FREE · NO ACCOUNT

Free DMARC record generator — policy & aggregate reports

Build a DMARC TXT record with a policy, optional aggregate-report mailbox and alignment setting. Start with monitoring and review before publishing.

Start with monitoring until legitimate senders and alignment are checked. This creates text only; it does not modify DNS.

What this tool tells you

DMARC publishes how a domain owner wants receivers to handle authentication failures and where aggregate reports may be sent. This builder creates a TXT record at _dmarc.yourdomain. Monitoring with p=none does not request rejection. Review reports and sender alignment before choosing quarantine or reject.

How to use it

  1. Enter your domain and choose a policy. Monitoring is the starting default.
  2. Optionally enter a real mailbox you control for aggregate reports. Choose strict alignment only if needed.
  3. Review the host and value, check existing DNS, then publish one DMARC record at that name.

Read the result in context

Generating a record does not publish DNS, enable SPF/DKIM or create a report mailbox. External report destinations may require DNS authorization by the destination owner. This builder uses the core policy and reporting tags; it does not add the obsolete pct tag or implement policy inheritance checks.

Useful answers

Should I start with p=reject?

First identify and authenticate legitimate senders and review alignment and reports. An enforcement policy can affect legitimate mail if sources are misconfigured. The generator defaults to p=none for observation.

Does p=none block spoofed email?

It does not ask receivers to quarantine or reject failures. It lets you publish a monitoring policy and request reports when a report destination is configured. Receivers still apply their own policies.

RelyPost

Give your business its own email address.

Bring your domain, create team mailboxes and manage email in one workspace. Review the current free and paid plan limits.

Explore business email