Domain Security Checker

Your domain sends emails every day.
Make sure they’re all from you.

Most organisations think they’ve covered the basics. Email impersonation suggests otherwise. A few overlooked settings are often all it takes. Enter your domain below and we’ll show you exactly where things stand.

Know your DKIM selector?

If you know the DKIM selector your sender uses (e.g. k1, 20210112), enter it here. We try about fifty common selectors automatically. Comma separated.

Why it matters

Your name. Your domain. Your call.

Most email fraud doesn’t require a breach. It uses the gaps your domain already has. Three DNS records close them. Most organisations are missing at least one.

SPF

SPF, or Sender Policy Framework, tells the internet which servers are allowed to send email from your domain. Without it, anyone can send email “from” [email protected] and most mail servers will accept it.

DKIM

DKIM, or DomainKeys Identified Mail, adds a cryptographic signature to every email you send. The receiving server can verify that the message genuinely came from you, and that nothing was altered in transit.

DMARC

DMARC ties SPF and DKIM together and tells receiving servers what to do when a check fails. It can quarantine an email, reject it, or let it through. DMARC is what actually stops spoofing.

Your next step

Walk away knowing your email is secure.

Your results explained, your gaps fixed, your domain protected going forward. One conversation is all it takes.

Talk to us
Ready when you are

Go further,
reveal less.

Take back control, starting today. Close the gaps, decide who gets in, and reclaim your privacy on your own terms. One quiet conversation is all it takes to feel fully in charge again.