legifrance.gouv.fr email security: SPF, DKIM & DMARC
Is legifrance.gouv.fr spoofable? See legifrance.gouv.fr's SPF, DKIM, DMARC and MTA-STS records and find out if this domain is protected against email spoofing.
Last updated: August 8, 2026
DMARC
Warningv=DMARC1; p=none; rua=mailto:agregat_dmarc@dila.gouv.fr; ruf=mailto:forensic_dmarc@dila.gouv.fr; fo=0; adkim=r; aspf=r; rf=afrf; sp=noneMX
OKrelay1-c.dila.fr, relay2-c.dila.frRecommendations
1Change your DMARC policy from p=none to p=reject to block spoofing
With p=none, your DMARC record only monitors — it doesn't actually block spoofed emails. Attackers can still send emails as your domain and they'll be delivered normally. Switching to p=reject instructs receiving servers to drop fraudulent messages before they reach the inbox.
2Harden your SPF by replacing ~all with -all (hardfail)
With ~all (softfail), unauthorized senders are flagged but emails are usually still delivered. Switching to -all (hardfail) explicitly tells receiving servers to reject emails from unauthorized sources, providing much stronger protection against spoofing.
3Enable DKIM in your email provider and add the public key to your DNS zone
DKIM adds a cryptographic signature to your emails, proving they haven't been tampered with in transit and genuinely originated from your domain. Without it, attackers can forge emails that pass basic checks, and your legitimate emails are more likely to land in spam.
4Add MTA-STS to enforce TLS encryption for incoming emails
Without MTA-STS, an attacker performing a man-in-the-middle attack can downgrade the connection between mail servers to plaintext, intercepting emails in transit. MTA-STS tells sending servers to only deliver via TLS with a valid certificate, preventing downgrade attacks.
Need help securing your domain?
If you're not sure how to apply these fixes, get in touch and we'll help you out.
Contact usRun a live analysis
The results above are updated daily. For an instant check of legifrance.gouv.fr, run a live analysis.
Analyze legifrance.gouv.fr liveBadge for your website
Display your email security score on your website.
<a href="https://spoofchecker.online/en/email-security/legifrance.gouv.fr" target="_blank" rel="noopener"><img src="https://spoofchecker.online/api/badge/legifrance.gouv.fr?score=38&grade=D" alt="Email security score for legifrance.gouv.fr" height="28"></a>Frequently asked questions about legifrance.gouv.fr
Is legifrance.gouv.fr spoofable?
Yes. legifrance.gouv.fr does not enforce a strong DMARC policy, so attackers may be able to send emails that appear to come from legifrance.gouv.fr. Email security score: 38/100 (grade D).
Does legifrance.gouv.fr have an SPF record?
Yes, legifrance.gouv.fr publishes an SPF record (~all qualifier).
What is legifrance.gouv.fr's DMARC record?
legifrance.gouv.fr publishes a DMARC record (_dmarc.legifrance.gouv.fr) with a p=none policy.
Does legifrance.gouv.fr use DKIM?
No common DKIM selector was detected for legifrance.gouv.fr among those checked.
Want to test another domain? Run a free email spoofing test.
Guides to understand these results
SPF Guide
Understand how SPF defines which servers are authorized to send emails for a domain.
DKIM Guide
Discover how DKIM cryptographically signs your emails to guarantee their authenticity.
DMARC Guide
Learn how DMARC orchestrates SPF and DKIM to protect your domain.
MTA-STS Guide
Learn how MTA-STS enforces TLS encryption to protect your emails in transit.
SPF vs DKIM vs DMARC
Compare the three protocols and understand how they work together.