Who hosts this website
Which registrar holds the domain, where the site is hosted and who runs the mail.
FREE TOOL
Type a domain or an email address. In a few seconds you see whether SPF, DKIM and DMARC are in place, what is wrong, and the exact record that fixes it.
The domain's MX records
The v=spf1 TXT record and the DNS lookups it needs
A key under the 18 most common selectors, or yours
The TXT record at _dmarc
MTA-STS and TLS-RPT (optional)
A logo beside your messages (optional)
What it means:
What to do:
We check the DNS records. Whether a given message lands in spam also depends on its content, the sending server's reputation and the list; none of that is visible from outside.
Copy the record into the domain's DNS settings, at your registrar or hosting company.
Name: · Type:
Replace your text with the result?
A copy is on its way to your inbox. If it does not arrive, check the spam folder — and write to us directly. [email protected]
Reference number:
We read the domain's public DNS records through the public resolvers of Cloudflare and Google: MX, SPF with every include and the DNS lookups they need, the DKIM key under the 18 most common selectors or yours, DMARC on the domain or its parent domain, MTA-STS, TLS-RPT and BIMI. We do not connect to your mail server or send any message.
Since February 2024 Gmail and Yahoo, and since 5 May 2025 Outlook, require SPF, DKIM and DMARC from anyone sending more than 5,000 messages a day. Smaller senders are filtered on the same records.
We only look at what the site shows every visitor and at the domain's public records. We do not try passwords, forms or hidden addresses.
We set up and watch these mail records as part of website maintenance.
QUESTIONS
SPF is the list of servers allowed to send mail for your domain. DKIM is a signature that shows the message was not changed on the way. DMARC tells the receiver what to do with a message that fails both checks, and where to send you reports.
The records only get you through the door. Filters also weigh the reputation of the server and the domain, the content and links, how many recipients mark the message as spam, and how clean your list is. Send us an example of a message that went to spam and we will look for the cause.
We check the 18 selectors providers use most. Many providers use names of their own, so "not found" does not mean there is no key. Ask your mail provider for the selector, or find it in the headers of a message you sent (the DKIM-Signature line, after s=), and enter it in the field.
v=DMARC1; p=none; rua=mailto: followed by an address you read. It only monitors: it stops no message, but it sends you reports on who sends in your domain's name. After two to four weeks, when the reports show all your mail passes, move to p=quarantine and later to p=reject.
Yes, from anyone sending more than 5,000 messages a day: since February 2024 Gmail and Yahoo, and since 5 May 2025 Outlook, require SPF, DKIM and DMARC, and p=none is enough for DMARC. Smaller senders are filtered on the same records, so we recommend them for every domain you send mail from.
No. We only read the domain's public DNS records, which every mail server can see. We do not connect to your mail server, send messages or check whether mailboxes exist.
Which registrar holds the domain, where the site is hosted and who runs the mail.
When the certificate expires, who issued it and whether the chain is complete, with a reminder for your calendar.