anz.co.nz
Live email deliverability and anti-spoofing audit. Every value below was read from public DNS at the moment this page was generated.
96/100 — This domain is configured correctly for both sending and receiving. Accepts mail · Protected against spoofing
Findings
-
mta sts
No MTA-STS policy, so inbound mail can be downgraded to an unencrypted connection.
Fix: Publish _mta-sts.anz.co.nz and host a policy at https://mta-sts.anz.co.nz/.well-known/mta-sts.txt.
-
mx
4 mail exchangers published.
10 primary.us.email.fireeyecloud.com, 20 alt1.us.email.fireeyecloud.com, 30 alt2.us.email.fireeyecloud.com, 40 alt3.us.email.fireeyecloud.com
-
spf
SPF is published and enforcing.
v=spf1 ip4:156.13.220.137 ip4:156.13.219.137 include:_spf.fireeyecloud.com -all
-
dmarc
DMARC is enforcing with p=reject.
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
-
dkim
DKIM keys found for 1 selector.
google._domainkey
-
bimi
BIMI is published; supporting clients can show your logo.
v=BIMI1;l=https://vmc.digicert.com/e7eefdc0-9d67-450d-b51c-68886ef81c39.svg;a=https://vmc.digicert.com/e7eefdc0-9d67-450d-b51c-68886ef81c39.pem
Records
| MX | 10 primary.us.email.fireeyecloud.com20 alt1.us.email.fireeyecloud.com30 alt2.us.email.fireeyecloud.com40 alt3.us.email.fireeyecloud.com |
|---|---|
| SPF | v=spf1 ip4:156.13.220.137 ip4:156.13.219.137 include:_spf.fireeyecloud.com -all |
| DMARC | v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com |
| DKIM selectors | google |
| MTA-STS | not published |
| TLS-RPT | not published |
| BIMI | published |
| DNSSEC | not validating |
Same data, as JSON, in one request. No SMTP probing, no stored recipient data, 250 free calls a month.
curl "https://mailgrade.dev/v1/domain?domain=anz.co.nz"
Also available: /v1/verify?email=… for individual addresses, and
/v1/verify/batch for lists.