SpamAssassin rule
SPF_FAIL
SPF fails (hard fail)
+0.919 points
Header test
What SPF_FAIL means
The sending server is not in the SPF record of the envelope sender's domain, and the record ends in -all, so receivers are told to reject it.
The rule's description in SpamAssassin: “SPF: sender does not match SPF record (fail)”
How to fix it
Add the service that sent this email to your SPF record, usually with an include such as include:_spf.google.com or include:sendgrid.net. Check the record with the SPF checker afterwards.
Does your email trigger SPF_FAIL?
Send it to a free test address: we run SpamAssassin, check SPF, DKIM and DMARC and show every rule with a fix.
Open the email spam checkerRelated rules
ARC_INVALIDARC signature is invalid
DKIM_ADSP_ALLDomain says it signs all mail, but this message is unsigned
DKIM_ADSP_DISCARDDomain asks to discard unsigned mail
DKIM_ADSP_NXDOMAINFrom domain does not exist
DKIM_INVALIDDKIM signature is invalid
DKIM_SIGNEDMessage is DKIM-signed
DKIM_VALIDValid DKIM signature
DKIM_VALID_AUDKIM signature from your own domain
DKIM_VALID_EFDKIM signature from the envelope sender's domain
Frequently asked questions
What does SPF_FAIL mean?
The sending server is not in the SPF record of the envelope sender's domain, and the record ends in -all, so receivers are told to reject it.
How do I fix SPF_FAIL?
Add the service that sent this email to your SPF record, usually with an include such as include:_spf.google.com or include:sendgrid.net. Check the record with the SPF checker afterwards.
How many points does SPF_FAIL add?
0.919 points in the default SpamAssassin ruleset (network tests on, Bayes off). A message is treated as spam from 5.0 points. Mail servers can change scores locally.