Patchkit

Setup guide

Mailchimp: SPF, DKIM and DMARC

Mailchimp sends from its own return-path, so SPF doesn't align with your domain. DMARC passes through DKIM, which needs two CNAME records.

DNS records to add

CNAMEHostk2._domainkey
dkim2.mcsv.net

DKIM key 1

CNAMEHostk3._domainkey
dkim3.mcsv.net

DKIM key 2

TXTHost_dmarc
v=DMARC1; p=none; rua=mailto:<your report address>Get this value from your provider's dashboard.

DMARC policy (Mailchimp requires one for authenticated domains)

Steps

  1. In Mailchimp open Website → Domains, choose your domain and click Start authentication.
  2. Publish the two CNAME records Mailchimp shows (k2 and k3 under _domainkey).
  3. Publish a DMARC record if you don't have one, then click Authenticate Domain in Mailchimp.

Good to know

  • You don't need to add Mailchimp to your SPF record.
  • If your DNS host is Cloudflare, set both CNAMEs to DNS only (grey cloud).

Adding records at your DNS host

Cloudflare · Namecheap · GoDaddy · Amazon Route 53

Check your setup

After publishing, run the domain health check. DNS changes usually appear within minutes, but can take up to a few hours. Official reference: Mailchimp documentation.