---
title: "Domain checks"
description: "The public mail records of any domain."
url: "https://openemail.uk/docs/mcp/tools/domain-checks"
area: "MCP server"
category: "Tools"
---

# Domain checks

The public mail records of any domain.

## Domain checks tools

| Tool | What it does |
| --- | --- |
| checkDmarc | What the DMARC record of any domain says: how strict it is, every tag, the parent domain it inherits from and what is wrong with it. |
| checkBimi | Whether inboxes can draw the logo a domain publishes, with the logo, its mark certificate, the DMARC policy beside it and what stops it showing. |
| checkDeliverability | MX, SPF, DKIM, DMARC and BIMI for any domain, each pass, warn, fail or absent with a verdict, weighed into a score out of 100 and a grade from A to F. |

> These are the free checkers on the OpenEmail website. They read public DNS and nothing in the workspace, so they need no permission and work on any domain, not only yours.

> Every answer is what DNS said at that moment. A result that starts `Refused (unreachable):` means DNS did not answer, and is worth trying again.

## Reference

### `checkDmarc`

Read any domain's DMARC record from public DNS, as the DMARC checker on the OpenEmail website does: how strict it is (missing, invalid, monitor for p=none, quarantine or reject), every tag, the parent domain it inherits from, and what is wrong with it.

- No scope.
- The app's assistant runs it without asking.
- Toolkit: `workspace`.

**Inputs**

- `domain` (`string`, required, 1 to 320 characters): The domain, such as acme.com. An email address or a URL is read as its domain.

Also available in: API [`GET /tools/dmarc`](https://openemail.uk/docs/api/reference/tools#get-tools-dmarc); SDK [`tools.checkDmarc()`](https://openemail.uk/docs/sdk/reference/tools#checkDmarc).

### `checkBimi`

Read any domain's BIMI record, fetch the logo it names and check the DMARC policy beside it, as the BIMI checker on the OpenEmail website does. Inboxes draw a logo only at p=quarantine or p=reject, and the issues say what stops it showing.

- No scope.
- The app's assistant runs it without asking.
- Toolkit: `workspace`.

**Inputs**

- `domain` (`string`, required, 1 to 320 characters): The domain, such as acme.com. An email address or a URL is read as its domain.

Also available in: API [`GET /tools/bimi`](https://openemail.uk/docs/api/reference/tools#get-tools-bimi); SDK [`tools.checkBimi()`](https://openemail.uk/docs/sdk/reference/tools#checkBimi).

### `checkDeliverability`

Check whether mail from any domain is set up to be trusted, as the deliverability checker on the OpenEmail website does: MX, SPF, DKIM, DMARC and BIMI, each pass, warn, fail or absent with a verdict, weighed into a score out of 100 and a grade from A to F.

- No scope.
- The app's assistant runs it without asking.
- Toolkit: `workspace`.

**Inputs**

- `domain` (`string`, required, 1 to 320 characters): The domain, such as acme.com. An email address or a URL is read as its domain.

Also available in: API [`GET /tools/deliverability`](https://openemail.uk/docs/api/reference/tools#get-tools-deliverability); SDK [`tools.checkDeliverability()`](https://openemail.uk/docs/sdk/reference/tools#checkDeliverability).
