Someone is sending email as you.
Catch them at it.
DMARC Aide reads the aggregate reports your domain already receives and turns them into IP-level answers: who passed SPF and DKIM, who failed, and which failures are forgers rather than misconfigured services. Ask the built-in AI to investigate any suspicious IP, report confirmed offenders to AbuseIPDB in one tap, and move to p=reject with confidence.
Spoofed senders on our domain fell 98% after we adjusted the email policies of our domains thanks to DMARC Aide.
From raw XML to a decision
Aggregate reports answer the only question that matters for your domain's reputation: who is sending as you, and does their mail authenticate? DMARC Aide handles the tedious part, then helps you judge the ambiguous part.
Reports become readable
Open an aggregate report straight from a mail attachment. DMARC Aide extracts XML from .zip and .gz archives, then lays out metadata, published policy, and every record in plain view.
A local history keeps past reports at hand.
Chat with your reports
Connect the model you trust: Ollama or LM Studio running locally, or Claude, ChatGPT, Gemini, or Grok through your own API key. Ask why a record failed and get an answer grounded in the report on screen.
AI that checks before it answers
For a failing IP, the assistant runs the lookups itself: AbuseIPDB reputation, reverse DNS, and the domain's live TXT records. It weighs spoofing against misconfiguration and forwarding, asks whether the IP belongs to your own infrastructure, and explains its verdict.
Live DNS, in the app
Query SPF, DKIM, and DMARC records without leaving the report. Publish a change at your DNS provider, then verify it on the spot.
Offender IPs, ready to act on
IPs that fail authentication are collected automatically. Report one to AbuseIPDB with a tap, or export the list to CSV: everything, or only the entries you have not exported before.
Built-in guidance
A step-by-step tutorial covers publishing SPF, DKIM, and DMARC records at any DNS provider. Where reports get cryptic, the app explains the terms in plain language.
Four steps to a locked-down domain
Open a report
Aggregate reports land in your inbox as .zip or .gz attachments. Hand one to DMARC Aide from Mail, Files, or the clipboard; the XML inside is extracted and parsed automatically.
Read it at a glance
Metadata, published policy, and per-record authentication results are laid out for reading, with failures in red. Reports are kept in a local history you can return to later.
Investigate with AI
Pick a failing IP and let the assistant run AbuseIPDB, reverse-DNS, and live DNS lookups, then weigh in: forger, forwarder, or your own server with a broken DKIM key. You confirm what belongs to you; it explains the rest.
Act on it
Report confirmed offenders to AbuseIPDB in one tap, export the IP list to CSV for your firewall or SIEM, and tighten your policy toward p=reject with evidence instead of guesswork.
On iPad, it works like a Mac
Many iOS apps treat the iPad as a bigger iPhone. DMARC Aide's iPad version is built for the larger display: multi-column tables, split views, and sidebars that behave much like the Mac app. The full suspicious-IP table, side-by-side report reading, and the built-in guides all use the screen you paid for.
See DMARC Aide at Work
Own your domain's reputation.
One purchase, every platform: iPhone, iPad, Mac, and Apple Vision Pro. No subscription, no accounts, and your reports never leave your devices unless you choose a cloud model.
Version 2.1.x · $14.99 USD · Family Sharing supported
Requires iOS/iPadOS 17.5+, macOS 14+, or visionOS 1.2+ · AbuseIPDB and cloud AI features use your own API keys
Related resources
How the app works
An illustrated, step-by-step tour of DMARC Aide's report handling.
Read the guide →DMARC setup guide
Publish SPF, DKIM, and DMARC records for your domain, or a client's, at any DNS provider.
Set up your domain →Privacy in DMARC Aide
What stays on your device (everything, by default) and what leaves it only at your request.
Read the policy →DKIM, SPF and DMARC, explained
Which servers may send for your domain, how a message proves its integrity, and what happens when checks fail.
Read the article →