DMARC reports, in plain English

For agencies and MSPs managing many client domains.

When a domain publishes a DMARC record, mailbox providers like Gmail, Outlook and Yahoo send it aggregate reports every day. They arrive as compressed XML attachments: readable by machines, not by people. Almost nobody opens them โ€” so domain spoofing, or a legitimate sender quietly failing authentication, can go unnoticed for months.

An agency looking after 30 client domains receives hundreds of these files a week.

How it works

1Add one line to your client's DNS: rua=mailto:<token>@checkdmarc.net
2We receive and parse the reports as they arrive.
3Once a week you get a plain-English summary: how much mail was sent under the domain, what share passed SPF and DKIM alignment, which sources are failing, and what changed since last week.
One DNS line, not two. RFC 9990 ยง4 requires the receiving domain to authorise external reporting. We publish that record once on our side, so it covers every customer. Your client only adds the rua= line.

White label

On the higher tier the weekly summary carries your own name, logo and colour, and replies go to your own support address. Our product does not appear in it.

What it does not do

We process aggregate reports only (RFC 9990). We do not accept or process failure reports (ruf, RFC 9991), which can contain message content and recipient addresses. See the privacy policy.

Status

The service is in active development. If you want to be told when signups open, email support@checkdmarc.net.