post formatted alerts into a channel.

  • PagerDuty – open incidents with severity mapped from the alert.

  • Webhooks (SIEM) – receive every alert as versioned, structured JSON at any HTTPS endpoint, with optional HMAC signing. The universal integration path for Splunk, Microsoft Sentinel, QRadar, SOAR platforms, and internal pipelines.

  • Syslog (RFC 5424 / CEF) – stream alerts straight to your syslog collector over TLS, TCP, or UDP with JSON or ArcSight CEF payloads. Built for QRadar, ArcSight, LogRhythm, rsyslog/syslog-ng, and Sentinel's CEF forwarder.

Alert channels are available on the Enterprise plan and during trials. Guides for each integration live in this section.