Human-reviewed DMARC operations for MSPs

MailAuthOps: Managed DMARC Service for MSPs

Turn DMARC aggregate reporting into an owned operating workflow: sender discovery, alignment review, remediation planning, policy-review evidence, and partner-branded client summaries.

MailAuthOps is a white-label, human-operated design-partner service. DNS and policy changes remain behind the MSP's and client's approval.

  • 10active domains
  • 30day design-partner pilot
  • 1partner-branded weekly summary

The operating gap

Turn DMARC reporting into accountable client work

Aggregate reports show sending sources, message counts, authentication results, alignment results, and reported disposition. They do not tell an MSP who owns every source or authorize a production change.

Learn how to interpret DMARC aggregate reports
01

Portfolio visibility

Review policy, aligned traffic, unresolved senders, and assigned ownership across the pilot portfolio.

02

Evidence-led policy review

Use observed traffic, closed exceptions, and named approvals to decide whether a domain is ready for policy review.

03

Client-ready reporting

Separate observed evidence, unresolved questions, owned actions, and decisions that require approval.

30-day managed DMARC pilot

A bounded engagement with a measurable finish line

The pilot establishes a working baseline and decision process for up to 10 active domains. It does not promise that every domain will reach p=reject during the pilot.

Inventory

Establish coverage

Confirm domains, reporting setup, policy, and observed sources.

Align

Review evidence

Separate authentication, alignment, known services, and gaps.

Validate

Close uncertainty

Confirm legitimate sources, owners, exceptions, and rollback needs.

Report

Record the decision

Present evidence, owned actions, blockers, and policy-review state.

Included

  • Up to 10 active domains
  • Authentication-posture baseline
  • Sender inventory and ownership register
  • Prioritized remediation queue
  • Partner-branded weekly summary
  • Two working sessions

Partner-branded report

Built for a client decision, not another security console

The fictional report separates observed evidence, inferred ownership, client confirmation, and approved action. It keeps unresolved sources visible instead of turning uncertainty into a claim.

Open the fictional sample reportSynthetic example.* domains and sample data only. No customer result is represented.
Preview of the fictional MailAuthOps DMARC operations report

Regional pricing

Fixed offers for one global service

These are fixed market prices, not live currency conversions. Pilot scope is up to 10 active domains; continued service covers up to 25 active domains per month.

MailAuthOps regional pilot and monthly pricing
Market30-day pilotMonthly service
IndiaINR 9,900INR 14,900
United StatesUSD 199USD 299
United KingdomGBP 149GBP 229
AustraliaAUD 299AUD 449
EU/EEAEUR 179EUR 269
Rest of worldUSD 199USD 299

Applicable taxes and final scope are confirmed before booking or payment.

Common questions

What MSP partners need to know

Is MailAuthOps a self-service DMARC analyzer?

No. MailAuthOps is a managed operating service. It does not currently offer a public checker, validator, generator, or analyzer.

Does the MSP keep the client relationship?

The proposed service is white-label and partner-branded, with the MSP retaining the client relationship. Final delivery responsibilities are confirmed in the pilot agreement.

Can every domain reach quarantine or reject in 30 days?

No such timeline is promised. Evidence, legitimate senders, exceptions, and authorized approval must be resolved first.

Will MailAuthOps change DNS automatically?

No. Proposed records and policy decisions remain behind explicit approval before any production or customer-impacting change.

What does the MSP need to provide?

A technical owner, access to the relevant DNS and sending-service administrators, and timely sender-authorization decisions.

Does an aggregate report prove a source is malicious?

No. It provides authentication, alignment, disposition, identifiers, source, and count data. Ownership and intent need separate investigation and confirmation.

15-minute fit check

Bring one client portfolio. Leave with a pilot decision.

Bring the approximate number of client domains, the current reporting workflow, and one operational problem you need to solve. No credentials or production changes are required.