a top-level domain
A top-level domain is the last label in a domain name — the part after the final dot, like the com in example.com or the uk in bbc.co.uk. It is the broadest category in the naming tree, the first big branch off the root. Just as a phone number starts with a country code that tells you which national system to enter, a domain name ends with a TLD that tells you which top-level branch the name belongs to.
There are a few kinds. Generic TLDs (gTLDs) describe a type or purpose — .com (originally commercial), .org, .net, .edu, plus hundreds of newer ones like .app, .blog, .shop. Country-code TLDs (ccTLDs) are two-letter codes tied to a country or territory — .uk, .jp, .de, .tw — each administered under that country's policies. Below the TLD sits the second-level domain that organizations register (the example in example.com). Some places add an extra level by convention, such as .co.uk, where co.uk acts like a commercial sub-branch and the registered name sits one level further down.
Why it matters: the TLD decides which registry runs that branch of the namespace and sets the rules for getting a name in it — who can register, what it costs, what disputes look like. It is also the first thing a resolver uses to navigate: a root server's job is essentially to point a query at the right TLD's name servers. A common misconception is that a TLD tells you something trustworthy about a site; in reality a .com or .org says little about who is behind a name or whether it is safe — TLDs organize the namespace, they do not vet content.
In www.nhs.uk the TLD is uk (a country-code TLD for the United Kingdom); in store.google.com the TLD is com (a generic TLD). A root server looks only at that final label to decide which TLD name servers to refer a query to.
The TLD is the rightmost label and the first branch below the root.
A TLD is not a guarantee of anything about the owner. Anyone meeting the registry's rules can usually buy a name under .com or even an official-sounding TLD; the suffix organizes names, it does not certify trust.