Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Sep 2, 2026 23:45 UTC · 7 checks · public report
Solid base — two policy steps remain.
pilotoaero.com publishes DMARC with p=none — spoofed mail is monitored but not blocked.
Your site’s email setup is using a softer “maybe” rule for messages that don’t match the approved senders. That can make it easier for spoofed or fake email to get through, which can hurt deliverability and increase phishing risk. The fix is to tighten the policy to a strict reject setting, but only after you’ve confirmed every legitimate sender is already listed.
v=spf1 include:_spf.google.com ~allEdit your SPF record at Wix — step-by-step guide.
Your domain has a DMARC setting, but it is only in monitoring mode, so it is not actually blocking fake or forged emails. This matters because attackers can still send messages that look like they came from your domain, which can hurt trust and increase phishing risk. To fix it, change the DMARC policy from monitoring only to an enforcing mode so email receivers are told to reject or quarantine suspicious mail.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email [email protected] to have this page removed.
v=DMARC1; p=none;_dmarc · Record type: TXT · TTL: 3600v=DMARC1; p=quarantine; np=rejectApply this at Wix — step-by-step guide.
Publish your DKIM record at Wix — step-by-step guide.