August 21, 2026
When email forwarding breaks SPF (and what SRS repairs)
A forwarded email leaves from the forwarder's IP, absent from the original SPF: a guaranteed fail. What SRS repairs, what DKIM saves, the DMARC impact.
Read →August 21, 2026
A forwarded email leaves from the forwarder's IP, absent from the original SPF: a guaranteed fail. What SRS repairs, what DKIM saves, the DMARC impact.
Read →August 21, 2026
No DMARC project survives a forgotten third-party sender. Which families to hunt, three sources of truth, and how to map them all before p=reject.
Read →August 20, 2026
An aggregate report can show spf=pass and dmarc=fail for the same message. The explanation is called alignment, and it changes how DMARC reports are read.
Read →August 20, 2026
Lists and forwarding break SPF and DKIM, so legitimate mail fails DMARC. ARC lets receivers rescue it: what the chain does, and what it does not.
Read →August 19, 2026
Not all DMARC analyzers are equal. Here's the checklist that separates a real monitoring tool from a toy — to apply before choosing, free or paid.
Read →August 19, 2026
The DMARC standard is free — it is a DNS record. The monitoring service around it is not. The real price drivers, and how to budget without over-buying.
Read →August 19, 2026
Self-hosted DMARC reporting or a managed service? The engineering trade-off: sovereignty, real cost, maintenance time, and when each one wins.
Read →August 18, 2026
The DMARC record itself is free. Paid buys continuous report ingestion, source identification and alerting. Where each option is enough — no pitch.
Read →August 17, 2026
Not all DMARC tools serve the same goal. The real criterion isn't the feature list, it's the fit to the actual need. A four-question decision framework.
Read →August 17, 2026
Every email authentication term defined, from SPF, DKIM and DMARC to spoofing, BEC and BIMI. Each entry in a few sentences, with a link to go deeper.
Read →