BIMI requires a DMARC policy set to either 'quarantine' or 'reject' for both the top-level organizational domain and all subdomains sending email. Strict enforcement of this DMARC policy is a necessity for BIMI implementation. A 'none' policy or a quarantine policy below 100% is insufficient for BIMI compliance.
8 marketer opinions
To implement BIMI successfully, a DMARC policy must be in place and enforced on both the organizational domain and all sending subdomains. The required DMARC policy level is either 'quarantine' or 'reject' (p=quarantine or p=reject). A policy of 'none' or a quarantine policy set below 100% is insufficient for BIMI compliance.
Marketer view
Email marketer from EmailonAcid shares that a DMARC policy set to either 'quarantine' or 'reject' is needed for both the organizational domain and its subdomains.
21 Apr 2025 - EmailonAcid.com
Marketer view
Email marketer from Reddit explains that for BIMI to work, you need DMARC set to quarantine or reject on your sending domain, including subdomains.
8 Jan 2023 - Reddit
2 expert opinions
BIMI requires a DMARC policy with either "reject" or "quarantine" for the top-level organizational domain and all sending subdomains. Strict enforcement of this DMARC policy is essential for BIMI compliance.
Expert view
Expert from Word to the Wise explains that BIMI requires strict enforcement. All sending domains, including subdomains, must have a DMARC record with a policy of either “quarantine” or “reject”.
28 Aug 2021 - Word to the Wise
Expert view
Expert from Email Geeks explains that BIMI requires that the registered top-level Organizational Domain and all subdomains be covered by a DMARC “reject” (or 100% “quarantine”) policy.
2 Apr 2025 - Email Geeks
3 technical articles
BIMI implementation mandates a DMARC policy of either 'quarantine' or 'reject' for both the organizational domain and all subdomains that send mail. This policy needs to be enforced at the organizational level to ensure proper BIMI compliance.
Technical article
Documentation from dmarcian outlines that for BIMI, a DMARC policy of either quarantine or reject must be in place and enforced at the organizational level, impacting all sending domains and subdomains.
8 Sep 2024 - dmarcian.com
Technical article
Documentation from BIMI Group explains that BIMI requires a DMARC policy with either 'reject' (p=reject) or 'quarantine' (p=quarantine) set for the organizational domain and any subdomains sending mail.
7 Dec 2021 - bimigroup.org
How do DMARC records on subdomains override root domain DMARC policies?
Does BIMI require DMARC at the organizational level, and can it be implemented only at the subdomain level?
Does a parent domain need BIMI for subdomain BIMI to work?
Do DMARC and BIMI require p=reject to be present on the organizational domain?
Do subdomains need their own DMARC records if the main domain has one?
How do I implement BIMI for multiple brands with subdomains?
Does BIMI trickle down to subdomains and how to control subdomain BIMI display?
Does BIMI impact email deliverability?
Should I add an explicit DMARC record for subdomains?
© 2025 Suped Pty Ltd