SPF and DMARC records for proofpoint.com

Live SPF and DMARC lookup for proofpoint.com: the raw TXT records and the policy they enforce.

try:

Accepts mail
mail hosts
mxb-00148501.gslb.pphosted.com, mxa-00148501.gslb.pphosted.com, mx0a-00148501.pphosted.com, mx0b-00148501.pphosted.com
provider
proofpoint
spf record
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ip4:91.209.104.0/25 a:spf-mailers.proofpoint.com include:i.ppops.net include:_spf.atlassian.net ~all
dmarc policy
reject
dmarc record
v=DMARC1; p=reject; sp=reject; fo=1; rua=mailto:[email protected]; ruf=mailto:[email protected]
disposable domain
no
free consumer provider
no

SPF for proofpoint.com

proofpoint.com publishes an SPF record; it authorises 3 included sender lists, and the record ends in ~all (soft fail): mail from unlisted servers is marked suspicious but usually still delivered.

DMARC for proofpoint.com

proofpoint.com enforces DMARC at p=reject, so messages that fail alignment are dropped by receivers rather than delivered or quarantined. That is the end state most domains work towards.

Why it matters

Receivers use SPF, DKIM, and DMARC together to decide whether a message really came from proofpoint.com. A domain with a strict SPF record and an enforcing DMARC policy is hard to spoof and easier to deliver for; one without either is neither. Spaw reports has_spf and dmarc_policy on every lookup and adds a small risk weight when SPF is missing.

More checks for proofpoint.com

checked 2026-09-03 · sources: live-dns 2026-09-03 · disposable-domains 2026-09-02 · free-provider-domains 2026-09-02 · mx-provider-patterns 2026-09-03 · rdap-registration 2026-09-03 · Top-domain list: Majestic Million, CC BY 3.0

Need this at scale?

The Spaw API runs the same checks plus mailbox-level SMTP verification, batch and bulk endpoints, and list monitoring — 10 free lookups a month, no card required.

Get your API key