Free Tool
DMARC / SPF / DKIM Checker
Enter your domain to instantly check your email authentication records. Unprotected domains are a leading vector for phishing and business email compromise.
🛡️
DMARC
Tells receiving mail servers what to do with emails that fail authentication. p=reject is the gold standard.
✉️
SPF
Specifies which mail servers are authorized to send email on behalf of your domain. Prevents spoofing.
🔑
DKIM
Cryptographically signs outgoing emails so recipients can verify they weren't tampered with in transit.
// WHY IT MATTERS
Under PIPEDA and PHIPA, organizations are required to protect personal information against unauthorized access — including via email. A domain without DMARC is trivially spoofable, exposing your clients to phishing attacks sent "from" your firm.
Under PIPEDA and PHIPA, organizations are required to protect personal information against unauthorized access — including via email. A domain without DMARC is trivially spoofable, exposing your clients to phishing attacks sent "from" your firm.