Overview
Client email-auth remediation plus three free tools on curiouscat.consulting. We fix SPF, DKIM, and DMARC for businesses that send from their own domain, and built scanners so anyone can see what we see without a sales call. For a healthcare professional services firm, a same-domain phishing message exposed DMARC at p=none and DKIM turned off. We closed the vector the same day and caught 66+ spoof attempts in the first week. For an LPL-affiliated advisory, outbound mail was getting flagged as impersonation; we took a Grade F baseline to 96.8% DMARC compliance at close-out with ongoing monitoring. The free tools: Email Auth Scanner, Site Audit, and EML Inspector. No login.
Free tools
Client work
Healthcare professional services
Same-domain phishing hit the inbox with DMARC at p=none. Closed the vector same day, authenticated every sending path, 66+ spoof attempts caught in the first week.
LPL-affiliated financial advisory
Outbound mail flagged as impersonation from a Grade F baseline. Reconciled to carrier-mandated enforcement, 96.8% DMARC-compliant at close-out, monitoring retainer ongoing.
