Why Some New gTLDs (.xyz, .top) Get Flagged as Spam by Default
Since 2012, ICANN's expanded gTLD program has introduced hundreds of new domain extensions beyond the familiar .com, .org, and .net — .xyz, .top, .club, .online, and many others. Some of these have found genuine, legitimate use. Others have developed a reputation, baked into spam filters and security tools, that follows every domain registered under them regardless of that specific domain's own actual content or behavior.
How a TLD Develops a Bad Reputation
Reputation systems — both email spam filters and browser/security tools — don't only evaluate individual domains in isolation; many also incorporate TLD-level base rates into their scoring, essentially asking "historically, what proportion of domains under this specific extension have been used for spam, phishing, or malware." A handful of newer gTLDs launched with deliberately minimal registration requirements and, in some cases, aggressive promotional pricing — sometimes registrable for a dollar or less during promotional periods — which made them disproportionately attractive to spammers and scammers running large volumes of disposable, throwaway domains, since the cost of burning through dozens of domains was trivial. Over time, this usage pattern got measured and baked into reputation and filtering systems as a statistical prior specifically associated with those extensions, in much the same way a shared IP address accumulates a collective reputation, as discussed elsewhere on this blog — the mechanism is different, but the underlying dynamic of a shared namespace inheriting the behavior of its worst actors is strikingly similar.
Why This Becomes a Self-Reinforcing Cycle
Once a TLD accumulates a negative reputation, it becomes less attractive to legitimate businesses (who don't want their emails landing in spam or their sites flagged by security tools), while remaining just as attractive, or more so, to the exact spam and scam operations whose behavior created the reputation in the first place, since they're generally indifferent to brand perception and are optimizing purely for the lowest possible cost per disposable domain. This dynamic tends to entrench a negative reputation rather than allow it to naturally dilute over time as more legitimate registrations join the pool.
How Reputation Systems Weight TLD-Level Signals
It's worth understanding that most modern spam and security filtering doesn't rely on TLD reputation as a standalone, deciding factor — it's typically one input among many in a broader scoring model that also weighs the sending domain's own age, its email authentication configuration (SPF, DKIM, DMARC, covered in depth elsewhere on this blog), sending volume and pattern consistency, and recipient engagement history. A newly registered domain under a lower-reputation TLD, with no authentication configured and an unusual sending pattern, compounds several negative signals simultaneously. The same TLD, properly configured with full authentication and a gradually built sending history, generally fares considerably better than the worst-case combination would suggest, though it may still carry a modest, persistent baseline disadvantage purely from the extension-level reputation.
The Practical Consequences for a Legitimate Business
A legitimate business that registers a domain under one of these lower-reputation extensions can face real, measurable friction entirely disconnected from anything about their own actual content or behavior: outbound marketing or transactional emails landing in spam folders at a higher baseline rate than an identical email sent from a .com domain would; browser security warnings or reduced trust indicators triggered more readily; and, in some cases, being blocked outright by corporate email security gateways that apply blanket policies against specific TLD categories regardless of the sending domain's individual history.
Which Extensions Are Actually Affected, and Why It Varies
It's important not to overgeneralize — reputation varies considerably by specific TLD rather than applying uniformly to "all new gTLDs" as a category. Extensions that have maintained stricter registration policies, higher pricing floors that discourage disposable bulk registration, or active abuse-monitoring programs by their registry operator have generally avoided the worst of this reputational drag, while a smaller number of extensions specifically associated with historically high abuse rates carry a more persistent, measurable penalty in spam filtering and security tooling. This is genuinely dynamic rather than fixed — a TLD's reputation can improve over time if its registry actively invests in abuse mitigation, though this tends to happen slowly, since reputation systems are inherently backward-looking.
How to Check Before Committing to an Unusual Extension
Before building a business around a newer or less common gTLD, a few practical checks are worth doing: sending test emails from a domain under consideration (even a freshly registered one on a trial basis) through major spam-testing tools like Mail Tester to see how it's classified before committing to it as a primary business domain; checking whether the specific TLD appears on any major email security vendor's published blocklist categories or advisory notes; and, for anything where email deliverability is business-critical, simply defaulting to an established legacy TLD or a well-regarded ccTLD rather than accepting reputational risk for the sake of a novel or shorter available domain string.
The Takeaway
Not every gTLD carries equal reputational weight, and the difference isn't cosmetic — it can materially affect email deliverability and security tool trust before a single email has actually been sent from a specific new domain. This is one of the more concrete, practically consequential reasons to weigh a domain extension's existing reputation, not just its availability and aesthetic appeal, before committing a business identity to it, particularly for any venture that will depend on transactional or marketing email actually reaching an inbox rather than a spam folder.
Tags: domain reputation, email deliverability, new gTLDs, spam filtering