Pre-purchase checklist
Check the domain you are buying—not the story around it.
Due diligence is the work of separating transferable facts from assumptions. The checklist below does not decide for you; it exposes the questions that deserve a written answer before payment.
Keep these five points.
- Match the checkout item to the exact domain, extension, seller and agreed scope.
- Search trademarks and company names in every market and category you intend to enter.
- Inspect past use for security, reputation and brand conflicts without assuming old traffic will return.
- Confirm registrar status and transfer eligibility before treating a delivery date as fixed.
- Record a clear go, pause or reject decision instead of collecting facts without a conclusion.
Can the seller deliver the exact domain?
Start with the asset identity. Confirm every character, hyphen and extension, then verify that the seller controls the transaction route. A screenshot of a registrar dashboard can be edited, so use several consistent signals rather than one image.
Check that the domain resolves to the expected sale page or verification method and that the checkout item repeats the exact address. Public registration data may be privacy-protected, which is normal; privacy alone neither proves nor disproves authority to sell.
For a negotiated purchase, use a controlled verification step such as a temporary DNS record or registrar-supported sale flow. For a fixed-price WeForSale listing, the catalogue, domain-specific checkout and guided handover should all name the same domain and price.
What exactly is included in the purchase?
Write an inclusion list and an exclusion list. A domain-only sale normally excludes the company, website, code, content, social accounts, customer data, analytics, trademarks, licences and revenue unless the agreement explicitly says otherwise.
This distinction matters most when the domain previously hosted a business. A familiar name or archived page can make the offer feel larger than the transferable asset. Do not value databases, rankings or accounts that the seller has not documented and agreed to transfer lawfully.
If additional assets are included, identify each one and the delivery method. Customer data and account transfers can create privacy, platform and consent issues. Treat them as separate due-diligence work rather than a bonus attached casually to the domain.
How should trademark and company-name risk be checked?
Search the intended wording and close sound-alikes in relevant trademark databases, company registers and ordinary search results. Focus on the countries, goods and services where the buyer plans to trade.
Exact spelling is only the first search. Look for similar pronunciation, abbreviations, translations and combinations that could create confusion in the same commercial field. A name can be unused as a domain and still conflict with rights held elsewhere.
Save the search date, databases and classes reviewed. If the project carries meaningful risk, obtain jurisdiction-specific legal advice. Domain availability and trademark clearance answer different questions, and neither WeForSale nor an automated generator can combine them into a guarantee.
What can domain history tell you?
Historic pages, DNS records and search results can reveal previous uses, languages and brand associations. History is useful for finding risk and context, but it does not prove that old traffic, links or rankings will transfer to a new project.
Review archived snapshots where available and search the complete domain in quotation marks. Look for unexpected adult, gambling, malware, counterfeit or political use that would conflict with the planned brand. Also note innocent uses that may continue to shape what returning visitors expect.
Treat missing archives as unknown, not clean. A domain may have had no public site, may have blocked crawlers or may not have been captured. Record the confidence of each finding and avoid turning a partial archive into a definitive reputation score.
How do you assess security and abuse reputation?
Check whether major browsers, search services or reputable abuse databases currently flag the domain. Review certificate and DNS behaviour for unexpected redirects. A clean result is a point-in-time signal, not permanent certification.
If a warning appears, identify its source and date before assuming the domain is unusable. Some warnings relate to a previous host or compromised page and may have a documented review process. Do not pay first and hope that an unexplained block disappears later.
After purchase, use a secured registrar account, enable transfer lock and multi-factor authentication, and publish only through controlled infrastructure. Reputation work cannot compensate for weak ownership security that allows the domain to be hijacked.
Should backlinks or old SEO affect the price?
Only verified, relevant and durable signals should influence a decision, and even those do not guarantee rankings. Link counts can include spam, deleted pages or links that disappear when the old site changes.
Ask for the source of any traffic or backlink claim and inspect the underlying report. Separate direct visitors, search impressions and automated crawlers. A large raw request count can be almost entirely bots, while a smaller set of relevant human visits may be more useful.
For WeForSale domain-only listings, no traffic or SEO value is promised. Buy the name because it fits the intended brand and transaction terms. Treat any historical search signal as uncertain until your own verified analytics and Search Console data exist.
What transfer checks belong in due diligence?
Confirm the current registrar, extension, lock status, expected transfer route and earliest eligible date. Ask whether the handover is an internal account push or a registrar transfer and what buyer information is required.
Check that the destination registrar supports the exact extension. Country-code domains can follow registry-specific processes. A delivery estimate should state dependencies instead of presenting every transfer as identical.
If a live site or mail system exists, capture the DNS records and decide whether nameservers will stay unchanged. Ownership handover and service migration should have separate acceptance checks so a working transfer is not confused with a broken DNS change.
How do you make a final go or no-go decision?
End the review with a written decision: buy, pause for a named check, or reject. List the evidence, unresolved risks, responsible person and expiry date for the decision. Due diligence without a conclusion becomes a folder, not protection.
Reject the purchase when the buyer cannot verify the exact asset, seller route or payment destination. Pause when legal similarity, a security warning or transfer lock needs a specific answer. Proceed only when the remaining risks are understood and acceptable to the actual business owner.
Keep the checklist, invoice and transfer confirmation together after purchase. Future staff should be able to see why the name was adopted, which rights were checked and who controls the registrar account without reconstructing the transaction from old messages.
Official starting points
Rules and database interfaces change. Use the current official source for the exact extension and market involved.
Quick answers
Questions buyers ask before they commit.
Is domain due diligence the same as a trademark search?
No. Trademark review is one part. Due diligence also covers asset identity, seller authority, purchase scope, history, security reputation and transfer readiness.
Does a clean domain history guarantee good SEO?
No. Search performance depends on current content, links, technical quality and competition. Historical checks can reveal risk but cannot guarantee future rankings.
Can privacy-protected registration data be trusted?
Privacy protection is common and is not itself a warning. Use transaction verification, registrar processes and consistent seller evidence rather than expecting public personal data.
When should a buyer stop the transaction?
Stop when the exact asset, seller authority, payment destination or delivery route cannot be verified, or when an unresolved legal or security risk exceeds the buyer's tolerance.