Organisation

Alerting: get an email when something changes

You won't look at the dashboard every day. Alerts are how DMARCS taps you on the shoulder when something actually needs you.

Where to find it
Organization → Alerting

Create an alert

  1. Click New Alert and give it a name.
  2. Pick a trigger type

    Some triggers need a threshold; the rest fire on the event itself.

    TriggerFires whenThreshold
    Auth Rate DropYour DMARC pass rate falls below a percentage1 to 100%
    Volume SpikeMail volume jumps by more than a percentage1 to 1000%
    Cert ExpiryA monitored certificate has fewer than N days left1 to 365 days
    New Forwarder DetectedA new forwarding source appearsNone
    DNS Record ChangeOne of your monitored DNS records changesNone
    Blacklist HitOne of your sending IPs lands on a blacklistNone
    DMARC DowngradeYour policy is loosened (for example reject → none)None
    MTA-STS BrokenYour MTA-STS policy stops resolvingNone
    SPF Lookup LimitYour SPF record approaches the 10-lookup ceilingNone
    New SubdomainA subdomain you haven't seen before appearsNone
  3. Save

    Your alerts are listed under the form with their trigger, threshold and when they last fired (or "Never Triggered"). Edit or delete any of them there.

Where alerts go

Alerts are sent by email. There is no per-alert channel choice. To also post them into a chat channel or open a ticket, set up the Microsoft Teams or ConnectWise PSA integration.

Two alerts worth creating on day one: DMARC Downgrade, so nobody quietly weakens your policy, and SPF Lookup Limit, so you hear about a record creeping toward the ceiling before mail starts failing.

Still need a hand?

Email support@dmarcs.com, call +971 4 240 4441, or open a ticket from Support inside the app.

Contact Support