Help4 Net
Free DNS tools

Check and build email DNS records.

Inspect public MX, SPF, DKIM, and DMARC records, then generate conservative starter records for Help4 DNS. No mailbox password, private key, or Help4 account is required.

Do not guess email senders. One incorrect SPF or DMARC record can block legitimate mail. Inventory every service that sends as your domain before moving from monitoring to enforcement.

Public email DNS checker

Your mail provider supplies this name.

Checks query Google's public DNS-over-HTTPS endpoint for public DNS records only. Help4 does not request mailbox credentials or DKIM private keys.

MXNot checked
SPFNot checked
DKIMEnter a selector
DMARCNot checked

SPF starter generator

Select every system that sends mail using your domain. Help4 generates one SPF record; never publish multiple SPF TXT records at the same hostname.

Generated SPF

Name@
TypeTXT
Value

DMARC starter generator

Generated DMARC

Name_dmarc
TypeTXT
Value
Safe rollout: publish SPF and DKIM first, monitor DMARC reports, then move gradually from p=none to quarantine and reject only after every legitimate sender aligns.

Common provider recipes

ProviderSPF starting pointDKIMImportant
Google Workspaceinclude:_spf.google.comTXT at the selector supplied in Google AdminGenerate a 2048-bit key where supported, publish it, then start authentication in Google Admin.
Microsoft 365include:spf.protection.outlook.comTwo provider-supplied CNAME recordsUse the exact tenant-specific targets shown in Microsoft 365.
cPanel / website formsip4:SERVER_IP and provider includes as neededUse Email Deliverability in cPanelThe website IP belongs in SPF only if that server actually sends mail for the domain.
Marketing platformUse the vendor's current include if requiredPrefer aligned custom-domain DKIMDo not add a vendor merely because it receives mail or hosts a website.