Patchkit

Setup guide

Brevo: SPF, DKIM and DMARC

Brevo (formerly Sendinblue) authenticates with a verification code and two DKIM CNAME records, and asks for a DMARC record.

DNS records to add

TXTHost@
<brevo-code:… value from Brevo>Get this value from your provider's dashboard.

Domain ownership verification

CNAMEHostbrevo1._domainkey
<b1 target from Brevo>Get this value from your provider's dashboard.

DKIM key 1

CNAMEHostbrevo2._domainkey
<b2 target from Brevo>Get this value from your provider's dashboard.

DKIM key 2

TXTHost_dmarc
v=DMARC1; p=none; rua=mailto:<your report address>Get this value from your provider's dashboard.

DMARC policy and reports

Steps

  1. In Brevo open Senders, Domains & Dedicated IPs → Domains → Authenticate this email domain.
  2. Publish the records Brevo lists and click Authenticate.

Good to know

  • If your DNS host is Cloudflare, set the DKIM CNAMEs to DNS only (grey cloud).

Adding records at your DNS host

Cloudflare · Namecheap · GoDaddy · Amazon Route 53

Check your setup

After publishing, run the domain health check. DNS changes usually appear within minutes, but can take up to a few hours. Official reference: Brevo documentation.