Email Standards Based on RFCs: A Practical Reference

· Published · 15 min read

Connected email standards ecosystem linking message format, transport, DNS, authentication, security, mailbox access, filtering, and reporting layers

Internet email is not defined by one RFC. A message crosses standards for addressing, submission, transfer, DNS routing, content structure, authentication, encryption, mailbox access, filtering, delivery reports, and list management. When somebody says a system is “RFC compliant,” the useful follow-up is simple: which RFC, which extension, and has a newer document changed it?

This reference groups the RFCs that define or materially affect general Internet mail operations. It includes the active core, widely implemented extensions, security and reporting specifications, newer 2024 to 2026 work, and the obsolete RFC numbers that still appear in products and documentation. Specialized MIME registrations, historic ARPANET memoranda, X.400 gateways, fax profiles, and military messaging are summarized separately so the operational standards remain readable.

How to use this RFC index

An RFC number is not proof that a document is current or mandatory. RFCs can be Internet Standards, Proposed Standards, Best Current Practices, Informational documents, Experimental documents, or Historic documents. A later RFC can update part of a specification without replacing the whole document, or obsolete it completely.

  • Open the RFC Editor information page and check its status, errata, updates, and obsoletes relationships.
  • Use the matching IANA protocol registry for live extension names, parameters, header fields, status codes, and assigned values.
  • Separate protocol conformance from provider policy. A message can follow the RFCs and still be filtered because of reputation, consent, abuse, or content signals.
  • Test the complete path. Sender behavior, intermediaries, receivers, and clients can implement different subsets of the same extension family.

The core Internet email stack

RFCStandardOperational role
RFC 5598Internet Mail ArchitectureDefines the roles used across message submission, transfer, delivery, access, and administration.
RFC 5321Simple Mail Transfer ProtocolCore SMTP transfer, envelopes, commands, reply handling, routing, retries, and trace behavior.
RFC 6409Message Submission for MailSeparates authenticated client submission from server-to-server relay and defines the submission service.
RFC 5322Internet Message FormatDefines the message header section, fields, addresses, dates, identifiers, and body boundary.
RFC 2045, RFC 2046, RFC 2047, and RFC 2049MIMEAdds media types, transfer encodings, multipart bodies, non-ASCII header text, and conformance rules.
RFC 9051IMAP4rev2Current IMAP base for remote mailbox access and synchronization. It obsoletes RFC 3501.
RFC 1939POP3Defines the simpler download-oriented mailbox access protocol still used by many systems.
RFC 8620 and RFC 8621JMAP Core and JMAP for MailDefines a JSON-based API model and its mail data, query, state, and submission capabilities.
RFC 6186Email service discoveryUses DNS SRV records to locate submission, IMAP, and POP services.
RFC 8314TLS for submission and accessTreats cleartext email submission and access as obsolete and recommends TLS-protected services.

SMTP transport, submission, and delivery extensions

The IANA SMTP registry is the live source for registered EHLO keywords, parameters, verbs, transmission types, enhanced status codes, and server-limit names.

RFCExtension or practiceWhy an operator uses it
RFC 1870SIZEAdvertises message-size limits and lets a sender declare the estimated message size.
RFC 1985ETRNRequests remote queue processing for intermittently connected systems.
RFC 2034Enhanced error codes in SMTP repliesAdds structured status detail to SMTP responses.
RFC 2505Anti-spam recommendations for MTAsHistoric but still useful operational guidance for relay control, traceability, and abuse handling.
RFC 2645On-Demand Mail RelaySupports queued delivery to systems with dynamic addresses.
RFC 2852DELIVERBYCommunicates a delivery-time requirement or expiry condition.
RFC 2920PIPELININGAllows specified SMTP commands to be sent without waiting for every individual response.
RFC 3030CHUNKING and BINARYMIMETransfers message data in chunks and supports binary MIME when both sides agree.
RFC 3207STARTTLS for SMTPUpgrades an SMTP connection to TLS. Policy enforcement requires additional standards.
RFC 3461Delivery Status Notification extensionDefines RET, ENVID, NOTIFY, and ORCPT negotiation.
RFC 3463 and RFC 5248Enhanced mail status codes and registryStandardizes the X.Y.Z diagnostic model and its assigned code space.
RFC 3848ESMTP and LMTP transmission typesRegisters values used in Received trace fields.
RFC 4468Submission BURLLets an authorized submitter reference message data by URL instead of uploading it again.
RFC 4865FUTURERELEASERequests that a submission server hold a message until a future time.
RFC 4954SMTP AUTHAdvertises and performs SASL authentication for message submission.
RFC 5068Submission operationsBest Current Practice for access, accountability, authentication, and traceability.
RFC 61528BITMIMEAllows transport of MIME bodies containing 8-bit data when advertised.
RFC 6531SMTPUTF8Extends SMTP for internationalized addresses and UTF-8 message headers.
RFC 6710MT-PRIORITYCommunicates message-transfer priority in environments that implement it.
RFC 7293RRVSHelps detect delivery to an address that was reassigned after a known date.
RFC 7504SMTP 521 and 556 repliesSignals that a host or domain does not accept mail.
RFC 7505Null MXLets a domain state explicitly that it accepts no email.
RFC 8689REQUIRETLSAllows a sender to require TLS-protected relay for a message rather than accept opportunistic downgrade.
RFC 9422LIMITSAdvertises implementation limits such as command, recipient, and transaction constraints.

Message format, MIME, headers, and identifiers

RFCAreaWhat it defines
RFC 5322 and RFC 6854Internet Message FormatCore header and body syntax, with the later update for group syntax in From and Sender.
RFC 2045MIME bodies and transfer encodingsMIME-Version, content types, quoted-printable, Base64, and body format.
RFC 2046MIME media typesText, image, audio, video, application, message, and multipart behavior.
RFC 2047Encoded wordsNon-ASCII display text in applicable message header fields.
RFC 2049MIME conformanceImplementation requirements and examples for MIME-capable agents.
RFC 2183Content-DispositionInline and attachment presentation plus filename parameters.
RFC 2231MIME parametersCharacter sets, languages, extended parameter values, and continuations.
RFC 2387multipart/relatedGroups a root body with resources such as inline images.
RFC 2392cid: and mid: URLsReferences MIME body parts and messages by content or message identifier.
RFC 2557MHTMLEncapsulates aggregate HTML documents and related resources in MIME.
RFC 3676format=flowedSupports flowed plain text and quote handling.
RFC 4021 and RFC 4249Header registration and implementation mapCatalogs mail and MIME header fields and describes their components.
RFC 4289 and RFC 6838Media-type registrationDefines registration procedures used by MIME media types.
RFC 6068mailto: URIDefines mail composition links and their permitted fields and encoding.
RFC 6532Internationalized headersPermits UTF-8 in message header field values within the EAI framework.
RFC 6657Text charset handlingUpdates MIME guidance for the charset parameter.
RFC 9228Delivered-ToExperimental registration and processing guidance for a commonly seen delivery header.

Delivery reports, receipts, automatic responses, and abuse feedback

RFCReport or behaviorUse
RFC 3461, RFC 3463, and RFC 3464Delivery Status NotificationsNegotiates DSNs, standardizes status codes, and defines the machine-readable delivery-status format.
RFC 6522multipart/reportCurrent base media type for administrative mail reports. It obsoletes RFC 3462.
RFC 6533Internationalized DSN and MDNExtends report formats for internationalized addresses and UTF-8 content.
RFC 8098Message Disposition NotificationCurrent read, display, delete, and disposition receipt format. It obsoletes RFC 3798.
RFC 3834Automatic responsesDefines safe behavior and the Auto-Submitted field to reduce loops.
RFC 5965Abuse Reporting FormatDefines machine-readable email feedback reports used by complaint and abuse systems.
RFC 6430not-spam feedback typeReports that a message was incorrectly classified as spam.
RFC 6590ARF redactionRedacts sensitive data from abuse reports while retaining useful evidence.
RFC 6591Authentication failure reportsDefines ARF fields for email authentication failures; RFC 9991 supplies current DMARC failure-reporting rules.
RFC 6650ARF applicabilityOperational guidance for creating and consuming feedback reports.
RFC 6651 and RFC 6652DKIM and SPF failure reportingDefines failure-reporting extensions for DKIM and SPF.
RFC 6692Source ports in ARFAdds source-port information when it is relevant to a report.
RFC 7372Email authentication status codesRegisters enhanced status codes for authentication-related failures.
RFC 9990DMARC aggregate reportingDefines the current aggregate feedback format and processing model.
RFC 9991DMARC failure reportingDefines current message-specific DMARC failure reporting.

SPF, DKIM, DMARC, ARC, and authentication results

RFCControlWhat it proves or records
RFC 7208SPFChecks whether the connecting source is authorized for an SMTP identity. It does not authenticate the visible From field by itself.
RFC 6376DKIMAssociates a signing domain with selected header fields and the body through a verifiable signature.
RFC 5585 and RFC 5863DKIM overview and operationsExplains DKIM service roles, deployment choices, signing, verification, and operational tradeoffs.
RFC 6377DKIM and mailing listsBest Current Practice for signature survival and list transformations.
RFC 8301DKIM algorithm and key updateRaises cryptographic requirements and removes weak choices.
RFC 8463Ed25519 for DKIMAdds an alternative DKIM signature method where implementations support it.
RFC 8601Authentication-ResultsRecords trusted receiver results for SPF, DKIM, DMARC, ARC, and other registered methods.
RFC 8616Authentication for internationalized mailUpdates SPF, DKIM, and authentication results for SMTPUTF8 messages.
RFC 8617ARCCreates an authenticated chain of message handling and prior authentication results across intermediaries.
RFC 7960DMARC and indirect flowsExplains forwarding and mailing-list interoperability failures.
RFC 9989DMARCCurrent DMARC protocol and policy specification. It obsoletes RFC 7489 and RFC 9091.
RFC 9990 and RFC 9991DMARC reportingSeparate current specifications for aggregate and failure reporting.

BIMI is not an RFC. BIMI is an industry specification that uses DNS, SVG, DMARC enforcement, and in some deployments a mark certificate. It belongs in an authentication and brand-assurance review, but it should not be presented as an IETF RFC.

Transport security and end-to-end protection

RFCSecurity layerPurpose
RFC 3207SMTP STARTTLSNegotiates TLS on SMTP connections.
RFC 7817Email TLS identity checksUpdates certificate-name checking for SMTP, IMAP, POP3, and related services.
RFC 8314 and RFC 8997Submission and access TLSRecommends encrypted submission/access and deprecates TLS 1.1 for those services.
RFC 6698, RFC 7671, and RFC 7672DANE and SMTPUses DNSSEC-protected TLSA records to authenticate SMTP TLS and resist downgrade.
RFC 8461MTA-STSPublishes an HTTPS policy requiring authenticated TLS delivery to named MX hosts.
RFC 8460TLS reportingReports SMTP TLS policy and negotiation failures.
RFC 8689REQUIRETLSProvides per-message TLS requirements through SMTP.
RFC 9846, RFC 8996, and RFC 9325General TLS foundationCurrent TLS 1.3 base, deprecation of TLS 1.0 and 1.1, and implementation guidance for secure TLS use.
RFC 1847 and RFC 3156Security multiparts and OpenPGP/MIMEDefines signed/encrypted MIME containers and their use with OpenPGP.
RFC 8550 and RFC 8551S/MIME 4.0Current S/MIME certificate handling and message specification.
RFC 9580 and RFC 9980OpenPGPCurrent OpenPGP format plus post-quantum cryptography extensions.
RFC 9598Internationalized addresses in certificatesCurrent X.509 representation for internationalized email addresses.
RFC 9787End-to-end email security guidanceCurrent guidance for deploying and operating encrypted and signed email.
RFC 9788Protected headersProtects selected header fields inside cryptographically protected messages.

IMAP, POP3, and mailbox synchronization

IMAP extensions are numerous because clients need capabilities for synchronization, search, quotas, metadata, special-use folders, preview generation, and large mailboxes. The server capability response tells a client which subset is available.

RFCCapabilityOperator note
RFC 9051IMAP4rev2Current base IMAP protocol. RFC 3501 is obsolete.
RFC 1939, RFC 2449, and RFC 5034POP3, extension model, and SASLCore POP3 retrieval plus extension discovery and authentication.
RFC 2177IDLENotifies a connected client about mailbox changes without polling.
RFC 2971IDExchanges implementation identification information.
RFC 4314 and RFC 4315ACL and UIDPLUSMailbox permissions and safer UID-based append, copy, and expunge workflows.
RFC 4466Collected IMAP ABNF extensionsShared syntax used by many later IMAP extensions.
RFC 4978COMPRESSCompresses an IMAP connection after negotiation.
RFC 5092IMAP URIReferences IMAP mailboxes and messages through a URI scheme.
RFC 5161 and RFC 5182ENABLE and SEARCHRESEnables selected extensions and reuses the last search result.
RFC 5256 and RFC 5258SORT, THREAD, and LIST extensionsServer-side organization plus richer mailbox listing.
RFC 5464 and RFC 5465METADATA and NOTIFYMailbox/server annotations and event notifications.
RFC 5530 and RFC 5819Response codes and LIST-STATUSMore precise failures and mailbox status during listing.
RFC 6154Special-use mailboxesIdentifies standard roles such as Sent, Drafts, Junk, and Trash.
RFC 6203 and RFC 7377Fuzzy and multimailbox searchImproves server-side search behavior across messages and mailboxes.
RFC 6851 and RFC 7162MOVE, CONDSTORE, and QRESYNCMoves messages and performs efficient disconnected-client synchronization.
RFC 7888 and RFC 7889Non-synchronizing literals and APPENDLIMITReduces command round trips and advertises append-size limits.
RFC 8437, RFC 8438, and RFC 8440UNAUTHENTICATE, STATUS=SIZE, and MYRIGHTSConnection reuse, mailbox-size status, and effective-rights reporting.
RFC 8457 and RFC 8474Important mailbox semantics and object IDsStandard importance markers and stable mailbox/message identifiers.
RFC 8508 and RFC 8514REPLACE and SAVEDATEAtomic message replacement and preservation of save time.
RFC 8970 and RFC 9208PREVIEW and QUOTAServer-generated previews and current quota handling.
RFC 9394PARTIALPaged SEARCH and FETCH results for large result sets.
RFC 9585, RFC 9586, and RFC 9590Progress, UID-only mode, and LIST-METADATANewer progress responses, an experimental UID-only model, and metadata returned during listing.
RFC 9698, RFC 9738, and RFC 9979JMAP access, message limits, and keywordsJMAP service discovery from IMAP, an experimental message limit, and additional standardized keywords and mailbox attributes.
RFC 9755IMAP UTF-8Current IMAP UTF-8 support. It obsoletes RFC 6855.
RFCCapabilityScope
RFC 8620JMAP CoreSession discovery, method calls, state, errors, uploads, downloads, and push model.
RFC 8621JMAP for MailMailboxes, email objects, threads, identities, vacation responses, and submission.
RFC 8887JMAP over WebSocketPersistent bidirectional transport for JMAP method calls and state changes.
RFC 9007JMAP MDNCreates and processes message disposition notifications through JMAP.
RFC 9219JMAP S/MIME verificationReports S/MIME signature verification information.
RFC 9404 and RFC 9425Blob management and quotasManages binary objects and exposes quota information.
RFC 9610JMAP for ContactsDefines contacts and address books in the broader JMAP ecosystem.
RFC 9661JMAP for Sieve scriptsCreates, updates, validates, and activates Sieve scripts through JMAP.
RFC 9670JMAP SharingShares JMAP data with users and groups through access controls.
RFC 9749JMAP Web Push with VAPIDAuthenticates application servers that deliver JMAP push notifications.

Sieve filtering and server-side rules

The IANA Sieve registry is the live capability list. A Sieve server can implement only part of this family, so scripts must test capabilities rather than assume every extension exists.

RFCExtensionPurpose
RFC 5228Sieve base languageSafe server-side mail filtering with tests, actions, and capability negotiation.
RFC 3894, RFC 5173, and RFC 5183Copy, body, and environmentKeeps a copy, inspects body content, and reads execution-environment values.
RFC 5229, RFC 5231, and RFC 5260Variables, relational tests, and datesAdds reusable variables, comparisons, and date/index tests.
RFC 5230 and RFC 6131Vacation responsesCreates controlled auto-replies with finer response intervals.
RFC 5232, RFC 5233, and RFC 5235IMAP flags, subaddresses, spam and virus testsSets message flags, recognizes address detail parts, and consumes filtering scores.
RFC 5293 and RFC 5429Editheader and rejectModifies permitted headers and rejects delivery with controlled responses.
RFC 5435 and RFC 5436NotificationsDefines the notification framework and its mailto mechanism.
RFC 5463 and RFC 5490Ihave, mailbox status, and metadataTests extension support and reads mailbox state and annotations.
RFC 5703MIME part processingTests, iterates, extracts, replaces, and encloses MIME parts.
RFC 5804ManageSieveRemotely stores, lists, validates, and activates Sieve scripts.
RFC 6009 and RFC 6134DSN, Deliver-By, and external listsAdds delivery controls and tests membership in externally stored lists.
RFC 6558 and RFC 6609Convert and includeConverts message content and composes scripts from reusable parts.
RFC 6785 and RFC 7352IMAP events and duplicate detectionRuns rules on mailbox events and identifies duplicate deliveries.
RFC 8579 and RFC 8580Special-use delivery and file carbon copyFiles into a mailbox role and keeps a copy of generated messages.
RFC 9042 and RFC 9122MAILBOXID delivery and action registryTargets stable mailbox IDs and defines the registry for Sieve actions.
RFC 9661 and RFC 9671JMAP script management and calendar attachmentsManages scripts through JMAP and processes calendar invitations.

Internationalized email and addresses

RFCAreaRequirement
RFC 5890 to RFC 5895IDNA2008Defines internationalized domain-name terminology, protocol, tables, directionality, and mapping guidance.
RFC 6530EAI frameworkOverview and architecture for internationalized email.
RFC 6531SMTPUTF8Negotiates internationalized mailbox local-parts and UTF-8 headers in SMTP.
RFC 6532UTF-8 message headersExtends Internet Message Format for internationalized header values.
RFC 6533Internationalized reportsExtends delivery and disposition notifications.
RFC 6783Mailing lists and non-ASCII addressesExplains list interoperability with internationalized addresses.
RFC 6856, RFC 6857, and RFC 6858POP3 and downgrade handlingSupports UTF-8 in POP3 and defines post-delivery downgrade approaches for legacy clients.
RFC 8616Internationalized authenticationUpdates email authentication methods and result fields for EAI.
RFC 9598Internationalized certificate identitiesRepresents internationalized email addresses in X.509 certificates.
RFC 9755IMAP UTF-8Current IMAP extension for internationalized mailbox names, addresses, and message handling.

Mailing lists, unsubscribe, role addresses, and bulk operations

RFCAreaUse
RFC 2142Role mailboxesDefines conventional addresses such as postmaster, abuse, and security.
RFC 2369List command headersDefines List-Unsubscribe, List-Help, List-Post, and related fields.
RFC 2919List-IDProvides a stable mailing-list identifier independent of posting and subscription addresses.
RFC 3834Automatic response controlPrevents vacation responders and automated systems from creating loops.
RFC 5064Archived-AtLinks a message to a stable archive location.
RFC 6377DKIM and list transformationsExplains signature breakage and operational choices for lists.
RFC 6449Complaint feedback loopsOperational recommendations for complaint feedback handling.
RFC 6783Internationalized listsHandles non-ASCII subscriber and posting addresses.
RFC 7960DMARC interoperabilityDocuments problems introduced by forwarding and content-changing lists.
RFC 8058One-click unsubscribeAdds an HTTPS POST mechanism used with List-Unsubscribe and List-Unsubscribe-Post.

Discovery, authentication frameworks, and supporting protocols

RFCSupporting standardEmail use
RFC 2782 and RFC 6186DNS SRV and email discoveryLocates submission and access services. Microsoft Autodiscover and Thunderbird autoconfiguration are separate vendor mechanisms, not IETF email RFCs.
RFC 4422SASLAuthentication framework used by SMTP AUTH, IMAP, POP3, and ManageSieve.
RFC 5802 and RFC 7677SCRAMPassword-based SASL mechanisms, including SCRAM-SHA-256.
RFC 7628OAuth for SASLOAuth bearer authentication used by modern mail clients and providers.
RFC 9495CAA for email addressesDefines certification authority authorization processing for email-address certificates.
RFC 8162 and RFC 8823S/MIME certificate discovery and automationAssociates certificates through DNS and extends ACME for end-user S/MIME certificates.

Specialized email RFC families

These specifications are real parts of the email standards landscape, but most general deliverability teams encounter them only in specific products or regulated environments.

RFCsSpecialized familyWhere it appears
RFC 4155mbox storage formatMailbox files, archives, exports, and migration tooling.
RFC 5545, RFC 5546, and RFC 6047iCalendar, iTIP, and iMIPMeeting invitations and calendaring transported through email.
RFC 6109Italian certified emailDocuments the Posta Elettronica Certificata system.
RFC 3191, RFC 3192, and RFC 3965GSTN, fax addressing, and Internet faxFax gateways and legacy messaging integration.
RFC 3801 to RFC 3804Voice Profile for Internet MailVoice-message MIME profiles and addressing.
RFC 2156 and RFC 2157X.400 and MIME mappingGateways between Internet mail and X.400 environments.
RFC 1767 and RFC 4130EDI over MIME and AS2Business document interchange using MIME and secure transport profiles.
RFC 6477, RFC 7444, and RFC 7912Military and controlled-message fieldsSecurity labels, authorizing fields, and specialized message handling.
RFC 7017Mail archive accessIMAP access to IETF email-list archives.

Obsolete RFC numbers still found in documentation

Older RFCUse insteadReason
RFC 821 and RFC 2821RFC 5321Current published SMTP base.
RFC 822 and RFC 2822RFC 5322 plus updatesCurrent Internet Message Format base.
RFC 1341 and RFC 1521RFC 2045, RFC 2046, RFC 2047, and RFC 2049Current MIME message-format documents.
RFC 1342 and RFC 1522RFC 2047Current encoded-word specification.
RFC 2048 and RFC 4288RFC 6838, with RFC 4289Current media-type registration procedures and MIME implementation guidance.
RFC 2476 and RFC 4409RFC 6409Current Message Submission standard.
RFC 3501RFC 9051IMAP4rev2 obsoletes IMAP4rev1.
RFC 4551 and RFC 5162RFC 7162Current CONDSTORE and QRESYNC specification.
RFC 4408RFC 7208Current SPF specification.
RFC 4871 and RFC 5672RFC 6376Current DKIM base, with later algorithm updates.
RFC 7489 and RFC 9091RFC 9989, RFC 9990, and RFC 9991Current DMARC protocol and reporting specifications.
RFC 3462RFC 6522Current multipart/report specification.
RFC 3798RFC 8098Current Message Disposition Notification standard.
RFC 5750 and RFC 5751RFC 8550 and RFC 8551Current S/MIME 4.0 specifications.
RFC 4880RFC 9580Current OpenPGP specification.
RFC 6855RFC 9755Current IMAP UTF-8 extension.
RFC 2595RFC 7817 and RFC 8314Updated identity checking and current submission/access TLS guidance.
RFC 5246 and RFC 8446RFC 9846Current TLS 1.3 base, which also defines requirements for TLS 1.2 implementations.

Standards that are not RFCs

Several important email controls come from industry groups or providers rather than the IETF RFC stream:

  • BIMI: An industry specification for brand indicators. It is not an RFC.
  • Mailbox-provider bulk sender requirements: Gmail, Yahoo, Microsoft, and other providers publish operational policies that can be stricter than the protocol minimum.
  • Feedback loops and reputation portals: Provider-specific registration and data formats often sit beside, not inside, the ARF RFC family.
  • Autoconfiguration: Microsoft Autodiscover and Thunderbird autoconfiguration are vendor mechanisms. RFC 6186 covers the standards-based DNS SRV path.
  • M3AAWG guidance: Industry Best Common Practices provide operational advice but are not IETF RFCs.

How to maintain an email standards baseline

  1. Record the exact protocol and extension advertised by each production service.
  2. Link every implementation requirement to the current RFC Editor information page, not an old blog summary.
  3. Check the RFC status, errata, updated-by, and obsoletes fields before treating a number as current.
  4. Check the relevant IANA registry for live parameters, result names, header fields, status codes, and capabilities.
  5. Separate mandatory protocol behavior from recommended operations and provider-specific policy.
  6. Test negative cases: malformed messages, missing extensions, TLS downgrade, authentication failure, retry behavior, report loops, and unsupported UTF-8 paths.
  7. Preserve raw messages, SMTP responses, capability advertisements, DNS answers, and server logs as evidence.
  8. Review the baseline after MTA, mailbox, DNS, authentication, TLS, filtering, or provider-policy changes.

The RFC set is not a checklist where every server must implement every row. It is a map. Start with the core stack, add the extensions your workflow actually advertises, and document what happens when the other side does not support them. That approach is more useful than claiming broad RFC compliance without naming the behavior being tested.

Related technical notes

SPF authorization, DKIM signature verification, and DMARC alignment evaluated together during authentication diagnosisEmail Deliverability · Jun 19, 2026 · 3 min read

How to Fix SPF, DKIM, and DMARC Problems

Trace one real received message through its envelope sender, DKIM selector, alignment, and DNS before changing SPF, DKIM, or DMARC.

Technical review

Need this checked against your own sending system?

Share the domain, headers, bounces, provider warning, logs, or infrastructure symptom and NitWings will identify the practical next step.

Schedule a Technical Review
Advertisement