Authentication Records Check for

sajavat.ca

Instant checks for DMARC, SPF, and BIMI with clear, actionable guidance.

All data displayed is public and provided by the DNS system. Use of this website is subject to our Terms of Service.

Last checked 33 minutes ago

0 out of 100
Needs Work

Domain Health Score

Your email authentication needs attention. Important security measures are missing or misconfigured.

SPF
Sender Policy Framework
30 / 30
DMARC
Domain-based Message Authentication
19 / 50
BIMI
Brand Indicators for Message Identification
0 / 20

Top Recommendation

+16

Upgrade DMARC policy to quarantine or reject for stronger protection

DMARC improvement

0

DMARC Check Results

19 / 50 points

Score Breakdown

DMARC record published
+10
Syntax valid
+5
None policy (monitoring only)
+4 / 20
Aggregate reporting (rua) not configured
0 / 10
Forensic reporting (ruf) not configured (optional)
0 / 5

Configuration Issues Detected

DMARC record is valid but no reporting email is configured.

Entry:

v=DMARC1; p=none

Without a reporting address (rua), you won't receive aggregate reports from email providers. These reports show who is sending email as your domain and whether authentication passes or fails.

Enable Reports Now

Great! You have a DMARC policy in place. Now start receiving reports in your own monitoring inbox to track email authentication results and identify potential issues.

  • Automated DMARC report processing every 5 minutes
  • Clear insights and actionable recommendations
  • Track all sending sources and authentication results
0

BIMI Check (default selector)

0 / 20 points

Score Breakdown

BIMI record published (optional)
0 / 5

No BIMI Record Found

Publish a TXT record at default._bimi.sajavat.ca with v=BIMI1, logo URL (l=) and optional verified mark certificate (a=).

0

SPF Record Check Results

30 / 30 points

Score Breakdown

SPF record published
+10
Syntax valid
+5
Hard fail policy (-all)
+10
No configuration warnings
+5

SPF record is valid.

sajavat.ca TXT SPF Entry:

v=spf1 include:_spf.workspace.org -all

Syntax Check

OK

DNS Lookup Count

1 / 10 max

Void Lookups

0 / 2 max

Default Policy

-all

Fail: Reject emails from unauthorized servers (recommended for production)

All Authorized IP Addresses

Grouped by DNS record source (includes and sub-includes)

include:_spf.workspace.org
23.172.139.0/24
162.244.93.81
193.108.130.81
162.244.93.82
23.147.8.11
162.244.95.10

DNS Lookup Details

1
include:
_spf.workspace.org
Valid

SPF record found

Lookup cost: 0
Included by sajavat.ca

TXT Record

v=spf1 ip4:23.172.139.0/24 ip4:162.244.93.81 ip4:193.108.130.81 ip4:162.244.93.82 ip4:23.147.8.11 ip4:162.244.95.10 -all

Processed recursively per RFC 7208

Check Another Domain

Run a free email authentication check (DMARC, SPF, BIMI).

We will generate a shareable URL for your domain.

Try popular examples: google.com, amazon.com, booking.com

Explore Other Domains

Discover how other organizations configure their email authentication

Popular Domains

Frequently checked

Well-Configured

Reject policy + valid SPF

Same Policy

Also using none

Showing domains checked by our users. All data is from public DNS records.

About This Checker

What we check

We analyze your domain's email authentication: DMARC policy and alignment, SPF record and includes, and BIMI logo/CV when present.

Why it matters

Healthy authentication improves delivery and blocks spoofing. Major inbox providers increasingly require DMARC and robust SPF/DKIM practices for senders.

Included features

  • DMARC syntax, policy, and reporting validation
  • SPF record evaluation and include analysis
  • DKIM/SPF alignment interpretation
  • BIMI record and VMC detection
  • Clear setup and remediation guidance

Related Tools

The Best Way to Monitor Your DMARC Performance

Don't rely on snapshots. Get the most accurate, real-time insights into your email delivery and reputation with DMARCTrust.