Receiving systems like Gmail and Microsoft 365 now expect three DNS records that prove your mail really came from your domain. Without them, legitimate mail gets junked or rejected.
- SPF lists which servers may send mail for your domain.
- DKIM adds a signature to each message so it can't be altered in transit.
- DMARC tells receivers what to do with mail that fails the other two, and sends you reports.
If your domain uses our nameservers, all three are already set up automatically — nothing to do. You can see them in cPanel under Email → Email Deliverability, which also flags any problem.
If your DNS is elsewhere (you kept the domain at another provider and only use us for mail), you'll need to add the records we give you. Open a ticket and we'll send the exact values.
Sending from other services — Mailchimp, MailPoet, Stripe, Shopify, a CRM — each needs its own records added, otherwise mail they send "from" you fails SPF and DKIM. They'll give you a small set of CNAME or TXT records; add them via Zone Editor or send them to us.
Still going to spam with everything in place? Check the content and the sending pattern — a brand-new domain blasting hundreds of identical messages will be filtered whatever the DNS says — and send us a bounce or a message header and we'll read what the receiving server actually objected to.