Powered by
Contact us


Email Spoof Test Panel

Toolbox

Need some help?
Free Email Help
*Scheduled session*
*Email experts*
No credit card needed
Used all your tests?
Try 30 days Free
*Unlimited Testing*
*Advanced Tools*
No credit card needed


Test & Grade: Email Security

find email vulnerabilities | fix email vulnerabilities | stop phishing and BEC threats | learn email security

Assess posture & risk, tune to best practices, and validate email security effectiveness against sophisticated email attacks.
Safe, Private, Fast, Effective: Required to align with: NIST 800-177R1, NIST TN 1945, BOD 18-01, and Cyber Insurance.



Graphic above: Diagnostic test emails E1-E10 are sent to your testing inbox. When email security is configured correctly the test email E1 is received to the inbox and test emails E2-E10 are rejected. E1 must be received to be considered a valid test.



What is does: The diagnostic test below sends safe plain text, ordinary emails from a disallowed email sender. The test quickly and accurately determines if your email security can distinguish between real and fake email. This diagnostic testing provides a fully guided self-assessment with help to fix the issues and severity scoring is used to determine risk and posture based on real results. The resulting report card is often used to reduce cyber insurance costs or as "3rd Party Attestation" for B2B contracts.

How it works: The test works because the sending domains of these test emails are configured with email policies that instruct your receiving email server to reject the test emails. This test will determine if your receiving email servers enforce security policies that determine if an email is real or fake.

Why its important: Email is the most abused mission-critical platform and is the main way "ransomware gangs" enter a business (called BEC attacks) Email misconfigurations can allow fraudulent email into the inbox, only needing to trick just ONE trusting user into launching ransomware. DNS and email servers are often misconfigured, patched, updated, or broken out of our control and without notice opening holes in email security, so it is important to test every day.

Email is mission critical: We recommend every business use this tool at least every week, on us for free! No credit card or signup, just real security testing that anyone can do. Try a test, if you like the tool please consider helping us to build improvements and new tools by buying a pass for unlimited testing and access to use the advanced tools. If you need support reach out and let us know. We also provide an Email Optimization Service where we secure and tune email security for you.



Ready to test? Enter your email below and click the Test button to begin;


This
automatedI'm a security robot named Archer, designed to test email security services, determine risk, diagnose misconfigurations, and generate guidance to solve any issues.
assessmentI test your email security controls by sending you 1 valid notification email and 9 diagnostic emails (all harmless and clearly marked) that your email system should reject completely.

If you get any of the test emails then you know you have an issue.

In this test you can see the detailed results and tips that help you understand the severity of any email security holes found and also provides guidance to correct the issue.
grade
Enter an email address then click test
to get a report like this for your email domain
pic of grades
s the ability to defend against email attacks:

     1) 
Look-a-likeLook-a-like Attack: These are emails coming from addresses that look like valid email domains but are non-existing domains or use invalid characters
attack
     2) 
BECBEC: These are emails coming from addresses that look like valid email addresses from within your company.
reply-chain, fake insider attack
     3) 
Fake-SubdomainFake-Subdomain Attack: These emails appear to come from a subdmain of a valid email domain.
attack
     4) 
DomainDomain Attack: These are emails that impersonate a valid email domain
attack
     5) 
SubdomainDomain Attack: These are emails that impersonate a valid email subdomain
attack


Enter an email address you have access to, then click test to
tryFree limitations:
Come back for limited free tests every month.

Testing daily is best practice.
a security
assessmentI test your email security controls by sending you 1 valid notification email and 9 diagnostic emails (all harmless and clearly marked) that your email system should reject completely.

If you get any of the test emails then you know you have an issue.

In this test you can see the detailed results and tips that help you understand the severity of any email security holes found and also provides guidance to correct the issue.
and
grade
Enter an email address then click test
to get a report like this for your email domain
pic of grades
email fraud protections

We will only send you email as part of a test.
We do not share your email with anyone.

 

  enter an email to
grade
Enter an email address then click test
to get a report like this for your email domain
pic of grades

 







( Limited Access )








 

---ads by google---


 

---ads by google---


 

---ads by google---