Siftsmith
← All tools

Email Security Signals

Give it a list of domains. Get back an A–F email-authentication grade for each, the exact problems found, whether it meets the Google/Yahoo/Microsoft bulk-sender rules, which vendors send its mail, who processes its DMARC reports — and plain-English pitch reasons for outreach.

Built for MSPs, email-security and deliverability vendors. A pay-per-domain alternative to EasyDMARC ($35.99+/mo) or MxToolbox Delivery Center ($129/mo) when you need a bulk audit of other people’s domains.

Run on Apify Store →

What you get per domain

grade, scoreA–F and 0–100 on SPF, DMARC, DKIM, MTA-STS, TLS-RPT, BIMI, DNSSEC and security.txt
bulkSenderCompliantGoogle & Yahoo (2024) and Microsoft (2025) bulk-sender authentication rules: pass, fail, or unknown
spfRecord, recursive DNS-lookup count against the 10-lookup limit, all qualifier
dmarc, dmarcReportingVendorPolicy, pct, rua/ruf — and who receives the reports (dmarcian, Valimail, EasyDMARC, Proofpoint, Red Sift, …)
sendingVendorsSenders authorised in SPF: SendGrid, Mailchimp, Amazon SES, HubSpot, Salesforce, Zendesk, …
issues, pitchReasonse.g. “DMARC at p=none — candidate for DMARC enforcement service”, “SPF over 10 lookups (14) — candidate for SPF flattening”

How it works

100% public DNS data, no logins:

Use cases

Pricing

Graded domain$0.02 — charged only for a domain that exists in DNS and was fully looked up

Free: unparseable inputs, IP addresses, private-network names, non-existent domains, DNS lookup failures (the row says to retry) and duplicates (stripe.com, https://www.stripe.com/pricing and jane@stripe.com are one domain). Set a max charge per run and the tool stops cleanly at that limit.