EQVPS
DNS & email

DMARC record generator

DMARC tells receivers what to do when SPF and DKIM fail, and sends you reports about who uses your domain.

Runs entirely in your browser — nothing you enter is sent to our servers.

Policy (p)
Subdomain policy (sp)
adkim
aspf
TXT · _dmarc.example.com

Tip: keep p=none for the first 1–2 weeks and read the rua reports before tightening.

How it works

Start with p=none and a rua address: you'll get daily XML reports from Gmail, Outlook and others showing every source sending as your domain. Once your legitimate servers pass SPF or DKIM, move to quarantine and then reject. pct lets you apply the policy to a share of mail while you roll out. Relaxed alignment is right for most setups; strict is for when the From domain must match exactly.

FAQ

Where do I publish the record?

As a TXT record on the subdomain _dmarc, e.g. _dmarc.example.com. The domain itself keeps its SPF record.

Is p=none useless?

It doesn't block anything, but it turns on reporting. Run it for a couple of weeks before enforcing — otherwise you risk blocking your own invoices or newsletters.

Related tools

All tools →

Put it to use on your own server: KVM VPS from $3/month, root access, crypto payments.

VPS plans