Domain Security Checker

Your domain sends emails every day. Make sure they’re all from you.

Most organisations think they’ve covered the basics. Email impersonation suggests otherwise. A few overlooked settings are often all it takes. Enter your domain below and we’ll show you exactly where things stand.

Which domain should we check?

Try one
Know your DKIM selector?

If you know the DKIM selector your sender uses (for example k1 or 20210112), enter it here. We try about fifty common selectors automatically. Separate several with commas.

Nothing you enter here is stored. If the result raises a question, message us and a real advisor will talk it through.

Why it matters

Your name. Your domain. Your call.

Most email fraud does not need a breach. It uses the gaps your domain already has. Three DNS records close them, and most organisations are missing at least one.

  1. 01

    SPF

    Sender Policy Framework tells the internet which servers are allowed to send email from your domain. Without it, anyone can send email “from” you@yourdomain.com and most mail servers will accept it.

  2. 02

    DKIM

    DomainKeys Identified Mail adds a cryptographic signature to every email you send. The receiving server can verify that the message genuinely came from you, and that nothing was altered in transit.

  3. 03

    DMARC

    DMARC ties SPF and DKIM together and tells receiving servers what to do when a check fails: quarantine the email, reject it, or let it through. DMARC is what actually stops spoofing.

If the result worries you

We are one conversation away.

A real advisor replies within one business day, and tells you plainly what the result means for you.

Protect your pack