Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Oct 10, 2026 18:58 UTC · 7 checks · public report
Solid base — one policy step remains.
foodtruckfinder.com publishes an enforcing DMARC policy, so mail that forges its domain is quarantined or rejected at the recipient.
Your SPF check is using a soft-fail setting at the end, which means other servers are told to treat unexpected senders as suspicious but not always block them. This matters because it makes your domain a little easier to spoof, though it still works for DMARC. The fix, if you want to tighten security, is to switch to a hard-fail setting only after you’re sure every legitimate sender is included.
v=spf1 include:_spf.mx.cloudflare.net ~allEdit your SPF record at Cloudflare — step-by-step guide.
Publish your DKIM record at Cloudflare — step-by-step guide.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email hello@dnsdoctor.dev to have this page removed.