Email Deliverability Check

Analyse your domain’s email authentication, routing, and reputation in one scan.

Press Enter or , to add each selector. Scanned alongside our 130+ built-in list.

amanclinic.in
Email Deliverability
Cached Cached · 1 hr ago · renews in 3 min
Showing a cached result — sign up free for always-live lookups and API access. Create free account →
F 43
amanclinic.in
Significant gaps likely affecting deliverability.
3 passed 3 warnings 3 failed Export PDF
Mail Routing
Verifies that your domain has valid mail server records and that they resolve correctly.
PASS
MX Records Mail server routing

3 MX record(s) found.

MX records define where email for your domain is delivered. Without them, no mail can be received. Multiple MX records with different priorities provide automatic failover. An RFC 7505 Null MX (priority 0, host “.”) is detected and shown here — it explicitly declares the domain does not accept email.

PriorityHostnameType
10 mx.zoho.in Mail server
20 mx2.zoho.in Mail server
50 mx3.zoho.in Mail server
Authentication
The three-pillar framework that proves your emails are legitimate and prevents spoofing.
FAIL
!
SPF Sender Policy Framework Soft Fail (~all)

SPF uses ~all (soft fail). Consider upgrading to -all.

SPF lists which IP addresses are authorised to send email as your domain. A hard fail (-all) is strongest — receivers reject anything not on the list outright.

v=spf1 include:zohomail.in ~all
Mechanism Breakdown 1/10 DNS lookups
Q Type Value Status Notes & Guidance
+ include zohomail.in DNS
~ all
DKIM DomainKeys Identified Mail

DKIM records found for selector(s): zmail. Provider: Zoho Mail.

DKIM adds a cryptographic signature to every outgoing message. Receiving servers use your public key (published in DNS) to verify the message hasn't been altered in transit.

199 selectors scanned 1 found Zoho Mail
zmail._domainkey Zoho Mail RSA  1024-bit collapse
Tag Value Status Notes & Guidance
v= DKIM1
k= rsa
p= MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwISQ+qLp6W9M3…
DMARC Domain-based Message Authentication p=none

No DMARC record at _dmarc.amanclinic.in..

DMARC ties SPF and DKIM together with an enforcement policy. p=reject is the gold standard — it instructs receivers to block unauthenticated mail entirely and protects your domain from spoofing.

DMARC Reports Aggregate & forensic reporting

No DMARC record — aggregate reports cannot be received.

DMARC can send you daily XML reports (rua=) about which servers are sending mail as your domain and whether they pass authentication. Forensic reports (ruf=) include individual failure samples. Without these you are flying blind.

Transport Security
Ensures email is delivered over encrypted connections and that TLS failures are reported.
WARN
!
MTA-STS Enforce inbound TLS

No MTA-STS DNS record found. MTA-STS forces TLS for inbound mail.

MTA-STS forces other mail servers to use TLS encryption when delivering to you, blocking downgrade attacks that would expose messages in transit. It works together with TLSRPT for visibility.

i
TLSRPT TLS failure reporting

No TLS Reporting (TLSRPT) record. Optional but recommended alongside MTA-STS.

When TLS negotiation fails during inbound delivery, TLSRPT sends you a structured JSON report. This lets you detect misconfigured sending servers or active downgrade attacks targeting your MTA-STS policy.

Brand & Reputation
Brand logo visibility, reverse DNS matching, and blacklist status of your mail servers.
FAIL
i
BIMI Brand logo in email clients

No BIMI record. BIMI enables brand logo display in supporting email clients.

BIMI lets you display your verified brand logo in supporting inboxes (Gmail, Apple Mail, Yahoo). It requires DMARC with quarantine or reject, and an SVG logo hosted at a published URL.

!
PTR Records Reverse DNS for MX hosts

Some MX server IPs have a PTR record, but it does not forward-resolve back to the same IP (FCrDNS failed). Ask your hosting provider to ensure the PTR hostname resolves back to the IP.

Checks that each MX server IP has a PTR record and that the PTR hostname forward-resolves back to the same IP (FCrDNS). Most spam filters require FCrDNS to pass — a missing or non-confirming PTR raises the spam score of your outbound mail.

MX HostIPVerPTRMatch
mx.zoho.in 169.148.149.118 IPv4 mx3.zoho.in ~
mx.zoho.in 169.148.146.168 IPv4 mx.zoho.in
mx2.zoho.in 169.148.146.168 IPv4 mx.zoho.in
mx2.zoho.in 169.148.149.118 IPv4 mx3.zoho.in ~
mx3.zoho.in 103.103.196.235 IPv4 mx3.zoho.in
Blacklist Check 8 DNSBL zone spot-check

Listed on: 169.148.146.168 on dnsbl.spfbl.net; 103.103.196.235 on dnsbl.spfbl.net.

Checks whether your MX server IPs (IPv4 and IPv6) appear on major spam blocklists (Spamhaus, SpamCop, Barracuda, SORBS, and others). A single listing can cause severe delivery failures at major providers.

169.148.149.118 169.148.146.168 103.103.196.235 30 zone checks
LISTED 169.148.146.168 on dnsbl.spfbl.net
LISTED 103.103.196.235 on dnsbl.spfbl.net
Action required: Visit each blocklist above to request delisting. A listing on Spamhaus or Barracuda can cause rejection at major email providers.
Score Breakdown
Reference Guide