ok domain status
ok is the standard status for a domain: no pending operations and no prohibitions. RDAP records show the same state as active under the RFC 8056 mapping.
Updated
- Set by
- Registry, when no other status applies
- Effect
- Nothing; the domain operates normally
- RDAP shows
- active
What ok / active means
RFC 5731 defines ok as the normal status value for an object with no pending operations or prohibitions. The registry sets and removes it as other statuses come and go: add a lock and ok disappears, clear every other status and it returns. EPP forbids ok from combining with any other code.
Most RDAP lookups will not show the literal string ok. RFC 8056 maps it to the RDAP status active, which registries read more loosely: active only means the name is in use, so real RDAP records regularly show it next to lock codes like client transfer prohibited. A record listing only active is the ok state.
On a domain you are watching
An EPP record showing ok means a normal registration: no locks, no pending actions, nothing in the status itself that indicates a dispute or restriction. RDAP active on its own is a weaker read, since it sits alongside other statuses; check the rest of the list before treating the name as unrestricted.
Check a domain’s status codes
The lookup reads a domain’s live RDAP record and returns its current status set.
What to do about ok / active
No action is required. ICANN suggests registrants who want extra protection ask their registrar to add client codes such as clientTransferProhibited, clientDeleteProhibited and clientUpdateProhibited against unauthorized changes.
Sources
Frequently asked questions
Mostly. EPP calls the status ok and RDAP presents the same state as active under the RFC 8056 mapping. The difference is that active can appear alongside other statuses on an RDAP record, where EPP ok never can.
ok only exists when no other status applies. The moment any lock, hold or pending action is set, the registry removes ok and restores it when everything else clears.
Related tools and resources
Domain Abuse Contacts
Query RDAP records, live status codes, and verified abuse channels for any domain.
Domain monitoring
Daily monitoring for lookalike domains across 1,570 TLDs, with every match checked and explained.
How to Report Domain Abuse to a Registrar
Find the sponsoring registrar, collect required DNS evidence, and submit an actionable report.
Ongoing brand monitoring
notolens checks daily registrations across 1,570 TLDs, trademark registers, and app stores. When a lookalike domain, conflicting mark, or copycat app appears, notolens checks it, explains the risk, and hands you the records and possible next steps.