cloudflare.com

cloudflare.com · Last checked 2026-10-04 02:01 UTC

cloudflare.com

Good, with 3 things to fix

cloudflare.com scored 76/100 (grade B). The main issues are BIMI logo is not a valid small SVG and DKIM key shorter than 2048 bits, plus 1 more. Detected senders: Google Workspace, Zendesk, Salesforce and Mandrill.

Checked 2026-10-04 02:01 UTC · fresh check

5 passed3 need attention0 failingDetected senders: Google Workspace, Zendesk, Salesforce, Mandrill

All checks

MXCan servers find your inbox?No issues foundPass

Nothing to report.

SPFWho may send as you?No issues foundPass

Nothing to report.

DKIMAre your emails signed?DKIM key shorter than 2048 bitsNeeds attention
  • Warning: DKIM key shorter than 2048 bits

    k1 (1024-bit) uses an RSA key below 2048 bits. Short keys can be factored and some receivers treat them as weak. Rotate to a 2048-bit key at your sending provider.

  • Pass: DKIM key published

    cloudflare.com publishes a DKIM key under k1, s1.

DMARCWhat happens to fakes?No issues foundPass

Nothing to report.

AlignmentDoes it match your From?No issues foundPass

Nothing to report.

BIMICan inboxes show your logo?BIMI logo is not a valid small SVGNeeds attention
  • Warning: BIMI logo is not a valid small SVG

    The file at https://www.cloudflare.com/cloudflare_1171114652.svg must be an SVG (content-type image/svg+xml) of at most 32 KB; got image/svg+xml and more than 32768 bytes.

MTA-STSIs mail to you encrypted?MTA-STS policy file is unreachableNeeds attention
  • Warning: MTA-STS policy file is unreachable

    https://mta-sts.cloudflare.com/.well-known/mta-sts.txt could not be fetched (HTTP 530). Senders cannot apply MTA-STS without the policy file, served over https with a valid certificate.

TLS-RPTWill you hear about failures?TLS-RPT is configuredPass
  • Pass: TLS-RPT is configured

    TLS reports will be sent to mailto:rua@cloudflare.com.