Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Aug 26, 2026 07:23 UTC · 7 checks · public report
Solid base — two policy steps remain.
productshotai.app publishes DMARC with p=none — spoofed mail is monitored but not blocked.
Your SPF check is using a soft fail setting at the end, which tells receiving mail servers to treat unauthorized messages more gently instead of rejecting them outright. This matters because it can make it easier for spoofed email to get through, or at least look less suspicious. The fix is to change the SPF policy to a hard fail end state once you’ve confirmed every legitimate sender is included.
v=spf1 include:_spf.mx.cloudflare.net ~allEdit your SPF record at Cloudflare — step-by-step guide.
v=DMARC1; p=none; rua=mailto:[email protected]_dmarc · Record type: TXT · TTL: One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email [email protected] to have this page removed.
3600v=DMARC1; p=quarantine; rua=mailto:[email protected]; np=rejectApply this at Cloudflare — step-by-step guide.
Publish your DKIM record at Cloudflare — step-by-step guide.