EmailAuthKit

Email Authentication Change Pack

Prepare a private change pack

Everything is processed locally. Use redacted evidence and never paste credentials, private keys, full message bodies or customer lists.

Your change pack will appear here.

One record for one bounded change

The pack keeps the sending inventory, current and intended public records, provider-side action, received-header assertions, human owner and exact rollback values together. It does not query or edit DNS.

Evidence is not automatically trusted

Authentication-Results fields are assertions added by receiving systems. Confirm the trusted receiver and full header context. Conflicting or absent results remain visibly unresolved.

Human approval remains mandatory

A complete pack is preparation evidence, not permission to publish. Review current provider instructions, DNS TTLs, business timing and rollback before making any production change.

Authoritative references

Read the underlying standards and provider instructions before changing production DNS: RFC 7208 (SPF), RFC 9989 (DMARC), Google Workspace SPF guidance and your sending provider's current DKIM documentation.

Publish carefully

Always verify generated records against your email provider's official documentation. Never paste private DKIM keys, DNS passwords or API tokens into a public tool.

Editorial responsibility

Published by Acerville Sparks Limited. Software assists research, drafting and automated record testing. Internet standards, provider documentation, reproducible checks and limitations are shown so readers can inspect the work. No independent deliverability consultant review is claimed. Reviewed 4 September 2026.

What this site does not do

No inbox guarantee. No live DNS checks. No storage of entered data. No passwords or private keys requested.