SenderGuard

Latest audit snapshot: demo.senderguard.email

Review the last scan, proof hash, and quick links to rerun or verify.

Scanned
Jan 1, 2025, 12:00 AM
Score
94
Proof
  • scanId
    d3f4cedcab12abcd
  • sha256
    8c53afbaf7ff853bd323df8b7861c12d732a94751b3254a5d6d6b1b6492a6bbe
  • rulepackVersion
    demo

Five compliance badges

SPF
Passing
DKIM
Passing
DMARC
Passing
Alignment
Needs attention
One-Click
Passing

Top recommendations

  1. Rotate DKIM selectors twice per year to keep strict alignment healthy.

Fix these before the next audit

Copy ready-to-use snippets, then rerun verification to capture new evidence.

DMARC

DMARC is enforcing quarantine or reject.

Looks good

DMARC is enforcing quarantine or reject.

Alignment

Tighten alignment

Needs immediate fix

Strict alignment is not passing. Align the From domain with authenticated SPF/DKIM identifiers and enforce adkim/aspf=s.

Learn more
DMARC strict alignment
adkim=s; aspf=s
  1. Configure DKIM to sign with d=demo.senderguard.email (or its brand subdomain)
  2. Publish a 2048-bit RSA key at s2025._domainkey.demo.senderguard.email (new selector)
  3. Enable adkim=s in DMARC and verify alignment across routes
One-Click

RFC 8058 One-Click header detected.

Looks good

RFC 8058 One-Click header detected.

Run another audit