How to use Email Authentication Configuration Audit
- Supply the domain the records are published for and spf record (txt) using the supported input described beside the controls.
- Review the selected options and the declared scope, then run the email auth configuration audit.
- Read the result and unresolved findings before downloading or sharing a report. The original input is not changed.
Example: Email Authentication Configuration Audit
Check supplied SPF, DKIM and DMARC record structures and declared alignment scenarios. This example uses synthetic public data.
Options
- Public records
- Supply the public record text and declared scenario. Do not paste account passwords or private signing keys.
- Alignment mode
- Strict alignment compares exact domains. Relaxed scenarios require the supported explicit organizational-domain inputs.
Supported inputs and limits
Where your input is processed
This tool processes your input in this browser. Your text and files are not uploaded to UseFreeTools. Check this tool's limits for anything it may save on your device.
Missing lookup evidence remains unresolved
SPF includes and redirects can require other DNS records, which this page does not fetch. DKIM record structure does not verify a message signature. Relaxed alignment needs independently supplied organizational-domain information rather than a guessed suffix. Use unresolved findings to plan the real DNS and message checks.
Questions about Email Authentication Configuration Audit
Does it check my DNS?
No. Only supplied record text is reviewed.
Does a DKIM record mean a message passed?
No. Message-signature verification is a separate operation.
Can the page infer organizational domains?
No. Supply the supported domain information for relaxed-alignment scenarios.