
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
n8n-nodes-domainkits
Advanced tools
Search newly registered domains, expired domains and four more inventories from n8n, plus WHOIS, DNS and Certificate Transparency lookups. One DomainKits API key covers every endpoint.
Query the DomainKits domain data API from inside n8n.
This is the official node for the DomainKits API, published and maintained by the DomainKits team. DomainKits is built and operated by Lyalpha GmbH, with domain data and infrastructure provided by ABTdomain, our domain intelligence and data aggregation platform. This repository is hosted under the ABTdomain GitHub organisation. Learn more about the relationship at domainkits.com/about.
One API key, every capability as an n8n resource:
No PII. No operation returns registrant personal data.
Fresh data beats exports: domains move through the lifecycle daily, so point a Schedule Trigger at this node and the same question gets answered against current data every run.
In the n8n UI:
n8n-nodes-domainkits, accept the community node notice and click Install.Self-hosted without UI access:
npm install n8n-nodes-domainkits
in your n8n installation directory, then restart n8n. Details in the community nodes installation guide.
You need a DomainKits API key. Sign up at domainkits.com. API access requires a Premium or higher plan, and Premium includes a trial period.
In n8n, create a new DomainKits API credential and paste the key (it starts with dk_). The credential test never burns a search request.
.de or .us return an empty result set, not an error. The live search is the exception and also carries .ai and .io.Every parameter, filter and current limit is documented in the API reference.
Drop-day alert: Schedule Trigger (daily) → DomainKits (Expired, keyword clinic, auction window set to tomorrow) → If (matches your list) → Slack.
Brand watch: Schedule Trigger (daily) → DomainKits (Newly Registered, keyword yourbrand) → If (new since last run) → Slack.
Aged shortlist: Schedule Trigger (weekly) → DomainKits (Expired, browse TLD com, age 20+, letters only) → Google Sheets.
Verified on n8n 2.31.6. Requires an n8n instance that supports community nodes.
FAQs
Search newly registered domains, expired domains and four more inventories from n8n, plus WHOIS, DNS and Certificate Transparency lookups. One DomainKits API key covers every endpoint.
The npm package n8n-nodes-domainkits receives a total of 28 weekly downloads. As such, n8n-nodes-domainkits popularity was classified as not popular.
We found that n8n-nodes-domainkits demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.