Public email authentication tool

Check DMARC and BIMI readiness for any domain

Validate whether a domain is ready for stronger email trust signals. This checker reviews DMARC posture, BIMI DNS records, logo requirements, and certificate readiness from one page.

DMARC posture

Policy presence, enforcement, alignment, and reporting checks.

BIMI record quality

Record syntax, version tags, logo tags, and certificate pointers.

Hosted asset validation

HTTPS reachability, SVG constraints, and VMC-related checks.

Run a check

DMARC and BIMI checker

Enter a domain to inspect DMARC enforcement, BIMI records, hosted logo requirements, and certificate readiness.

No results yet

Enter a domain above to inspect DMARC enforcement, BIMI records, hosted logo requirements, and certificate readiness.

Guidance

How to use the results

This page follows the same operational style as the rest of JSsec: surface the highest-risk gaps first, then work through supporting improvements.

Why it matters

BIMI depends on a strong email authentication foundation. If DMARC is missing, weak, or not enforced, branded logos in the inbox become much harder to support safely.

What to fix first

Failed checks usually point to missing records, unreachable assets, or invalid syntax. Warnings often indicate a usable setup that still falls short of recommended enforcement or presentation standards.

Best next step

Start with DMARC enforcement and record validity, then move to BIMI asset quality, hosted SVG compliance, and certificate matching checks.

Continuous monitoring and visualisation

Talk to JSsec

JSsec provides ongoing DMARC monitoring and reporting visualisation so you can track policy enforcement, alignment trends, and failure sources over time — not just at point-in-time checks.