spf-record-checker

SPF Record Checker

Validate your SPF record, policy and 10-lookup limit instantly.

Check whether your domain's SPF record is valid and correctly configured. We parse your v=spf1 record, evaluate the all policy, and count DNS lookups against the RFC 7208 limit.

Private & Secure
No data stored or shared.
Instant Results
Live results in seconds.
Actionable Insights
Clear next steps.
Always Up to Date
Always current standards.
1
HOW IT WORKS
1
01

Confirm the Record

Confirms exactly one valid v=spf1 record exists.

1
HOW IT WORKS
1
02

Evaluate the Policy

Evaluates the all mechanism (-all, ~all, ?all).

1
HOW IT WORKS
1
03

Count DNS Lookups

Counts DNS-lookup mechanisms against the 10-lookup limit that causes permerror.

■
01
//
15
1
FAQ

Frequently asked questions.

1
QST 01

What is the SPF 10-lookup limit?

1
ANSW 01

SPF allows a maximum of 10 DNS lookups. Exceeding it causes a permerror and authentication failures. We count these for you.

1
QST 02

Should I use -all or ~all?

1
ANSW 02

-all (hard fail) is the strongest. ~all (soft fail) is a safe intermediate step while you verify all your senders.

1
QST 03

Can I have more than one SPF record?

1
ANSW 03

No — having multiple SPF records is invalid and causes authentication to fail entirely. Merge them into a single record instead.

1
QST 04

What does the include mechanism do?

1
ANSW 04

It authorizes a third-party service (like Google Workspace or SendGrid) to send mail on your domain's behalf by referencing that provider's own SPF record.

1
QST 05

Why does SPF alone not stop spoofing?

1
ANSW 05

SPF only validates the envelope sender, not the visible "From" address — pair it with DMARC to fully protect against spoofed emails.

1
QST 06

What happens if I exceed the 10-lookup limit?

1
ANSW 06

Receiving servers return a permerror and typically treat the SPF check as failed, which can hurt deliverability even if your record looks otherwise correct.