Made and hosted in the EUProtect your email delivery and domain reputation.
Ensure your emails land in the inbox and prevent spammers and phishers from impersonating your domain with our SPF, DKIM and DMARC monitoring and analysis tools.
Check how your email authenticates.
Send a test email to check your SPF , DKIM and DMARC status.
Waiting for your email...
Monitor, fix, and stay protected.
Monitor senders and failures
Add your domains and identify senders, configuration problems, and authentication or delivery failures across DMARC, SPF, DKIM, and SMTP TLS.
DMARC policy
none quarantine reject
MTA-STS mode
testing enforce
Fix and enforce
Correct misconfigurations and DNS record problems, then enforce DMARC and MTA-STS to block domain spoofing and protect inbound email in transit.
DKIM selector mailgun DNS record not found
Microsoft: 16 TLS failures certificate-expired, starttls-not-supported
Stay protected as things change
Keep monitoring records, policies, certificates, and sending infrastructure, and catch new problems as they change.
Gmail, Apple, and Outlook are enforcing stricter sender requirements. Read about the new requirements
See every sender and every failure.
Set up DMARC with our guidance and get full visibility into your email through aggregate reports: every service sending as your domain, and why its messages fail.

- Every sending IP is matched to its service, so you see SendGrid or Outlook instead of addresses.
- Alignment rates show what to fix, like SendGrid here, at only 43.6% DKIM alignment.
- Unauthenticated senders are kept apart, so spoofing and misconfigured services stand out.
Investigate issues from your AI assistant.
Connect your AI assistant to DMARCwise and ask about your domains, reports and DNS records in plain language.
Which sources are sending DMARC-failing email for trackbot.pro?
list_dmarc_sources
Three unauthenticated sources fail both SPF and DKIM. SendGrid passes DMARC, but only 43.6% of its messages carry an aligned DKIM signature.
Find what's failing
Sources, pass rates and report rows for any domain and period.
Which of my domains exceed the SPF lookup limit?
list_domains
Two domains are over the limit of 10: trackbot.pro needs 13 DNS lookups and trackbot.eu needs 11. Want me to check which SPF includes cause it?
Diagnose DNS records
SPF chains and lookup counts, DKIM selectors, and record history.
Change the hosted DMARC policy for example.com to quarantine.
update_hosted_dmarc
none quarantine
Done. The hosted policy for example.com is now quarantine.
Change policies
Enable and update hosted DMARC, if you've granted write access.
Fix records and enforce policies.
Test a real email to see exactly what's wrong, then move DMARC and MTA-STS to enforcement safely, without editing DNS every time.
Email diagnostics
Send a test email from any service you use and see why it passes or fails SPF, DKIM and DMARC.
- Check a new service before you enforce DMARC
- See why a check fails and how to fix it
- Keep every diagnosis in the dashboard for your team

Hosted DMARC
We host your DMARC record, so you can move to quarantine or reject straight from the dashboard.

Hosted MTA-STS
Require encrypted delivery to your domain. We host the policy, renew its certificate and track MX changes.

Stay protected as things change.
Keep track of every domain's status and get a weekly summary, so a new sender or a broken record doesn't go unnoticed.
All your domains in one place
See at a glance which domains need attention, with everything grouped by client or project.

SPF and DKIM monitoring
Catch broken SPF records and missing DKIM keys before they make your emails fail authentication.

TLS reporting
Find out when Gmail, Microsoft and others can't deliver email to you securely, and what went wrong.

Build on the same data as the dashboard.
The REST API covers domains, reports, DNS records and hosted policies. Use a read-only key for reporting, or a read/write key for automation.
Domains
Manage domains and check their status.
- GET /domains
- GET /domains/{domain}
- GET /domain-groups
- POST /domains
- DELETE /domains/{domain}
Reports
Retrieve DMARC and TLS report data, down to individual rows.
- GET …/dmarc/sources
- GET …/dmarc/report-rows
- GET …/dmarc/stats
- GET …/dmarc/reports/{id}
- GET …/tlsrpt/stats
DNS records
Inspect DKIM selectors, SPF chains and record history.
- GET …/dkim/selectors
- GET …/spf/chain
- GET …/spf/records
- GET …/dmarc/records
Hosted policies
Enable and update hosted DMARC and MTA-STS.
- POST …/dmarc/hosted/enable
- PATCH …/dmarc/hosted
- PATCH …/mta-sts/hosted
- POST …/dmarc/validate
This is a selection of the available endpoints.
Run by an independent European company.
DMARCwise is bootstrapped and plans to stay that way, which lets us grow at a sustainable pace and be clear about what we offer and what we don't.
Read about how we workFully self-service
Try it with your own data, at your own pace. No demos or onboarding calls.
Transparent pricing
Every plan and price is on the pricing page, including a free plan.

Made and hosted in the EU
Your data stays on European infrastructure, for full GDPR compliance.
Support from real people
Answers in English or Italian from people who know the standards.
Add your domains and start monitoring.
Update one DNS record and your first reports will show up in the dashboard.
Free plan and 14-day trial available. Compare plans
Have questions? Contact us or browse the documentation.



