Email Authentication Checker (SPF, DKIM, DMARC)
Enter a domain to check its email authentication configuration. The tool validates SPF records (who can send on your behalf), DKIM records (email signatures), and DMARC policies (what to do with unauthenticated mail). Misconfigured authentication is the top reason emails land in spam.
Without https://
returns
- data.spf
- SPF result with found, valid, the raw record, parsed parts and issues.
- data.dmarc
- DMARC result in the same shape as spf.
- data.dkim
- DKIM keys found across common selectors, plus any issues.
- data.domain
- The domain that was checked.
Fill in the fields and send a request. The response lands here.
Run it from your code
A temporary key takes one request and lasts seven days at 20 calls a day. Register and it becomes 75 a day, still free.
$ curl -s "https://apixies.io/api/v1/email-auth?domain=google.com" \ -H "X-API-Key: $APIXIES_KEY" | jq '.data.spf'
questions
Why do SPF, DKIM, and DMARC matter?
They prevent email spoofing. Without them, anyone can send emails pretending to be your domain. Most major email providers (Gmail, Outlook) now require all three for reliable inbox delivery.
My SPF record is valid but emails still go to spam. Why?
SPF alone isn't enough. You need DKIM for message signing and a DMARC policy to tie them together. Also check that your sending IP has a good reputation and your content isn't triggering spam filters.