Conversation

Replying to and
That's fair - it's tricky to keep up with all the email auth standards. As someone who works a lot with auth and delivery, I'd probably place more blame on Gmail's side - there may come a time when lack of DMARC is likely to result in filtering, but that day is not today.
1
6
If they don't have DMARC, it's possible their domain is being spoofed for spam emails resulting in it having a bad reputation. It's possible that an enforcing DMARC policy is used as a heuristic but I doubt not having one really results in a much of a penalty.
2
DKIM is only involved if the mail is signed. There's no way to mark the domain as requiring DKIM aside from using DMARC. The whole point of DMARC is requiring that either SPF or DKIM is valid and aligned to the domain. They don't really work meaningfully without having it.
2
Yes, I'm familiar with DMARC, so I know that's the use case for it. But in the context of "why this mail went to spam", spoofing - at the scale that would affect the auth'd domain's reputation and delivery - is extremely uncommon. There are lots of much more likely causes.
1
twitter.com/DanielMicay/st I don't think DMARC has a significant impact as a spam signal as I said either. It is possible that the domain reputation was harmed if Gmail couldn't distinguish spam emails from the genuine emails due to lacking it though.
Quote Tweet
Replying to @ev_bjork @0xdaeda1a and @hacks4pancakes
If they don't have DMARC, it's possible their domain is being spoofed for spam emails resulting in it having a bad reputation. It's possible that an enforcing DMARC policy is used as a heuristic but I doubt not having one really results in a much of a penalty.
1
Show replies