Skip to content
Email Deliverability

What is DMARC Policy?

A DNS rule telling receivers how to treat mail that fails SPF and DKIM alignment: monitor, quarantine, or reject. Published reports then reveal exactly who sends as your domain, legitimate or not.

Example

After SPF and DKIM pass consistently, the domain publishes a DMARC policy moving from monitoring to quarantine and finally reject. Aggregate reports then show exactly which services still send unauthenticated mail.

What people get wrong

Jumping straight to a reject policy on day one. Legitimate flows such as forwarding break first; ramp through monitoring so reports reveal every sender before enforcement.

Frequently asked questions

What breaks most often under DMARC enforcement?

Forwarded mail and unauthenticated third-party senders. Inventory every service that sends as your domain during monitoring, then authenticate or remove each one.

Sources

Browse all Email Deliverability terms →