ColdOps
Free tool

Will your domain reach the inbox?

The free deliverability checker for cold email: SPF, DKIM, DMARC, MX, blacklists, and domain age in seconds — with the exact DNS records to fix what fails. No signup.

No signup required Instant results Copy any record

What each check means

Mailbox providers use these signals to decide whether your email reaches the inbox or the spam folder. Here's what each one is, why it matters, and what a fail costs you.

SPF — Sender Policy Framework
A DNS record listing which services are allowed to send email for your domain. Receivers use it to confirm the sender is really you. No SPF is one of the fastest routes to spam — fix it by publishing a single TXT record for your sending provider.
DKIM — DomainKeys Identified Mail
A cryptographic signature on every email so receivers can verify it wasn't altered in transit. Google and Microsoft treat unsigned bulk mail as suspect, and unsigned mail fails DMARC alignment — so enable DKIM in your mailbox provider and publish the key it gives you.
DMARC — Domain-based Message Authentication
Tells receivers what to do when SPF or DKIM fail, and gives you reporting on who's sending as your domain. Since 2024, Google and Yahoo require it from bulk senders — no DMARC, no inbox. Start with a monitoring-only p=none policy, then tighten it once your reports are clean.
MX — Mail Exchange
The records that say where your domain receives mail. Without them, every reply bounces — and mailbox providers treat send-only domains as suspicious, which a cold-email domain can't afford. Fix by adding your provider's MX records.
Blacklists — Spamhaus DBL & SURBL
Reputation lists that flag domains tied to spam. A single listing can silently kill every campaign on the domain. If you're listed, pause sending, fix the underlying cause, then request delisting — no DNS change helps while you're on a list.
Domain age & expiry
Receivers distrust brand-new domains, so anything under 30 days needs slow, careful warmup — blast on day one and you burn it. We also flag the registration expiry date: an expired domain takes every mailbox, DNS record, and campaign down at once, so renew early and turn on auto-renew.

Fix what fails, right here

When a check fails, the report generates the exact DNS record to add — type, host, and value, ready to paste into Cloudflare, GoDaddy, or Namecheap — plus the steps to verify it. Re-check the domain once DNS propagates to confirm you're green.

Example — a domain missing SPF:

No SPF recordv=spf1 include:_spf.google.com ~all
Type
TXT
Host / Name
@ (the root domain)
Value
v=spf1 include:_spf.google.com ~all
  1. 1Open your DNS host — wherever the domain is managed (Cloudflare, GoDaddy, Namecheap, Google Domains), not your email tool.
  2. 2Add a new record with the Type, Host, and Value above. Leave TTL on automatic.
  3. 3Save, then re-check the domain here — DNS can take a few minutes to a few hours to propagate.

One check is a snapshot. ColdOps watches every client domain daily.

Free forever for your first workspace · no card required