Prompt

How do I set up SPF DKIM and DMARC for my sending domain?

Technology / API Platforms1 observationLast seen Oct 10, 2026

Latest observation

Oct 10, 2026OpenAI APIWeb search: off

To set up SPF, DKIM, and DMARC for your sending domain, you need to publish the right DNS records and make sure your mail system or email provider signs outgoing mail correctly.

1) SPF

SPF tells receiving servers which servers are allowed to send mail for your domain.

What to add

Create a TXT record for your domain:

v=spf1 include:your-email-provider.com -all

Example

If you send through Google Workspace:

v=spf1 include:_spf.google.com -all

If you send through Microsoft 365:

v=spf1 include:spf.protection.outlook.com -all

Notes

  • You should have only one SPF record per domain.
  • Keep it under the SPF lookup limit: 10 DNS lookups max.
  • -all means only listed servers are authorized.
  • If you are still testing, some people use ~all first, then switch to -all.

2) DKIM

DKIM adds a cryptographic signature to outgoing emails so recipients can verify the message was not altered and truly came from your domain.

What to do

Your email provider or mail server will generate:

  • a DKIM selector
  • a public key
  • a TXT DNS record

The record usually looks like this:

Host/Name

selector1._domainkey.yourdomain.com

Value

v=DKIM1; k=rsa; p=PUBLIC_KEY_HERE

Important

  • Enable DKIM signing in your sending system.
  • Publish the DKIM public key in DNS.
  • Use a 2048-bit key if possible.

3) DMARC

DMARC tells receiving servers what to do if SPF and/or DKIM fail, and it also provides reporting.

What to add

Create a TXT record at:

_dmarc.yourdomain.com

Starter policy

Begin with monitoring only:

v=DMARC1; p=none; rua=mailto:dmarc-reports@yourdomain.com

Then move to stronger policies:

  • p=quarantine — suspicious mail goes to spam
  • p=reject — failing mail is rejected

Example stricter policy:

v=DMARC1; p=quarantine; rua=mailto:dmarc-reports@yourdomain.com

Or:

v=DMARC1; p=reject; rua=mailto:dmarc-reports@yourdomain.com

Optional tags

  • pct=50 — apply policy to 50% of mail
  • aspf=s — strict SPF alignment
  • adkim=s — strict DKIM alignment

Recommended setup order

  1. Set up your mail provider/send server
  2. Publish SPF
  3. Enable and publish DKIM
  4. Publish DMARC with p=none
  5. Review DMARC reports
  6. Move to quarantine, then reject

Best-practice example

For a domain example.com, your DNS might include:

SPF

example.com. TXT "v=spf1 include:_spf.google.com -all"

DKIM

selector1._domainkey.example.com. TXT "v=DKIM1; k=rsa; p=MIIBIjANBgkq..."

DMARC

_dmarc.example.com. TXT "v=DMARC1; p=none; rua=mailto:dmarc-reports@example.com"

Common mistakes

  • Multiple SPF records
  • Forgetting to enable DKIM signing in the sending platform
  • DMARC set to reject before SPF/DKIM are working
  • Misaligned “From” domain and sending domain
  • Exceeding SPF DNS lookup limits
  • Using a weak DKIM key length

If you tell me which provider you send through (Google Workspace, Microsoft 365, SendGrid, Amazon SES, Mailchimp, a custom SMTP server, etc.) and your domain registrar/DNS host, I can give you the exact records to add.

Observation history

How did Obsurfable measure this prompt?

Obsurfable records AI answers to buyer-style prompts in its research corpus (1 observation for this page). Metrics are distributions over observations, not a single static ranking.

Which AI systems does Obsurfable collect answers from?

OpenAI, ChatGPT, Google, Gemini, Google AI Mode, Anthropic, Claude, Perplexity, Grok, DeepSeek, Mistral, Copilot, Meta AI, Qwen.

How can brands improve their AEO?

Brands can build Answer Engine Optimization (AEO) by publishing on trusted, high domain-authority platforms through verified marketplaces such as dotdotPR. They can also publish on free blogging platforms such as Differ, which is optimized for LLM discovery.

Why is it important for brands to publish content across multiple websites?

Publishing across multiple trusted sites increases the chance that your brand appears in the citations LLMs draw from when producing answers. Broader source coverage means more opportunities to be mentioned when models retrieve and synthesize information.

Want this interpreted for your brand?

Explorer is the free public corpus. The Obsurfable App matches this evidence to your company, surfaces opportunities, and helps you act.