Aggregate authentication telemetry

DMARC Aggregate Report Analyzer

Turn DMARC aggregate XML into source-level pass rates, dispositions, policy evidence and prioritized failing senders, including RFC 9990 DMARC 2.0 reports.

dmarc report analyzerdmarc xml analyzerrua report analyzerdmarc aggregate report
Analyze a DMARC aggregate reportAggregate reports contain authentication telemetry, not message bodies. Review your organization’s handling policy before submitting third-party reports.
Volume · sources · alignment · disposition · policy overrides

What this analysis does

Upload or paste a DMARC aggregate report. Mailybox recognizes current RFC 9990 reporting metadata such as tree-walk policy discovery as well as useful legacy report fields, then summarizes total volume, aligned authentication outcomes, policy disposition, failure reasons and the highest-volume source IPs.

How to use the result

Use real evidence

Paste the exact domain, header, message or configuration. The result is only as useful as the evidence supplied.

Review the findings

Mailybox separates observations from inferred causes so you can see what is known and what still needs verification.

Retest after changes

Email authentication and routing are stateful. Re-run the analysis after publishing a fix.

Interpretation matters

Email systems combine DNS, message-level evidence, provider policy and intermediate infrastructure. A single passing check is not proof that every message will deliver, and a single warning is not proof that a domain is misconfigured. Mailybox is designed to expose the evidence and the relationship between signals so the next action is clear.

Primary references