Measurement estimates from a single vantage point — not a compliance certification. Guidance below is for operators, not an SLA.
DNS
Dual-stack
[2] 6/6/6 [O]
Meaning: Shows how many authoritative name servers exist, and how many IPv6 endpoints are configured, responsive, and operational.
IPv4 6/6/6 · IPv6 6/6/6 · location O
| Host | IPv4 | IPv6 | Probes |
emerson.ns.cloudflare.com [O] |
172.64.35.96, 108.162.195.96, 162.159.44.96 |
2a06:98c1:50::ac40:2360, 2803:f800:50::6ca2:c360, 2606:4700:58::a29f:2c60 |
ipv4 172.64.35.96 ok; ipv4 108.162.195.96 ok; ipv4 162.159.44.96 ok; ipv6 2a06:98c1:50::ac40:2360 ok; ipv6 2803:f800:50::6ca2:c360 ok; ipv6 2606:4700:58::a29f:2c60 ok; |
elisabeth.ns.cloudflare.com [O] |
108.162.194.224, 162.159.38.224, 172.64.34.224 |
2a06:98c1:50::ac40:22e0, 2803:f800:50::6ca2:c2e0, 2606:4700:50::a29f:26e0 |
ipv4 108.162.194.224 ok; ipv4 162.159.38.224 ok; ipv4 172.64.34.224 ok; ipv6 2a06:98c1:50::ac40:22e0 ok; ipv6 2803:f800:50::6ca2:c2e0 ok; ipv6 2606:4700:50::a29f:26e0 ok; |
Mail
Dual-stack
[1 MX] v4 smtp 4/4/4 v6 smtp 4/4/4 [O]
Meaning: Shows MX footprint and SMTP health per IP family. Operational means an SMTP banner and EHLO exchange succeeded on port 25.
IPv4 SMTP 4/4/4 · IPv6 4/4/4 · location O
| Host | IPv4 | IPv6 | Probes |
discoverflow-co.mail.protection.outlook.com [O] |
52.101.41.192, 52.101.60.163, 52.101.10.18, 52.101.50.13 |
2a01:111:f403:f909::3, 2a01:111:f403:f802::, 2a01:111:f403:f90b::2, 2a01:111:f403:c946::2 |
ipv4 52.101.41.192 ok; ipv4 52.101.60.163 ok; ipv4 52.101.10.18 ok; ipv4 52.101.50.13 ok; ipv6 2a01:111:f403:f909::3 ok; ipv6 2a01:111:f403:f802:: ok; ipv6 2a01:111:f403:f90b::2 ok; ipv6 2a01:111:f403:c946::2 ok; |
Web
Dual-stack
[1] 2/2/2 [I]
Meaning: Shows IPv6 web endpoint readiness for the discovered HTTPS host. Operational means family-specific HTTPS requests complete successfully.
IPv4 2/2/2 · IPv6 2/2/2 · location I
| Host | IPv4 | IPv6 | Probes |
discoverflow.co [I] |
104.18.27.26, 104.18.26.26 |
2606:4700::6812:1a1a, 2606:4700::6812:1b1a |
ipv4 ok; ipv6 ok; |
DNSSEC
Signed
S/?/? (partial)
Meaning: Shows whether DNSKEY data is observed at the apex (signed), absent (unsigned), or unavailable due to lookup error.
Apex DNSKEY presence only — not full chain validation.
Analyze on DNSViz
DMARC
p=reject
p=reject — published organizational policy. Strongest published policy (SPF/DKIM alignment still not measured here).
Meaning: Published DMARC policy at _dmarc.discoverflow.co (DNS TXT). Shows organizational policy (p=) and subdomain policy (sp=) when set.
Record at _dmarc.discoverflow.co:
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email
Policy publication only — SPF/DKIM not measured. Not part of the 0–4 row score.
Check on dmarcian