Policy validation

DMARC Record Checker

Find the DMARC policy that actually applies, validate its core tags and expose multiple-record or RFC 9989 fallback conditions.

dmarc checkerdmarc record lookupdmarc record checkerdmarc policy validator
Validate the effective DMARC policyUses the current RFC 9989 DNS Tree Walk and reports the exact policy source.

What this analysis does

Mailybox starts at the entered author domain, follows the bounded RFC 9989 DNS Tree Walk when needed, and reports the exact policy source, effective policy tags and validation issues. It does not mistake a malformed record or duplicate policy RRset for a clean DMARC deployment.

How to use the result

Use real evidence

Paste the exact domain, header, message or configuration. The result is only as useful as the evidence supplied.

Review the findings

Mailybox separates observations from inferred causes so you can see what is known and what still needs verification.

Retest after changes

Email authentication and routing are stateful. Re-run the analysis after publishing a fix.

Interpretation matters

Email systems combine DNS, message-level evidence, provider policy and intermediate infrastructure. A single passing check is not proof that every message will deliver, and a single warning is not proof that a domain is misconfigured. Mailybox is designed to expose the evidence and the relationship between signals so the next action is clear.

Primary references