namestack-domains
Domain availability and pricing from the Cloudflare Registrar API. Read-only.
Use
npm i -g @namestack/domains namestack-domains auth login namestack-domains check --name=yourbrand
Scopes this app requests
| Scope | Used for | |
|---|---|---|
| registrar-domains.read | required | domain-check, domain-search, extensions |
| offline_access | required | Refresh token. Access tokens expire after 3600s. |
| account-settings.read | optional | Lists your accounts so login can offer a picker. Decline it and type the account ID instead. |
No write scope is requested. The client hard-rejects every Registrar path except those three queries, so the grant cannot register, transfer, or renew a domain.
Tokens
~/.config/namestack/domains/credentials.json 0600
- Authorization Code + PKCE (S256), no client secret.
- Callback binds an ephemeral loopback port on
127.0.0.1, per RFC 8252 §7.3. - Tokens are sent to
api.cloudflare.comand nowhere else.
Revoke
namestack-domains auth logout
Revokes the grant with Cloudflare and deletes the local copy. You can also revoke it from Cloudflare account authorizations.
Not what it does
- Does not buy, register, transfer, or renew anything.
- Does not reserve a name. Availability is a snapshot at query time.
- Does not clear a name for trademark use.