Enter your domain to check SPF, DMARC, DKIM, MTA-STS, TLS-RPT, DNSSEC, and CAA configuration. We'll flag missing or misconfigured records that could allow email spoofing, hurt deliverability, or leave your domain exposed.
Specifies which servers are allowed to send email for your domain.
Tells receiving servers what to do with emails that fail SPF or DKIM.
A cryptographic signature that proves emails came from your server.
Requires mail servers to use TLS when delivering email to your domain.
Enables delivery failure reports when TLS negotiation fails for your domain.
Cryptographic signatures on DNS records that prevent forged responses.
Restricts which certificate authorities can issue SSL certificates for your domain.
We'll run a full check from our servers and email you the results — including exactly how to fix each issue.