Suped

Summary

Recently, some email senders observed that their Brand Indicators for Message Identification (BIMI) logos and associated blue checkmarks had disappeared from Gmail inboxes. This temporary disappearance caused concern among marketers relying on BIMI for brand visibility and trust. The issue was not a permanent removal of BIMI by Google but rather a temporary pause in its display and validation, enacted to address a specific security vulnerability.

What email marketers say

Email marketers quickly noticed the abrupt disappearance of BIMI logos and blue checkmarks in Gmail. Initial observations pointed to issues with emails that had multiple DKIM signatures, a common setup when sending through an Email Service Provider (ESP). While frustrating, the community soon saw signs of restoration, with BIMI logos gradually reappearing, confirming that the issue was a temporary glitch rather than a permanent policy change.

Marketer view

Email marketer from Email Geeks notes a widespread issue, observing no BIMI on any messages this morning, aligning with the initial report of a temporary pause in checking.

06 Jun 2023 - Email Geeks

Marketer view

Email marketer from Email Geeks initially observed the BIMI disappearance primarily affecting emails with double DKIM signatures, indicating a specific technical trigger for the issue.

06 Jun 2023 - Email Geeks

What the experts say

Email experts quickly identified the cause of BIMI's disappearance: a security vulnerability being exploited by scammers. Google's swift action to temporarily disable BIMI display was a natural and necessary response to protect users from impersonation and phishing. Experts emphasized that while frustrating, such pauses are crucial for maintaining the integrity of the email ecosystem. They also noted the gradual re-enablement as fixes were rolled out, highlighting the dynamic nature of email security.

Expert view

Email deliverability expert Keith Kouzmanoff from Twitter explains that Google has disabled BIMI 'blue-check' visibility specifically for emails that have multiple DKIM signatures.

06 Jun 2023 - Twitter

Expert view

Email authentication expert Chris Plummer from Twitter highlighted a bug in Gmail that allowed scammers to exploit BIMI, leading Google to temporarily disable the feature to address the security vulnerability, despite initially closing the bug report.

06 Jun 2023 - Twitter

What the documentation says

Official documentation and standards for BIMI emphasize its role in brand visibility and email trust, provided strict authentication requirements are met. These include a DMARC policy at quarantine or reject, alongside proper SPF and DKIM alignment. The display of BIMI logos is always contingent on the email client's adherence to these standards and their own implementation protocols, meaning variations can occur. Any disruption, even if temporary, underscores the importance of the underlying authentication framework.

Technical article

BIMI Working Group documentation states that Brand Indicators for Message Identification (BIMI) allows organizations to display their official brand logo next to authenticated email messages in supported inboxes, providing a visual cue of trust.

15 Mar 2023 - BIMI Working Group

Technical article

Email Authentication Standards documentation outlines that for BIMI to display, a domain must enforce a DMARC policy of 'quarantine' or 'reject' and have properly configured SPF and DKIM records to ensure sender authentication.

01 Jan 2023 - Auth Indicators Docs

4 resources

Start improving your email deliverability today

Get started