Email Security Checker
Test your domain SPF, DKIM, DMARC and MX records in one click and get a clear A–F grade. Find out if spammers can send email in your name.
What do we check?
The four DNS records that decide whether your email can be trusted — explained in plain language.
SPF
SPF lists which servers are allowed to send email for your domain. Without it, anyone can pretend to be you.
DKIM
DKIM adds a cryptographic signature to every message, proving it really came from you and was not altered on the way.
DMARC
DMARC tells receiving servers what to do with mail that fails SPF or DKIM — monitor, send to spam, or reject outright.
MX & DNSSEC
MX records point to your mail servers, and DNSSEC signs your DNS answers so they cannot be tampered with in transit.
Frequently Asked Questions
The most common causes are missing SPF, DKIM and DMARC records and a domain or server IP listed on a spam blacklist. Test your domain above to get an A-F grade with step-by-step fixes.
Check if your domain is on a spam blacklist →SPF is a list of servers allowed to send email on behalf of your domain, DKIM is a digital signature proving the message was not altered, and DMARC tells receiving servers what to do when a message fails these checks. Together they stop spammers from spoofing your address.
Start by testing your domain above — missing SPF, DKIM or DMARC is the most common reason for landing in spam. Then send a test message to your own Gmail account and check whether it arrives in the inbox and whether the headers show SPF, DKIM and DMARC as PASS.
Yes. Since February 2024 Google and Yahoo require all bulk senders (5,000+ messages a day) to authenticate email with SPF, DKIM and a DMARC policy. Even small senders without these records increasingly land in spam or get rejected.
Want a comprehensive SEO analysis?
Email is just the beginning. Check all SEO aspects of your website.
Run Full SEO AnalysisOther free SEO tools
Check other tools for analyzing your website