DKIM Record Checker

DKIM signs outgoing emails. Receivers verify the signature using a public key in DNS.

DKIM lives on <selector>._domainkey.<domain>. If selector is empty, we try common ones.

Result for countertrade.biz

Found
Selector: default (TXT on default._domainkey.countertrade.biz)
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzsq72gSXFFc6ezfFnAWLOkYYY/5U3pVHa5lvs8stdIXOPEtHMF2Fdt+iDuBCp7nVDdhXREatk0pQ8Fo6LBPlJw6WgRp82OpArqGqi3/1E7yM6OVD/S6i4VbGyVPQwryiKi/5ufAsJGVUsIwCqPzEOyB2v9S5vqmMDl0Vb8e47ElUygYQzDQsQG+eBsaBWyAQBGBxJuon2Rr5vp/lBrlBuWjN0B5+DxF0K7cLmpM3NKwYM98UN45ViRxzK7vhseBUMTTrsN+J/5c9SqFaRks0xaskDDcJnFdz7s/10nIgD8Ugm+GCUngcgaJtgkH/gdkrUXSuJTrq9hI40Fcw4mgIcwIDAQAB;

FAQ

Why does DKIM require a selector?
Selectors allow rotating keys and running multiple keys per domain.
Where is DKIM published?
TXT on <selector>._domainkey.<domain>.
DKIM record exists but emails still fail DKIM?
Signing may be disabled or the selector used in email differs from DNS.
Do I need DKIM if I have SPF?
Yes, many providers use both for best deliverability and DMARC alignment.
Can I have multiple DKIM selectors?
Yes, that is common for key rotation or multiple senders.

What is DKIM?

DKIM (DomainKeys Identified Mail) adds a cryptographic signature to outgoing emails. DNS stores a public key that allows receivers to verify authenticity.

Example

v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0B...

Common mistakes

  • Wrong selector (the record exists but under a different selector).
  • Key is split incorrectly across multiple TXT chunks (some DNS UIs break it).
  • Publishing DKIM but not enabling signing on the mail provider.