Skip to content

Deliverability · DMARC

See who sendsas your domain.

Norbelys collects DMARC aggregate reports, lists every sending source and shows SPF/DKIM alignment so you can fix authentication before moving from observation to enforcement.

What it does

Four jobs. One domain workspace.

  1. 01

    Collects receiver reports

    Gmail, Outlook and Yahoo send daily aggregate reports about mail claiming your domain. Norbelys collects them, parses the XML and shows the result in the domain workspace.

  2. 02

    Lists who sends as you

    Every sending source appears with volume, SPF alignment, DKIM alignment and overall compliance. Owned infrastructure, known services, forwarders and unidentified IPs stay visible.

  3. 03

    Names the fix

    Failures come with a concrete next step — which include to add, which DKIM key to generate, or whether the traffic should stay failing while you climb the policy.

  4. 04

    Shows the policy path

    The workspace shows the path from p=none → quarantine → reject and when legitimate sources are clean enough to move.

How it works

From one DNS record to a readable domain view.

  1. 01

    Connect reporting

    Add the domain. Publish or merge the provided rua address into your DMARC TXT record.

  2. 02

    Reports arrive

    Receivers send aggregate XML to report.norbelys.com. Status moves from waiting to collecting when the first digest arrives.

  3. 03

    Read and act

    Sources, pass rate, SPF/DKIM alignment and findings update in the domain view. You decide what to fix before changing policy.

Policy path

Watch first. Enforce when the sources are clean.

The product presents the progression clearly. You choose when to move; the numbers show whether it is safe.

  1. p=none

    Watch

    Observe. Nothing is blocked. Learn every source claiming the domain.

  2. p=quarantine

    Quarantine

    Failing mail is treated as spam. Move here once legitimate senders stay aligned.

  3. p=reject

    Reject

    Receivers refuse failing mail. Use after a stable stretch of clean aligned sending.

Product facts

What the monitoring view is built from.

Evidence
Aggregate DMARC XML from participating mailbox providers — not message content.
Authentication
SPF alignment, DKIM alignment, overall compliance and the published policy.
Sources
IP, volume, classification and authentication domains stay inspectable.
Included
DMARC monitoring ships with Norbelys plans from $29/mo.

Questions

Straight answers.

What does DMARC monitoring do in Norbelys?

It collects aggregate reports from mailbox providers and turns them into a domain view: volume, SPF/DKIM alignment, compliance, sources and plain-language findings.

How do reports get into Norbelys?

Norbelys gives the domain an aggregate-reporting address. You add it to the DMARC TXT rua field. Receivers send XML there; Norbelys processes it.

Does it read email content?

No. Aggregate reports cover authentication outcomes, source IPs, counts and disposition — not the email body.

When should I move to quarantine?

After legitimate senders are identified and consistently aligned. The domain view shows pass rate and failing sources so that decision is evidence-based.

Is this included or an add-on?

Yes. Source classification, authentication breakdowns and domain diagnostics are part of the plan — not a separate DMARC product.

Add the reporting record. Read the sources.

DMARC monitoring is included with Norbelys from $29/mo. No separate DMARC subscription.

Monitor a domain