How to use this tool
Queries _dmarc at the entered domain (or accepts a full _dmarc owner). Displays only DMARC TXT policies and parses policy, alignment, percentage and reporting-address tags. Does not check organizational-domain inheritance or external-report authorization.
Enter the target, complete any relevant options and choose Check. Review the requested records, query outcomes and diagnostic findings. Copy Report saves the visible report.
Reading the results
No matching records and an unavailable query are different outcomes. TTLs are displayed in seconds; zero is a valid TTL. A completed request does not mean a domain passed its health checks. Only the submitted DNS owner and explicitly listed checks are inspected.
Frequently Asked Questions
Does entering the root domain automatically query _dmarc?
No. The code queries the name exactly after cleanup. Enter _dmarc followed by the domain to target the normal DMARC owner.
Does the checker grade DMARC compliance?
No. It lists DNS records without parsing policy, alignment, percentage, or report-address tags.
Why is no DMARC TXT value returned?
The complete _dmarc hostname may be missing, cached, or unpublished. Confirm the owner name and use a TXT-specific lookup if needed.
Can the result verify aggregate report delivery?
No. A visible rua address does not prove that reports reach or are accepted by that mailbox.
Does this page test SPF and DKIM alignment?
No. It does not inspect messages or compare authenticated identifiers with the From domain.
Why does an earlier DMARC policy still appear?
The resolver may hold the previous TXT answer until its TTL expires.