What the tool checks
We query the _dmarc.domain TXT record and, if there is none, the parent domain's record, which also applies to subdomains. Every parameter is explained and common mistakes are highlighted.
Common problems
- Multiple records — receivers ignore DMARC entirely.
- p=none for too long — the domain is not protected from spoofing; the policy only collects statistics.
- No rua — you can't see who sends mail on your behalf.
- Reports to another domain — the receiving domain must allow this with a separate
example.com._report._dmarc.other-domainrecord.
No record, or want to change the policy? Use the DMARC generator.