Resources
Email deliverability checklist
Deliverability is not a switch you flip after writing subject lines. It is the outcome of authentication, list quality, content discipline, infrastructure hygiene, and send pacing working together before the first permission-based message leaves MailFleet. This checklist is built for teams using MailFleet desktop email campaign software on Windows, macOS, or Linux with their own SMTP and API providers. Work through it before every significant campaign — not only the first launch. Skipping steps that passed last month fails when DKIM keys rotate, lists age, or provider quotas change. Print it, ticket it, or embed it in your agency onboarding — but do not treat deliverability as optional when reputation is on the line.
Authentication: SPF, DKIM, and DMARC
Start with DNS because unauthenticated mail faces harsh filtering regardless of template quality. SPF publishes which servers may send for your domain. DKIM signs messages cryptographically. DMARC tells receivers how to handle failures and where to send reports.
Use MailFleet free SPF, DKIM, and DMARC checker tools before large sends. Confirm SPF lookup count stays under ten includes to avoid permanent errors. Verify the DKIM selector in DNS matches your provider active signing key. Set DMARC policy appropriate to your maturity — often p=none during monitoring, tightening only when passes are consistent.
Alignment matters: the From domain seen by recipients should align with SPF and DKIM domains per DMARC rules. Misalignment produces passes on individual protocols but DMARC failures overall.
- SPF record published and includes correct sending IPs or provider mechanisms
- DKIM selector resolvable; signing active on outbound mail
- DMARC record present with monitored policy and reporting mailbox
- Return-Path or bounce domain aligned where provider supports custom domains
Infrastructure checks beyond DNS
Run MX lookup to confirm mail routing for your domain is intentional. Use reverse DNS checker on sending IP — generic cloud hostnames on marketing domains raise policy flags on strict receivers.
Domain email health check aggregates multiple signals into one pre-send review. Fix blocklist appearances before campaigns when tools report listings.
TLS configuration on SMTP submission must match provider requirements. SMTP diagnostics validates connection, STARTTLS or SSL, and AUTH before you save profiles in MailFleet.
Permission-based list verification
MailFleet is for permission-based sending only. Every address should have documented consent or another lawful basis recognized by your counsel. Purchased, scraped, harvested, or recycled lists fail this checklist immediately — do not proceed.
Verify import files for duplicates, role addresses where inappropriate, and obvious typos. Segment by signup source and date so engagement strategies respect how each group opted in.
Suppression lists must be current: unsubscribes, hard bounces, complaint addresses, and contractual do-not-mail entries merged before import.
List hygiene and bounce management
Remove hard bounces from active segments before new campaigns. MailFleet logs identify 5.1.1 and similar codes for suppression.
Reactivation campaigns to dormant permission-based users need lower volume and careful monitoring — not full-list blasts. Complaint rates spike when recipients forgot they subscribed.
Role accounts (info@, sales@) behave differently than personal inboxes. Market to them only when consent explicitly covers those addresses.
Content review and SpamAssassin pre-check
Run integrated MailFleet SpamAssassin checks on subject, HTML, plain text, and headers before send. Fix triggered rules: link density, spammy phrases, missing text/plain alternative, suspicious URLs.
Balance images and text; avoid URL shorteners that appear on blocklists; use reputable HTTPS links. Test rendering on mobile because broken HTML sometimes correlates with filtering.
SpamAssassin score is one signal, not gospel. Use it to catch obvious issues; pair with authentication and list quality for real-world readiness.
Template technical headers
List-Unsubscribe headers support one-click unsubscribe on capable mailbox providers. They reduce complaints when implemented correctly alongside visible footer links.
Precedence and auto-response headers should be correct for transactional versus marketing classes — mislabeling confuses filters and users.
From, Date, Message-ID, and MIME structure should be valid. Email header analyzer on received test messages helps validate what actually left your provider.
Provider configuration in MailFleet
Confirm correct provider profile: host, port, TLS mode, credentials, and verified From identities. Test connection in app and via SMTP diagnostics after any credential rotation.
Check provider dashboard for quota remaining, sandbox mode, domain verification status, and account flags. API and SMTP limits differ.
Document proxy usage if applicable; proxies change egress IP which affects SPF alignment unless providers handle it.
Capacity and pacing plan
Review MailFleet capacity scoring for planned volume relative to domain age and history. Set daily ceilings below provider maximum on new infrastructure.
Schedule large permission-based campaigns in batches with monitoring between days. Warm-up applies after pauses, new domains, and dedicated IP assignment.
Define internal abort thresholds: bounce rate, deferral rate, complaint rate that triggers pause. Logs and webhooks support enforcement.
Pilot send and seed inboxes
Send a pilot batch to engaged recipients and seed inboxes you control across major providers before full scale. Review logs within hours, not days.
Compare pilot SpamAssassin results to production template — last-minute edits bypassing checks are a common failure mode.
Inbox placement seed tests complement SMTP success. Handoff can succeed while mail lands in spam; adjust content and authentication if seeds show filtering.
Monitoring and post-send review
Configure MailFleet webhooks or export schedule for production campaigns. Alert on bounce spikes during multi-day sends.
Review campaign reports after completion: totals, bounces, deferrals, trends versus prior campaigns. Investigate anomalies before the next send.
Update suppression files and internal runbooks with lessons learned. Deliverability checklist is a loop, not a one-time PDF.
Enterprise and procurement alignment
Security reviewers often ask for authentication evidence, permission policies, and data handling. MailFleet security documentation and this checklist support those conversations without overstating certifications.
Align checklist completion with client sign-off on list sources and send schedule. Agencies reduce liability when clients acknowledge consent responsibility in writing.
Linux teams: use official DEB or RPM packages on x86_64 or ARM64 — AppImage is not distributed. Same checklist applies on all platforms.
What this checklist cannot guarantee
No checklist guarantees inbox placement. Receivers use engagement, reputation, and proprietary signals beyond your control. The checklist eliminates avoidable self-inflicted failures.
MailFleet licenses at pay.mailfleet.app/buy/1year ($49) and pay.mailfleet.app/buy/lifetime ($79) provide software capability — not shared sending reputation or legal compliance by default.
Responsible bulk email means honest identity, working unsubscribes, and permission-based lists. Checklist items assume that foundation; without it, stop and fix consent before technical optimization.
Transactional versus marketing classification
Not every message is marketing. Password resets, order confirmations, and account alerts may qualify as transactional with different footer and consent rules depending on jurisdiction. Misclassifying promotional content as transactional to avoid unsubscribe requirements is a compliance violation and a deliverability risk when recipients complain.
When a single MailFleet template mixes unrelated promotions with receipts, filters and users both penalize you. Separate streams: transactional provider profiles and templates for operational mail; marketing profiles with full unsubscribe and List-Unsubscribe headers for campaigns. The checklist applies fully to marketing sends; transactional sends still need authentication and accurate identity.
Document classification decisions with legal input. Procurement reviewers sometimes ask whether MailFleet sends marketing or operational mail — the answer depends on your content and consent, not the software brand.
International and multi-brand considerations
Multi-brand agencies must run the checklist per domain and per client list source. Shared provider credentials across brands without isolation can spread reputation damage. MailFleet multiple provider profiles help, but DNS and suppression must also stay brand-scoped.
International sends add GDPR, CASL, ePrivacy, and local anti-spam rules. A checklist item valid in the US may be insufficient in Germany or Canada. Translate unsubscribe and consent flows where required; do not assume English footers cover EU recipients.
Time zone and holiday awareness affect engagement, not just scheduling convenience. A checklist signed off Friday for Monday send should re-verify DNS if IT rotated keys over the weekend — automation without re-check assumes infrastructure stasis that rarely holds.
Feedback loops and post-send signals
After send, monitor complaint feedback loops where providers offer them, Gmail Postmaster Tools for domain reputation trends, and Microsoft SNDS for IP data when applicable. MailFleet logs show bounces; feedback loops show complaints that never bounced.
Low open rates are not a checklist item but inform future segmentation. Permission-based lists with zero engagement over twelve months should be sunset or re-permissioned before the next checklist cycle — not mailed repeatedly because authentication passed.
Close the loop: checklist failures discovered post-send become new mandatory items. If pilot showed unexpected Gmail deferrals, add Gmail seed review to every future checklist for that domain until metrics stabilize.
Checklist sign-off and stakeholder roles
Assign owners: marketing owns content and unsubscribe copy, engineering owns DNS and provider profiles, legal owns consent classification, operations owns MailFleet send execution and log monitoring. Checklist items without owners get skipped under deadline pressure.
Use a written sign-off for campaigns above defined volume thresholds. Sign-off captures date, DNS check results, SpamAssassin outcome, capacity plan, and named approver. Agencies protect themselves when clients later dispute send decisions.
MailFleet desktop workflow supports this governance without a cloud approval product — export check results from DNS tools and SpamAssassin screens into your ticket or document store. Evidence matters more than checkbox software.
Annual and quarterly checklist maintenance
Review checklist quarterly against provider rule changes, new regulations, and lessons from incident retrospectives. Add items when DKIM rotation caused an outage; remove items that no longer apply when you standardize on a provider feature.
Annual training refresh for anyone with MailFleet send access. Responsible sending policy updates from MailFleet anti-spam and acceptable use pages should be circulated with checklist changes.
Enterprise procurement may request checklist documentation during renewal. Keep a version history with dates so reviewers see continuous improvement rather than a static PDF from two years ago.
Pre-send review for HTML and accessibility
Broken HTML and missing alt text hurt accessibility and can trigger filtering when tags are malformed. Validate rendering in mainstream clients before pilot. MailFleet SpamAssassin catches some markup issues; manual preview catches layout breaks that affect trust when recipients open on mobile.
Link URLs should use HTTPS and resolve to expected destinations. Redirect chains through suspicious domains score poorly. UTM parameters are fine when the landing domain matches brand expectations.
Plain-text part should convey the same offer and unsubscribe path as HTML. MIME mismatches confuse filters and screen readers. Checklist includes content parity, not only marketing copy approval.
Attachment and image policy
Large attachments increase rejection risk and hurt mobile recipients. Host files on HTTPS and link instead when possible. If attachments are required for operational mail, keep sizes modest and file types expected for your industry.
Image-only emails with little text often score poorly in SpamAssassin and accessibility review. Balance visuals with readable text; include alt attributes. Checklist should flag image-heavy templates before full send.
Track image hosting domain reputation separately from sending domain. Compromised CDNs or expired image domains break emails in inbox and erode trust. Verify image URLs during checklist review, not only at template design time.
Disaster recovery when checklist fails mid-campaign
Even disciplined teams hit surprises: a DNS record expires mid-send, a provider rotates credentials, or bounce rates spike after hour two. Define abort criteria before launch — for example, hard bounce rate above two percent or deferrals above ten percent — and assign who can pause MailFleet campaigns without waiting for executive approval.
When thresholds breach, stop new batches first, then export logs and classify failures using bounce code lookup. Fix root cause — authentication, list segment, or template — before resuming at reduced volume. Document the incident in the same repository where checklist evidence lives so auditors see both preparation and response.
Post-incident, update the checklist version if a gap appeared: missing monitoring step, unclear owner, or untested webhook. Deliverability preparation includes knowing how to recover, not only how to start.
Step-by-step workflow
- Validate SPF, DKIM, DMARC, MX, and reverse DNS with MailFleet free tools.
- Confirm provider profile in MailFleet: connection test and SMTP diagnostics pass.
- Merge suppression lists; verify consent documentation for imported segments.
- Review From identity, physical address, and unsubscribe links in template.
- Run SpamAssassin on subject, body, and headers; fix triggered rules.
- Review MailFleet capacity scoring; set daily send ceiling and batch schedule.
- Send pilot to engaged recipients and seed inboxes; review logs within hours.
- Check bounce, deferral, and complaint signals against internal abort thresholds.
- Launch production campaign with webhooks or export monitoring enabled.
- Post-campaign: archive reports, update suppressions, document checklist deviations.
- Retrospective: update checklist version if new failure mode appeared during the send.
- Communicate go-live status to stakeholders with links to evidence exports.
Common mistakes and fixes
| Mistake | Fix |
|---|---|
| Sending immediately after DNS changes without propagation wait | Wait for TTL propagation; re-run SPF, DKIM, and DMARC checkers before pilot. |
| Treating DMARC p=reject as the first step on new domains | Monitor with p=none; tighten policy only after stable SPF and DKIM alignment. |
| Skipping suppression merge before importing new segments | Dedupe against global unsubscribes, bounces, and complaints every campaign. |
| Last-minute template edits without re-running SpamAssassin | Re-score any content change; pilots catch what checkers miss. |
| Using misleading From names or subject lines for engagement | Match identity to brand and message; deception drives complaints and policy blocks. |
| Maxing provider quota on checklist day one | Follow capacity planning with phased volume and deferral monitoring. |
| Assuming checklist completion replaces ongoing log monitoring | Watch MailFleet logs during send; abort on threshold breaches. |
| Mailing purchased lists because authentication passed | Stop — permission-based lists only; authentication cannot fix consent violations. |
Best for
- Operators preparing large permission-based campaigns
- Agencies running pre-send QA for clients
- Teams standardizing deliverability review across Windows, macOS, and Linux
Not best for
- Senders without DNS access or provider credentials
- Campaigns that skip permission-based list requirements
Key takeaways
- SPF record published and includes correct sending IPs or provider mechanisms
- DKIM selector resolvable; signing active on outbound mail
- DMARC record present with monitored policy and reporting mailbox
- Return-Path or bounce domain aligned where provider supports custom domains
Summary
Deliverability is preparation measured in DNS records, consent files, template quality, provider readiness, and disciplined pacing. This checklist aligns with how MailFleet desktop operators work on Windows, macOS, and Linux: authenticate before volume, mail only permission-based lists, score content before send, plan capacity, pilot with logs, and monitor production campaigns without guessing. No step alone guarantees inbox placement, but skipping steps predictably produces bounces, blocks, and client distrust. Run the checklist, keep evidence, and treat deliverability as an ongoing operational habit — not a one-time launch task. Version the checklist, assign owners, and attach exports to tickets so every large send has a paper trail procurement and legal teams can follow without opening MailFleet themselves. When in doubt, send smaller, measure, then scale.
Summary
Before sending: authenticate SPF/DKIM/DMARC, verify list consent, run SpamAssassin checks, confirm provider limits, include unsubscribe, and plan log monitoring. Repeat after DNS, template, or provider changes.
For regulatory context on commercial email in the United States, see the FTC CAN-SPAM compliance guide.
Delivery note: MailFleet helps users manage campaigns through their own sending providers. Delivery outcomes depend on sender reputation, DNS authentication, content quality, recipient engagement, list quality, provider rules, and mailbox filtering systems.
Frequently asked questions
Run the complete checklist before every large campaign or after any material change: DNS updates, DKIM rotation, new provider profile, major list import, or template overhaul. For routine sends to stable engaged segments on unchanged infrastructure, a shortened review — authentication spot-check, suppression merge, SpamAssassin pass — may suffice. When in doubt, run the full list. Checklist time is cheaper than recovery from a blocked domain. Seasonal senders who mail quarterly should still run authentication tools before each quarterly blast because DNS and provider settings drift when nobody is watching.
Get started
Take control of your email campaign operations
Download MailFleet for Windows, macOS, or Linux. Connect your providers, run pre-send checks, and manage campaigns with full visibility.
Available on
- Windows 10+
- macOS 12+
- Linux (DEB & RPM)
Same desktop experience across every platform — one workflow for your entire team.
