Record presence
Whether a DMARC record is available for the checked domain.
Free email security tool
Check whether your domain publishes a DMARC record and identify whether the policy is set to none, quarantine or reject.
CloudSpex explains what the current policy means, why it matters and what should be changed next.
DMARC is a DNS-based email policy that tells receiving servers what to do when a message fails DMARC checks. It helps domain owners publish a clear policy, but it does not guarantee that every unwanted message will be stopped.
Whether a DMARC record is available for the checked domain.
Whether the available policy is none, quarantine or reject.
Whether the current record can be interpreted by the existing DMARC evaluation.
CloudSpex currently checks whether a DMARC record is present, whether its policy is none, quarantine or reject, and whether the record can be interpreted. It does not currently analyze alignment, reporting destinations, inheritance or aggregate reports.
Messages are monitored, but failing messages are not instructed to be quarantined or rejected.
Receiving servers are asked to treat failing messages as suspicious.
Receiving servers are asked to reject messages that fail DMARC.
p=none is a useful monitoring stage, but it does not ask receivers to quarantine or reject failing messages. Review legitimate sending sources before moving to an enforcing policy.
Focuses on the DMARC record, its policy and whether it can be interpreted.
Reviews SPF, DKIM and DMARC together as part of a broader email security summary.
Shows the currently available DMARC policy state.
Helps detect when monitored email-security configuration changes unexpectedly.
A DMARC record is a public DNS policy for a domain’s email. It tells receiving servers how to handle messages that fail DMARC checks.
CloudSpex checks whether a DMARC record is present, whether its policy is none, quarantine or reject, and whether the record can be interpreted.
p=none means messages are monitored, but failing messages are not instructed to be quarantined or rejected.
p=quarantine asks receiving servers to treat failing messages as suspicious. p=reject asks them to reject failing messages.
Without a DMARC record, receiving servers have no DMARC policy from the domain to apply. Create and validate a record before checking again.
p=none is useful for monitoring, but it is not full enforcement. Review legitimate mail sources before moving to quarantine or reject.
Yes. This is a limited, read-only public check using the protected CloudSpex Free Scan flow.
No. CloudSpex reads public DNS information only and does not change DNS, email settings or website configuration.
Add your domain to CloudSpex to monitor DMARC, SPF, DKIM and related email-security configuration changes.
Start Monitoring Free Check Another Domain