Practical insights on email deliverability, security, and infrastructure — based on real findings from working with 450+ organizations.
Email Deliverability
April 10, 2025
p=reject DMARC blocked Mailchimp emails due to DKIM failures, despite unchanged DNS and Cloudflare settings.
Email Security
April 2, 2025
A typo-based SPF include exposed how look-alike domains can bypass security.
March 24, 2025
Spoofing targets depend on domain exposure, authentication gaps, and automation—not company size or staff count.
March 20, 2025
Yahoo appears to reject forwarded emails due to authentication and header modification issues.
March 19, 2025
June 1 marks strict enforcement of Google and Yahoo email authentication requirements for senders.
March 14, 2025
Even small, lightly-used domains can be exploited for spoofing, phishing, and scams without owner knowledge.
March 13, 2025
Ensure email HTML templates avoid homoglyphs to prevent spam filters blocking legitimate marketing emails.
Threat actors abused AppSheet to send phishing emails that passed DKIM and DMARC checks.
March 12, 2025
Open and click rates don’t always reflect true engagement—manual replies tell the real story.
March 1, 2025
Mailchimp rejects emails due to DMARC p=reject, sending 100% non-authenticated despite DKIM setup.
February 21, 2025
DKIM, SPF, and DMARC form the foundation for secure email delivery and prevent spoofing.
DMARC aggregate reports continue despite significant syntax errors, as Microsoft and Google overlook issues.