Aggregate reports are the feedback loop that makes DMARC usable. Set the rua= tag in your _dmarc record to one or more mailto: addresses, and participating receivers will send you a periodic summary, usually once per day, as defined in RFC 7489.
Each report is an XML document covering all mail a receiver saw claiming to be from your domain. It does not contain message content or recipient details. Instead it groups messages by sending IP address and tells you the volume, the policy applied, and the SPF and DKIM results together with whether each was aligned.
This is how you discover every system sending on your behalf, including forgotten marketing platforms and outright spoofers, before you move from p=none to enforcement. Raw XML is hard to read, so parse it into a dashboard.
To collect reports for a domain you do not own, the receiving domain must publish an authorisation record at yourdomain._report._dmarc.theirdomain. Our report analyser turns these XML files into a clear view of sources, and DMARC Engine ingests and interprets them for you as part of its done-for-you enforcement.
Check it on your domain
- DMARC Report Analyser: read a DMARC aggregate (RUA) report in plain English.
- DMARC Analyser: full DMARC, SPF and DKIM analysis with a readiness score.
- DMARC Checker: look up and validate a domain's DMARC record and policy.