cloudflare.com
Good, with 3 things to fix
cloudflare.com scored 76/100 (grade B). The main issues are BIMI logo is not a valid small SVG and DKIM key shorter than 2048 bits, plus 1 more. Detected senders: Google Workspace, Zendesk, Salesforce and Mandrill.
Checked 2026-10-04 02:01 UTC · fresh check
All checks
MXCan servers find your inbox?No issues foundPass
Nothing to report.
SPFWho may send as you?No issues foundPass
Nothing to report.
DKIMAre your emails signed?DKIM key shorter than 2048 bitsNeeds attention
- Warning: DKIM key shorter than 2048 bits
k1 (1024-bit) uses an RSA key below 2048 bits. Short keys can be factored and some receivers treat them as weak. Rotate to a 2048-bit key at your sending provider.
- Pass: DKIM key published
cloudflare.com publishes a DKIM key under k1, s1.
DMARCWhat happens to fakes?No issues foundPass
Nothing to report.
AlignmentDoes it match your From?No issues foundPass
Nothing to report.
BIMICan inboxes show your logo?BIMI logo is not a valid small SVGNeeds attention
- Warning: BIMI logo is not a valid small SVG
The file at https://www.cloudflare.com/cloudflare_1171114652.svg must be an SVG (content-type image/svg+xml) of at most 32 KB; got image/svg+xml and more than 32768 bytes.
MTA-STSIs mail to you encrypted?MTA-STS policy file is unreachableNeeds attention
- Warning: MTA-STS policy file is unreachable
https://mta-sts.cloudflare.com/.well-known/mta-sts.txt could not be fetched (HTTP 530). Senders cannot apply MTA-STS without the policy file, served over https with a valid certificate.
TLS-RPTWill you hear about failures?TLS-RPT is configuredPass
- Pass: TLS-RPT is configured
TLS reports will be sent to mailto:rua@cloudflare.com.