Suped

Does BIMI require DMARC at the organizational level, and can it be implemented only at the subdomain level?

Summary

The implementation of Brand Indicators for Message Identification (BIMI) is a key step in enhancing email sender identity and trust. A common question arises regarding the necessity of a DMARC policy at the organizational domain level and the feasibility of implementing BIMI solely on a subdomain. While BIMI records themselves can be published at the subdomain level, a robust DMARC policy at the organizational domain is a prerequisite for BIMI adoption, ensuring all relevant domains are protected.

Suped DMARC monitor
Free forever, no credit card required
Get started for free
Trusted by teams securing millions of inboxes
Company logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logoCompany logo

What email marketers say

Email marketers often approach BIMI implementation with a focus on brand visibility, sometimes overlooking the underlying DMARC requirements. Their discussions frequently revolve around practical challenges, such as convincing IT teams to make necessary DNS changes, and the perceived complexity of authentication protocols. Marketers are keen to understand the minimum requirements to display their logos, especially across major mailbox providers.

Marketer view

Marketer from Email Geeks emphasizes the importance of DMARC being properly configured for a domain to enable BIMI. They had encountered issues where their IT team was hesitant to make changes, fearing an impact on corporate email accounts, despite the necessity for BIMI to function correctly.

14 Jun 2021 - Email Geeks

Marketer view

Marketer from Dotdigital mentions that if a custom from address uses a subdomain, the top-level organizational domain must also have DMARC implemented with an enforcing policy. This ensures full compliance and proper operation of BIMI.

10 Mar 2024 - Dotdigital

What the experts say

Email deliverability experts consistently affirm that DMARC is a non-negotiable prerequisite for BIMI, requiring an enforcing policy at the organizational domain. They emphasize the technical specifics of DNS record placement and propagation, often drawing on real-world examples and diagnostic tools. Experts also shed light on the nuances of subdomain policies and the varying levels of support for BIMI features across different mailbox providers.

Expert view

Expert from Email Geeks states that DMARC must be configured at the organizational level to support BIMI. This is a foundational requirement to ensure proper email authentication before a brand's logo can be displayed.

14 Jun 2021 - Email Geeks

Expert view

Expert from Word to the Wise confirms that while BIMI records can be published on subdomains, the overarching DMARC policy for the organizational domain must be enforcing. They provide tools to check live DNS records and avoid stale results, crucial for accurate verification.

10 Jul 2023 - Word to the Wise

What the documentation says

Official documentation from organizations like the BIMI Group clearly outlines the technical requirements for BIMI implementation, with a strong emphasis on DMARC. These specifications detail the necessity of an enforcing DMARC policy at the organizational domain and provide guidelines for publishing BIMI records, including considerations for subdomain deployments. Adherence to these guidelines is crucial for universal BIMI display across supporting email clients.

Technical article

Documentation from BIMI Group clarifies that BIMI leverages the existing DMARC protocol. It ensures that email messages pass DMARC authentication checks before any brand-controlled logos are displayed, reinforcing the critical role of DMARC.

20 Aug 2020 - BIMI Group

Technical article

Documentation from Resend states that for BIMI to be recognized on a subdomain, the root or APEX domain must also have a DMARC policy of p=quarantine or p=reject in addition to any subdomain-specific policy. This confirms the hierarchical nature of DMARC requirements.

15 Sep 2023 - Resend

14 resources

Start improving your email deliverability today

Get started