DKIM Record Checker
DKIM signs outgoing emails. Receivers verify the signature using a public key in DNS.
DKIM lives on <selector>._domainkey.<domain>. If selector is empty, we try common ones.
Result for kikou-plan.com
Found
Selector: default
(TXT on default._domainkey.kikou-plan.com)
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt3YdWumeLV1eyPxOVKS7IHIFWZcbtWOidQEC4nBClyV7ABNOiXAx2gIUhGUQfNK2VoA4EvmJcaG6y+MIj9eoCnxSzp/8Iz3Y89tOcmgMp3Avd1NL9jMgg+jb+gM62wbz0NsRQcw0G236xgNDo8y7fPqvYz+hi55RjUD7z7ZaO+mAcHVp6Hizjd/1/KDDDwT/aB9u99JDl9o7D/8luyViKr5Z/YGj/F09TtK0U+2ItVewgE1SPKDCItY8evNJZYZ9XAzpspsxp5yYi6kS2EHiNcPxHV0120F7G6dPtFzVsfNx5o36IxT/9/wY8sZW9E/l4AOzmbSXaEWz1D/rtNYZUQIDAQAB;
FAQ
Why does DKIM require a selector?
Selectors allow rotating keys and running multiple keys per domain.
Where is DKIM published?
TXT on <selector>._domainkey.<domain>.
DKIM record exists but emails still fail DKIM?
Signing may be disabled or the selector used in email differs from DNS.
Do I need DKIM if I have SPF?
Yes, many providers use both for best deliverability and DMARC alignment.
Can I have multiple DKIM selectors?
Yes, that is common for key rotation or multiple senders.
What is DKIM?
DKIM (DomainKeys Identified Mail) adds a cryptographic signature to outgoing emails. DNS stores a public key that allows receivers to verify authenticity.
Example
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0B...
Common mistakes
- Wrong selector (the record exists but under a different selector).
- Key is split incorrectly across multiple TXT chunks (some DNS UIs break it).
- Publishing DKIM but not enabling signing on the mail provider.