No DKIM signature keys found

Check id: dkim.none_found · fix effort: medium

What it means

We couldn't find any DKIM signing keys for your mail. Without them, receivers can't verify your messages are really yours. We checked over 100 common selector names, so if you sign with a custom one, enter it below to verify.

The technical detail

No TXT keys resolved across common selectors under _domainkey. A custom selector may still exist, which is why manual verification is offered.

How to fix it

  1. Enable DKIM signing at your mail provider (Google Workspace: Admin console → Apps → Gmail → Authenticate email; M365: Defender portal → Email authentication → DKIM).
  2. Publish the provider's key/CNAME at <selector>._domainkey.yourdomain.com.
  3. If DKIM is already active, enter your selector in the scanner to verify it.
  4. Prefer 2048-bit RSA keys.

Does your domain have this problem?

Run a free scan, takes about ten seconds.