STANDALONE PRODUCT · DOMAIN AUTHORITY SUITE

Email Trust Radar

Protect domain reputation and ensure email deliverability. Diagnose SPF lookup limits, cryptographic DKIM keys, DMARC enforcement policies, and BIMI brand logos.

RFC 7208 SPF Limit Check
RSA / Ed25519 DKIM
Instant Config Builder
Email Trust Radar — Domain Authority Suitedomain.com | selector: googleRADARSPFv=spf1 include:...DNS Lookups: 3 / 10 (PASS)DKIMRSA 2048-bitPublic Key ValidatedDMARCp=reject ACTIVEStrict Enforcement ActiveBIMISVG + VMCBrand Logo Verified

Try: or

01. SPF Shield

10-Lookup Limit Enforcement

Recursively counts DNS queries for included SPF records to prevent PermError delivery failures.

02. DKIM Crypto

Key Length & Validity

Verify public key size (1024/2048-bit), algorithm types, and DNS selector alignment.

03. DMARC Policy

Spoof Enforcement Status

Audit p=none vs p=quarantine vs p=reject policies, RUA reporting, and alignment modes.

04. BIMI Trust

Verified Mark Seal

Inspect SVG logo format compliance and VMC certificate status for inbox brand logos.

SECURITY RESOURCES

Threat Mitigation Guides

Phishing Defense Fundamentals

Core guidelines to recognize threat structures, spear attacks, and malicious payloads.

Read Guide →

DMARC Security Enforcement

Secure your sender domain reputation and prevent spoofing with reject policies.

Review Setup →

IDN Homograph Mitigations

How Unicode mixing and Punycode spoofing are processed by core browser clients.

Learn Heuristics →

Help Center & FAQ

Comprehensive answers to common security queries regarding safe domains and scanner latency.

Browse FAQ →

Email Trust Radar — Frequently Asked Questions

What is Email Trust Radar?
Email Trust Radar is a domain authentication suite that audits, verifies, and generates SPF, DKIM, DMARC, and BIMI records to prevent email spoofing, phishing, and domain impersonation.
What is the SPF 10-lookup limit?
RFC 7208 mandates that SPF checks must not cause more than 10 DNS queries (such as include, a, mx, ptr, and redirect mechanisms). Exceeding 10 lookups causes SPF validation to fail permanently (PermError). Our tool checks your exact lookup count.
Why do I need a DKIM selector?
DKIM public keys are published at selector._domainkey.domain.com. Common selectors include 'google', 'k1', 's1', 'default', or custom names assigned by your email provider (e.g. Mailchimp, SendGrid).
What is DMARC p=reject?
DMARC p=reject is the strongest email protection policy. It instructs receiving mail servers (Gmail, Outlook, Yahoo) to reject any unauthenticated email claiming to come from your domain.