Email Impersonation Check
Could a criminal send email that looks like it comes from your company — to your customers, your suppliers, your bank? Enter your domain and find out in ten seconds. Real DNS analysis, not a questionnaire.
Right now, could a criminal send email that looks like it comes from your company? Enter your domain and we will read its public email-security records (SPF, DKIM, DMARC, MX) and tell you — in plain language.
We only read public DNS records — the same ones any mail server reads before accepting an email from you. Nothing touches your systems.
Want this as a written report — with the exact records to publish?
We will email you the findings plus the specific DNS records your provider needs to add, in copy-paste form. If you prefer, we can also just fix it for you.
This check reads only public DNS records — information every mail server on the internet already uses. It does not scan, probe or touch your infrastructure. DKIM detection tries common selector names; a custom selector may exist that we cannot see, and full DKIM verification requires knowing your selector.
This is how invoice fraud starts
The attacker does not need to hack you. If your domain is unprotected, they simply send email as you — and your customer pays their invoice into the wrong account.
Three records decide it
SPF says who may send as you. DKIM signs your mail. DMARC tells the world what to do with fakes. Most Greek businesses have none of the three enforced.
p=none is not protection
The most common setup we see is DMARC in monitoring mode — the record exists, receivers check the mail, and then deliver the fakes anyway.
The fix is small
Correctly configured, these are a handful of DNS records. We provide them in copy-paste form — or publish them for you.
Found a gap? We close it.
SPF, DKIM and DMARC enforcement done right — without breaking your legitimate mail. Part of our Microsoft 365 and email security hardening work.