If your emails to a client keep landing in their junk folder, or you've heard that someone else has been sending emails pretending to be you, the underlying cause is usually the same: your domain isn't properly telling the world's mail servers who's allowed to send email as you.
The three records that matter
Mail providers like Microsoft and Google check three DNS records before deciding whether to trust an email: SPF (which servers are allowed to send on your behalf), DKIM (a digital signature proving the email wasn't tampered with), and DMARC (which tells receiving servers what to do if a message fails those checks, and sends you reports when it happens).
Why missing or misconfigured records cause problems
Without these records set up properly, legitimate emails can look suspicious to a receiving mail server - and get filtered into junk, or blocked outright. Worse, without DMARC in particular, there's nothing stopping someone else from sending convincing scam emails that appear to come from your domain, landing straight in your clients' inboxes.
It's a common gap
This isn't a niche problem. A huge number of small business domains have no DMARC record at all, or one that's misconfigured and not actually doing anything. Most business owners have simply never had a reason to look.
Check your own domain in seconds
We built a free Email Security Check tool that scans your domain's SPF, DKIM and DMARC records and tells you exactly where you stand - no sign-up, nothing stored, just a straight answer in a few seconds.
If your result throws up anything you're not sure how to fix, book a complimentary IT call and we'll sort it out properly.