Desktop DMARC Analysis

Drag in your DMARC reports.
Get answers.

Drop in your report files — zip, gz, or xml — and get a single interactive dashboard. Senders identified, spoofing flagged, fixes recommended. No subscription, no third-party servers, no configuration.

Identify
who's sending as you
·
Understand
what's failing and why
·
Resolve
with confidence
trustedmarc.co.uk — Mail Auth Dashboard
Total Messages
124,847
DMARC Pass
121,203
DMARC Fail
3,644
Senders ID'd
8
IP / Sender Messages DMARC SPF DKIM
209.85.220.41
🔵 Google Workspace
87,442
Pass
Aligned
Aligned
149.72.100.5
🟢 SendGrid
24,108
Pass
Aligned
Aligned
198.51.100.42
❓ Unknown
3,644
Fail
Fail
Fail
54.240.27.22
🟠 Amazon SES
9,653
Partial
Aligned
None
Before TrustedMARC
Inbox full of compressed XML attachments you've never opened
No idea if someone is spoofing your domain right now
Afraid to tighten DMARC policy in case you break something
Shadow IT sending as your domain, completely invisible
Stuck on p=none with no clear path forward
After TrustedMARC
Every sending IP identified by name — Google, SendGrid, Mailchimp and more
Spoofing attempts flagged automatically — country, IP, volume, failure rate
Clear view of every sender — fix auth gaps before you enforce
Unknown senders surfaced immediately — investigate or block with confidence
Actionable recommendations — a clear, prioritised path to p=reject
A different approach
Unlike cloud-based DMARC tools, TrustedMARC never touches your DNS or your report stream
Most cloud DMARC tools
Require you to change your DMARC rua= record to point reports at their servers — permanently
Your report data flows through their infrastructure indefinitely
Monthly or annual subscription — ongoing cost
Per-domain pricing that scales against you as you add clients
TrustedMARC
No DNS changes required — works with your existing rua= address
All processing happens on your machine — nothing transmitted
One-time purchase — no recurring fees
Unlimited domains on Professional licence — one price for all clients
87%
of domains have no DMARC protection
$2.7bn
lost to email fraud in 2022 (FBI)
30+
sending services identified automatically
100%
local processing — your data stays yours
Automatically identifies senders from
🔵 Google Workspace · 🔷 Microsoft 365 · 🟠 Amazon SES · 🟢 SendGrid · 🟡 Mailchimp · 🟠 Mailgun · 🔴 Zoho Mail · 🟠 HubSpot · 🟢 Klaviyo · and 25+ more
Everything you need to
understand your email security

Drop in your report files. Get one dashboard. No configuration, no ongoing subscription to a third-party service.

Sender identification

Automatically identifies Google Workspace, Microsoft 365, SendGrid, Amazon SES, Mailchimp, and 30+ others by name — not just IP address.

Spoofing detection

Flags suspicious IPs with high failure rates, single-day spikes, and total DMARC failure — so you can see who's trying to send as your domain.

Timeline analysis

See pass and fail volumes day by day. Spot the moment something changed — a new sender, a config error, or an attack beginning.

Actionable recommendations

Prioritised, specific guidance — not generic advice. Tells you exactly which records to fix, which senders to configure, and what to do next.

Geolocation and reverse DNS

Every IP is mapped to a country, city, and ISP. Hostnames resolved automatically so you know exactly where traffic originates.

Live DNS record check

Fetches your actual SPF and DMARC records at report time. Immediately see if your DNS configuration matches what your traffic data shows.

From inbox to insight
in minutes

No configuration required. No forwarding your reports to a third party. Just point it at your files.

01

Save your report files

Save the DMARC report attachments from your inbox into a folder. Mix of .zip, .gz and .xml all fine.

02

Select and run

Open the desktop app, select your folder, and click Generate Report. Progress shown in real time.

03

Review your dashboard

A full interactive HTML report opens in your browser — senders, charts, flags, recommendations, and DNS records.

04

Act on the findings

Follow the prioritised recommendations to fix authentication gaps and move towards a p=reject policy.

Before you can fix your email security,
you need to see it clearly
🎭
Is someone impersonating you?
TrustedMARC shows every IP sending email claiming to be from your domain — including ones you've never heard of. Spoofing attempts show up immediately as unknown senders with total DMARC failure.
👻
What's sending that you don't know about?
Marketing tools, CRMs, and automation platforms set up without IT's knowledge regularly appear in DMARC reports. Shadow IT sending as your domain is both a security risk and a deliverability problem.
🔧
Can you tighten security without breaking things?
Moving from p=none to p=reject without full visibility will block legitimate mail. TrustedMARC shows exactly what you'd affect — so you can fix authentication gaps before you enforce, not after.
SMBs

Small and medium businesses

You get DMARC reports every day and they sit unread in your inbox. TrustedMARC makes them understandable and actionable without needing to be an email security expert.

IT

IT managers and sysadmins

See exactly which services are sending as your domain, which are failing, and what needs fixing. Export to CSV for your records or share the HTML report with stakeholders.

MSPs

Managed service providers

Run DMARC analysis for all your clients from a single tool. Generate per-domain reports in seconds. No per-client seat fees, no uploading client data to external platforms.

Your data never leaves your machine

Most DMARC tools require you to redirect your reports to their servers permanently. TrustedMARC processes everything locally. The only external calls are optional IP geolocation lookups and DNS queries — nothing proprietary is transmitted. This matters for regulated industries, legal practices, financial services, and anyone handling sensitive communications.

What people say
Early users
★★★★★

"We'd been on p=none for over a year because we had no idea what we'd break. One report from TrustedMARC and we could see exactly which senders needed fixing. We moved to p=quarantine the same week."

James R.
IT Manager, Professional Services firm
★★★★★

"Found a marketing automation tool our sales team had set up that was sending as our domain and failing DMARC completely. Never would have known without this. Shadow IT is real."

Sarah M.
Systems Administrator, SaaS company
★★★★★

"I run DMARC analysis for about 15 clients. TrustedMARC saves me hours every month and the HTML report I can just hand straight to the client. The privacy angle is a genuine differentiator for regulated clients."

Daniel K.
Founder, IT consultancy
Testimonials are representative of early user feedback. Names changed for privacy.
Common questions
Quick answers
Does my data leave my machine?
No. TrustedMARC processes everything locally. The only external calls are optional IP geolocation lookups and DNS queries — both can be disabled. Your DMARC report files never leave your computer.
What operating systems are supported?
macOS and Windows. Both are included in every licence. The application runs as a native desktop app on both platforms with no browser or server required.
Do I need technical knowledge to use it?
No. Select your folder, click Generate Report, and read the dashboard. The Health tab explains what needs fixing in plain English. You don't need to understand DMARC, SPF, or DKIM to get value from the report.
Is this a subscription?
No. One-time payment. The software is yours with no renewal fees. Personal licences cover one machine, Professional licences cover ten machines and commercial use.
What file formats are supported?
.zip, .gz, and .xml — the three formats DMARC aggregate reports are delivered in. Drop them all into one folder, mixed formats are fine. Subfolders are scanned automatically.
What's your refund policy?
30 days, no questions asked. If TrustedMARC isn't right for you, contact support@trustedmarc.co.uk for a full refund.
Ready to understand
your email security?

TrustedMARC is currently available as a desktop application for macOS and Windows.