vysovsky.com / tools / mailauth

Email Authentication Record Analyser

Paste an SPF, DKIM or DMARC record and get it broken down in plain English with the common faults flagged. This parses the record text you provide; it does not perform live DNS lookups, so nothing leaves your browser. Retrieve records first with Resolve-DnsName.

To fetch these in PowerShell: Resolve-DnsName -Name contoso.com -Type TXT for SPF, _dmarc.contoso.com for DMARC, and selector1._domainkey.contoso.com for DKIM.