DMARC Engine
Home/Free tools/BIMI Checker
Free tool · BIMI

BIMI Checker

Check a domain's BIMI record, logo and VMC.

Enter a domain to look up its BIMI record, check whether a logo and certificate are published, and confirm the DMARC enforcement that BIMI depends on. We read the live records straight from DNS over an encrypted connection. Nothing is stored.

The BIMI Checker looks up a domain's BIMI record, retrieves the logo it points to, and checks whether a Verified Mark Certificate (VMC) is present. BIMI (Brand Indicators for Message Identification) lets your brand logo appear next to authenticated mail in supporting inboxes. The record is a TXT entry published at default._bimi.yourdomain.com and carries a v=BIMI1 tag, an l= URL pointing to your logo, and optionally an a= URL pointing to your certificate.

Why BIMI depends on DMARC

BIMI is a reward for strong authentication, not a substitute for it. A mailbox provider will only display your logo if your domain already has a DMARC policy at enforcement (p=quarantine or p=reject) covering the whole domain. If your DMARC is still at p=none, BIMI will not display regardless of how well-formed the record is. Sorting that out first is the real work; see how we get domains to enforcement.

How to read the result and fix problems

The checker validates each component. Watch for these issues:

  • Logo format: the image must be SVG Tiny Portable/Secure (SVG Tiny-PS); ordinary SVG, PNG or JPEG will be rejected.
  • Missing VMC: Gmail and Apple Mail require a Verified Mark Certificate linked via a=; without one the logo will not show in those clients even if everything else is valid.
  • HTTPS hosting: both the logo and certificate must be served over HTTPS.
  • DMARC not enforced: this is the most common cause of a silent failure, so check your policy with our DMARC Checker.

BIMI is the final step in an authentication programme, not the first. Make sure SPF, DKIM and DMARC are solid before investing in a logo and certificate.

Frequently asked questions

Why isn't my logo showing even though the BIMI record is valid?

The most frequent cause is that DMARC is not at enforcement. Providers only display a BIMI logo when the domain publishes p=quarantine or p=reject. A record at p=none, or one that does not cover subdomains via sp=, will suppress the logo.

Do I need a VMC for BIMI to work?

For Gmail and Apple Mail, yes. They require a Verified Mark Certificate referenced by the a= tag, which proves your organisation owns the trademarked logo. Some other clients will display a logo from the l= URL alone, but coverage is limited without a VMC.

What image format does BIMI require?

The logo must be SVG Tiny Portable/Secure (SVG Tiny-PS), a restricted profile of SVG with no scripts or external references. Standard SVG exports, PNGs and JPEGs are not accepted. A square logo on a solid background works best.

Where is the BIMI record published?

It is a TXT record at default._bimi.yourdomain.com for the default selector. You can use other selectors by naming them in the BIMI-Selector header of your mail, but most senders only need the default.

Does BIMI improve deliverability?

BIMI itself is a display feature, not a deliverability signal, so it does not directly change inbox placement. Its value is brand recognition and trust, and it requires the strong DMARC enforcement that does help deliverability. Treat it as the final polish on a healthy setup.

What should I check before applying for a VMC?

Confirm your DMARC policy is at p=quarantine or p=reject, that your logo is a registered trademark, and that you have it in SVG Tiny-PS form. A VMC involves trademark verification by a certificate authority, so the groundwork should be complete first.

Written and reviewed by the DMARC Engine team · Last reviewed June 2026

See where your domain stands today

Run a free DMARC scan, then let us take you to enforced p=reject with no email outage.