Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Sep 16, 2026 15:18 UTC · 7 checks · public report
Solid base — one policy step remains.
nococu.org publishes an enforcing DMARC policy, so mail that forges its domain is quarantined or rejected at the recipient.
Your SPF setup is working, but it ends in a softer “fail” mode, which means mail from unlisted senders may be treated as suspicious instead of being clearly rejected. This matters because it is a little less strict than ideal and can leave more room for spoofed mail to slip through. If you’re sure every legitimate sender is already included, the fix is to tighten the SPF policy so unauthorized senders are rejected outright.
v=spf1 a:_mailhosts.swbc.com ip4:216.206.109.133 include:spf.protection.outlook.com include:spf.cuanswers.com ~allEdit your SPF record at Namecheap — step-by-step guide.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email [email protected] to have this page removed.