Domain-based Message Authentication, Reporting & Conformance (DMARC) helps prevent spoofed emails, but it works best when combined with two other tools: Sender Policy Framework (SPF) and DomainKeys Identified Mail (DKIM). SPF defines which mail servers are authorized to send emails on your domain’s behalf, while DKIM uses cryptographic signatures to prove that emails haven’t been tampered with and are from a trusted source. DMARC ties it all together by telling receiving servers what to do if an email fails SPF or DKIM, such as rejecting or quarantining it.

Need help fixing what the scan finds?

We’ll walk you through securing your DMARC, SPF, and DKIM records so your domain stays protected against spoofing.