Running your DNS diagnostic…
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Checking SPF, DMARC, DKIM, MX, DNS, blacklists and domain & SSL expiry. A domain we haven't scanned before takes a few seconds — hang tight.
Scanned Oct 8, 2026 06:31 UTC · 7 checks · public report
One finding blocks deliverability.
vrijclbnetwerk.be publishes DMARC with p=none — spoofed mail is monitored but not blocked.
Your site’s TLS certificate expired on January 18, 2021. This means visitors may see browser security warnings, and their connection may no longer be trusted. Renew or replace the certificate on the server and make sure the new one is installed correctly before the old one expires again.
TLS certificate expires 2021-01-18Your domain has a DMARC setting, but it is only in monitoring mode, so it is not actually blocking fake or forged emails. This matters because attackers can still send messages that look like they came from your domain, which can hurt trust and increase phishing risk. To fix it, change the DMARC policy from monitoring only to an enforcing mode so email receivers are told to reject or quarantine suspicious mail.
One send: the full report — every finding and fix — lands in your inbox, with a free account waiting. Opening it signs you in and starts a 14-day Monitor trial. No card, and you can unsubscribe in one click.
Domain owner? Re-scan any time — or email hello@dnsdoctor.dev to have this page removed.
v=DMARC1; p=none;_dmarc · Record type: TXT · TTL: 3600v=DMARC1; p=quarantine; np=rejectThis means your email signature key is smaller than recommended, so it is easier to break than a modern one. If an attacker can forge that signature, your messages may be more likely to be spoofed or tampered with. The fix is to replace this DKIM selector with a stronger, modern key size and then update the DNS entry for that selector.