Email deliverability depends on properly configured email authentication records. In cPanel, you can check the email authentication status of your domain and obtain the required SPF, DKIM, and DMARC records from the Email Deliverability section.
Why Are SPF, DKIM, and DMARC Important?
SPF, DKIM, and DMARC are important email authentication methods that help improve the security and deliverability of your emails.
-
SPF (Sender Policy Framework): Specifies which mail servers are authorized to send emails on behalf of your domain. This helps prevent unauthorized servers from sending emails using your domain.
-
DKIM (DomainKeys Identified Mail): Adds a digital signature to outgoing emails. Receiving mail servers can use the DKIM record to verify that the email was authorized by your domain and has not been altered.
-
DMARC (Domain-based Message Authentication, Reporting, and Conformance): Works with SPF and DKIM to help receiving mail servers determine how to handle emails that fail authentication. It also helps protect your domain from email spoofing and impersonation.
Properly configured SPF, DKIM, and DMARC records can help reduce the chances of legitimate emails being rejected or delivered to spam, while also improving protection against unauthorized use of your domain.
How to Check Email Deliverability
-
Log in to your cPanel account.
-
Go to the Email section.
-
Click Email Deliverability.
-
You will see a list of domains associated with your cPanel account.
-
Locate the domain for which you want to check email deliverability.
-
Check the status shown for the domain.
-
Click Manage next to the required domain to view the email authentication records.
How to Get the SPF Record
After clicking Manage:
-
Locate the SPF section.
-
cPanel will display the current SPF record and, if required, a Suggested SPF Record.
-
Click Copy to copy the SPF record's Name and Value.
-
If your DNS is managed outside the cPanel server, add these values to your DNS provider.
-
Make sure there is only one SPF TXT record for the domain.
How to Get the DKIM Record
-
On the Manage page, locate the DKIM section.
-
Check the current DKIM record.
-
If cPanel reports a problem, look for the Suggested DKIM (TXT) Record.
-
Click Copy to copy the DKIM record's Name and Value.
-
Add the record to your DNS provider if your domain's DNS is managed elsewhere.
Important: Never share the DKIM private key. Only the DKIM public DNS record should be added to your domain's DNS.
How to Get the DMARC Record
-
On the Manage page, locate the DMARC section.
-
Check whether a DMARC record already exists.
-
If cPanel provides a Suggested DMARC Record, copy the Name and Value.
-
Add the record to your DNS provider if your domain's DNS is managed outside the cPanel server.
If Your DNS Is Managed Outside the Server
If your domain uses external nameservers, the SPF, DKIM, and DMARC records obtained from cPanel may need to be added manually at your DNS provider.
After adding or updating the records, allow some time for DNS changes to propagate. Then return to:
cPanel → Email → Email Deliverability
and check the status again.
Summary
For reliable and secure email delivery, it is recommended to have:
-
SPF — Authorizes your email sending servers.
-
DKIM — Authenticates and verifies outgoing email.
-
DMARC — Helps protect your domain from spoofing and manages authentication failures.
Note: The exact SPF, DKIM, and DMARC values are different for each domain and mail configuration. Always use the values provided by cPanel rather than copying records from another domain.
