Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Oct 7, 2026 00:49 UTC · 7 checks · public report
Solid base — two policy steps remain.
graphiccreations.com publishes DMARC with p=none — spoofed mail is monitored but not blocked.
Your domain has DMARC turned on, but it is only in monitoring mode, so it does not block or quarantine fake emails using your domain. This matters because attackers can still spoof your domain more easily, and recipients may trust those messages. To fix it, change DMARC from monitoring only to an enforcement mode so suspicious mail is rejected or sent to spam.
v=DMARC1;p=none;rua=mailto:c3e45cf595@rua.easydmarc.us;ruf=mailto:c3e45cf595@ruf.easydmarc.us;pct=100;ri=86400;fo=1This means your email signature key is smaller than recommended, so it is easier to break than a modern one. If an attacker can forge that signature, your messages may be more likely to be spoofed or tampered with. The fix is to replace this DKIM selector with a stronger, modern key size and then update the DNS entry for that selector.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email hello@dnsdoctor.dev to have this page removed.
_dmarc · Record type: TXT · TTL: 3600v=DMARC1;p=quarantine;rua=mailto:c3e45cf595@rua.easydmarc.us;ruf=mailto:c3e45cf595@ruf.easydmarc.us;fo=1; np=reject