cpqld.com.au email security: SPF, DKIM & DMARC

Is cpqld.com.au spoofable? See cpqld.com.au's SPF, DKIM, DMARC and MTA-STS records and find out if this domain is protected against email spoofing.

Last updated: September 26, 2026

33D
This domain is vulnerable to spoofing

SPF

Warning
v=spf1 include:spf.protection.outlook.com ip4:103.255.31.0/24 ip6:2001:df1:6800:3::73 ~all
Read the guide

DKIM

Missing

No record found

Read the guide

DMARC

Warning
v=DMARC1; p=none
Read the guide

MX

OK
cpqld-com-au.mail.protection.outlook.com

MTA-STS

Missing

No record found

Read the guide

Recommendations

  1. 1Change your DMARC policy from p=none to p=reject to block spoofing

    With p=none, your DMARC record only monitors — it doesn't actually block spoofed emails. Attackers can still send emails as your domain and they'll be delivered normally. Switching to p=reject instructs receiving servers to drop fraudulent messages before they reach the inbox.

  2. 2Add rua=mailto:dmarc@yourdomain to your DMARC to receive reports

    Without DMARC reporting (rua=), you have no visibility into who is sending email on behalf of your domain. Aggregate reports let you detect spoofing attempts, identify misconfigured legitimate senders, and confidently tighten your policy over time.

  3. 3Harden your SPF by replacing ~all with -all (hardfail)

    With ~all (softfail), unauthorized senders are flagged but emails are usually still delivered. Switching to -all (hardfail) explicitly tells receiving servers to reject emails from unauthorized sources, providing much stronger protection against spoofing.

  4. 4Enable DKIM in your email provider and add the public key to your DNS zone

    DKIM adds a cryptographic signature to your emails, proving they haven't been tampered with in transit and genuinely originated from your domain. Without it, attackers can forge emails that pass basic checks, and your legitimate emails are more likely to land in spam.

  5. 5Add MTA-STS to enforce TLS encryption for incoming emails

    Without MTA-STS, an attacker performing a man-in-the-middle attack can downgrade the connection between mail servers to plaintext, intercepting emails in transit. MTA-STS tells sending servers to only deliver via TLS with a valid certificate, preventing downgrade attacks.

Your domain can be spoofed today

Anyone can send email pretending to be you. Fix it with a tool that sets up SPF, DKIM and DMARC and keeps the protection enforced.

Protect my domain

Partner link — we may earn a commission.

Run a live analysis

The results above are updated daily. For an instant check of cpqld.com.au, run a live analysis.

Analyze cpqld.com.au live

Badge for your website

Display your email security score on your website.

SpoofCheck badge for cpqld.com.au
<a href="https://spoofchecker.online/en/email-security/cpqld.com.au" target="_blank" rel="noopener"><img src="https://spoofchecker.online/api/badge/cpqld.com.au?score=33&grade=D" alt="Email security score for cpqld.com.au" height="28"></a>

Frequently asked questions about cpqld.com.au

Is cpqld.com.au spoofable?

Yes. cpqld.com.au does not enforce a strong DMARC policy, so attackers may be able to send emails that appear to come from cpqld.com.au. Email security score: 33/100 (grade D).

Does cpqld.com.au have an SPF record?

Yes, cpqld.com.au publishes an SPF record (~all qualifier).

What is cpqld.com.au's DMARC record?

cpqld.com.au publishes a DMARC record (_dmarc.cpqld.com.au) with a p=none policy.

Does cpqld.com.au use DKIM?

No common DKIM selector was detected for cpqld.com.au among those checked.

Want to test another domain? Run a free email spoofing test.

Guides to understand these results

Check other domains