Email Analysis — Check Your Email Security

Test your email configuration in seconds. This free mail tester checks SPF, DKIM, DMARC, 25 blacklists, encryption and over 20 further checks — just send an email and get a detailed report.

1

Send an email

Send or forward any email to hello@analyzemy.email

2

Get the report

You'll instantly receive a reply with your security score

3

View the details

Click the link for the full analysis

20+
Security Checks
25
IP Blacklists
0-100
Security Score
<30s
Analysis time

Check email security — all checks at a glance

Every incoming email automatically runs through more than 20 checks — from the SPF check to the blacklist test to header analysis. Each check is explained individually.

SPF

SPF Check

Validates your domain's SPF TXT record and whether the sending server is authorized — including a full RFC 7208 audit with recursive lookup counting.

IP

SPF IP Analysis

Recursively resolves every IP in your SPF record and checks each one for blacklist entries, reverse DNS, FCrDNS and ASN ownership.

DKIM

DKIM Check

Cryptographically verifies the DKIM signature and analyzes algorithm, key strength, signed headers and domain alignment for each individual signature.

DMARC

DMARC Check

Validates the DMARC record, evaluates SPF and DKIM alignment, and audits the policy for weaknesses — including authorization of external report recipients.

ARC

ARC Chain Validation

Analyzes the Authenticated Received Chain per RFC 8617 — essential for forwarded email where SPF fails by design.

ENV

Envelope-From vs Header-From

Compares the Return-Path address with the visible From header. A mismatch breaks SPF alignment and is a common spoofing indicator.

TLS

TLS Transport Analysis

Extracts TLS version, cipher suite and key strength from the Received headers and shows the encryption status per hop in the routing path.

STS

MTA-STS & TLS-RPT

Checks whether MTA-STS is correctly set up with DNS record and policy file, and whether TLS-RPT reporting is enabled.

DANE

DANE / TLSA

Checks TLSA records for your MX hosts. DANE enables cryptographic certificate verification via DNS and requires DNSSEC.

CERT

MX TLS Certificate

Establishes a real STARTTLS connection to your MX servers and fully inspects the presented certificate — from the chain to the expiry date.

SMTP

STARTTLS Support

Connects to the sender domain's MX servers and checks whether STARTTLS is offered in the EHLO response.

BL

IP Blacklist Check

Checks the sending IP against 25 DNS blacklists in parallel — from Spamhaus ZEN to SpamCop and SpamRATS — and shows the return codes of every listing.

DBL

Domain Blacklist Check

Checks the sender domain against 6 domain-based blacklists. Domain reputation applies independently of the sending IP.

URL

URL Blacklist Check

Extracts the domains of all links in the email body and checks them against URI blacklists — the area spam filters weight most heavily.

IDN

Homograph / IDN Detection

Detects domains with mixed scripts and confusable characters in the sender and links — the technique behind IDN homograph phishing.

ATT

Attachment Analysis

Detects dangerous file types, double extensions and macro-enabled Office documents among the message attachments.

BODY

Body & Spam Analysis

Analyzes the message body for the spam indicators filters actually score: missing plaintext, tracking pixels, hidden text, shorteners and image-to-text ratio.

LINK

Link Verification

Calls every link in the message body and reports dead links, redirect chains, status codes and SSL errors.

HDR

Header Analysis

Checks headers SpamAssassin-style: Message-ID, date, MIME-Version, Reply-To mismatch, X-Mailer and subject — including the complete routing path.

DNS

MX Record Analysis

Resolves the domain's MX records and analyzes each MX host individually — A records, reverse DNS and FCrDNS.

rDNS

HELO / rDNS Match

Compares the HELO/EHLO hostname with the sending IP's reverse DNS. A mismatch is one of the most common rejection reasons at large providers.

BIMI

BIMI Check

Checks whether a BIMI record exists and extracts the configured logo URL. BIMI requires an enforced DMARC policy.

Guides — fix the problems directly

Step-by-step instructions for the most common gaps in an email setup.

Email testing — why it matters

A misconfigured email domain causes messages to land in spam or get rejected entirely. With this free email analysis you can test your deliverability and spot problems instantly.

The mail tester performs a complete SPF check, DKIM check and DMARC check. Your sending IP is additionally tested against 25 blacklists, and a spam test is derived from header analysis, encryption and DNS configuration.

Want to test your email configuration or check your mail server? Just send an email to hello@analyzemy.email. Within seconds you receive an email score and a detailed report with every result — including header analysis, email authentication and a blacklist check.

Since 2024, Google and Yahoo require proper email authentication (SPF + DKIM + DMARC) from all senders. Check now whether your domain meets the requirements.

Privacy
We only store technical metadata (headers, DNS records, IPs). Email contents and attachments are not stored.
Analyze my email now