Email Auth · Sub-capability

DMARC monitoring

24/7 ingestion of aggregate and forensic reports. None lost, no manual parsing. Visual timeline of legitimate sources, attackers and configuration drift.

Capabilities

24/7 ingestion

We receive every report the email providers of the world send about your domains. Any format, any volume, automatic retries on delivery failure.

Aggregate reports (RUA)

Pass/fail rates per receiver (Gmail, Yahoo, Microsoft, Apple). We detect changes between consecutive periods.

Forensic reports (RUF)

Per-failure detail: from header, return path, source IP, full message when the ISP provides it. For investigating real incidents.

Source timeline

Who sends in your name — legitimate vs attackers. Send-pattern changes that hint at spoofing or IT drift.

Pass/fail rate per domain

Visual compliance rate per domain, sub-domain and provider. Exec KPI for the board ("DMARC compliance went from 87% to 99% in Q2").

Anticipated alerts

Failure spike = active attack or new misaligned service. Slack/Teams/email/webhook with impact context.