Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Jul 26, 2026 19:47 UTC · 7 checks · public report
Solid base — two policy steps remain.
gymshark.com publishes an enforcing DMARC policy, so mail that forges its domain is quarantined or rejected at the recipient.
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~allEdit your SPF record at Amazon Route 53 — step-by-step guide.
This means your email signature key is smaller than recommended, so it is easier to break than a modern one. If an attacker can forge that signature, your messages may be more likely to be spoofed or tampered with. The fix is to replace this DKIM selector with a stronger, modern key size and then update the DNS entry for that selector.
Publish your DKIM record at Amazon Route 53 — step-by-step guide.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email [email protected] to have this page removed.