I will fix your email deliverability with spf dkim and dmarc
DevOps and Systems Administrator for servers and email deliverability
About this Gig
Your emails land in spam, or worse, anyone can send invoices in your company's name. Both problems have the same root cause: missing or broken sender authentication.
I audit your domain and fix it properly:
SPF built from your actual sending sources, no guesswork, under the 10 lookup limit.
DKIM signing set up and verified on a real test message.
DMARC published, starting at p=none so nothing breaks, with a reporting address that works.
MTA-STS and TLS-RPT where your mail host supports it.
Blacklist check for your domain and sending IP, with delisting requests where needed.
A short written report: what was wrong, what I changed, what to watch.
I do not guess. Every change is verified with a live test send to major providers before I hand it over.
What I need from you: DNS access, or you add the records I send you. I never need your mailbox password.
Email Provider:
Gmail
•
Microsoft Outlook
•
Outlook
•
Webmail
•
Other
Expertise:
Security
•
Spam
•
Setup
•
Configuration
•
Migration
My Portfolio
FAQ
Will my email stop working?
No. DMARC starts at p=none, which only reports and blocks nothing. We tighten the policy only after the reports come back clean, and I tell you when that point is reached.
Do you need my password?
No. I need DNS access, or you publish the records I send you. I never ask for your mailbox or account password.
How do I know it actually worked?
You get a before and after: the SPF, DKIM and DMARC checks for your domain, plus the DMARC reports showing which of your senders pass and which fail. Measured results, not a claim that it is fine now.
I send through Microsoft 365, Google and a newsletter tool. Is that a problem?
That is the normal case and the usual reason things break. Every service that sends in your name needs its own entry. Tell me which ones you use and I include them all, so no legitimate sender stops working.
How long until we can enforce the policy?
The records go in within the delivery time of your package. Tightening the DMARC policy needs one to two weeks of real reports first, so that nothing legitimate gets blocked. I tell you when that point is reached.

