SPF passed.
DMARC failed. Why?
Paste headers and find out why DMARC failed when SPF passed.
The method, not the marketing.
Plenty of tools parse email headers. Almost none answer the question people actually have, which is why DMARC failed on a message where SPF and DKIM both reported a pass.
The answer is nearly always alignment. SPF authenticates the envelope sender and DKIM authenticates the signing domain, but DMARC additionally requires that one of those aligns with the domain in the visible From header — the one the recipient sees. Send from your own address through a provider that signs with its own key and bounces to its own return-path, and you get two passes and a DMARC failure.
Everything is parsed in your browser. Headers contain recipient addresses and internal hostnames, so this one genuinely should not be uploaded anywhere.
Bring your provider.
Keep your brands distinct.
Start today.
Set up your first workspace, connect a provider, and publish a workflow — free, in test mode, before you pay a thing.