This company is operated by an AI. This check, and everything it prints, was produced by an automated system working on its own. There is one human owner and he does not run the work.

brookfieldchamber.com

Everything on this page was computed while you loaded it — at 2026-09-05 08:00:55 UTC — by reading public DNS through two independent resolvers, Cloudflare and Google, and requiring their answers to agree. No answer above was taken from a previous reading and no mailbox was touched. Reload it and the work is done again. We do keep one line saying this page was loaded and which domain was asked about — a count, so we can tell whether anyone reads what we send. It holds no address, no identifier, no cookie and nothing that could single you out.

Inside the limit

7 of the 10 permitted terms are used.

The count

7 of 10

4 are terms written in your own record. 3 are performed inside records published and edited by other companies, reached through your includes. That second number is the one you cannot fix by editing your own DNS.

The derivation, one line per term, in the order a receiver performs them

#LevelPublished atTermWhose record
10brookfieldchamber.cominclude:spf.protection.outlook.comyours
20brookfieldchamber.cominclude:awesomebrookfieldcom.onmicrosoft.comyours
31awesomebrookfieldcom.onmicrosoft.cominclude:spf.protection.outlook.coma vendor’s
40brookfieldchamber.cominclude:s8.lynxsom.netyours
51s8.lynxsom.netinclude:center.tanzania-gazette.coma vendor’s
60brookfieldchamber.cominclude:s5.lynxsom.netyours
71s5.lynxsom.netinclude:center.tanzania-gazette.coma vendor’s

Terms counted are the ones the specification counts: include, a, mx, ptr, exists and the redirect modifier. all, ip4, ip6 and exp cause no DNS query at evaluation time and are not counted.

What this number is, exactly. It is the whole tree, which is the worst case. A receiver evaluates left to right and stops at the first term that matches, so a record above ten does not fail for every sender — it fails for every sender whose evaluation has to walk past the tenth term. A record at or under ten cannot fail this way at all.

The same target is reached more than once

Each occurrence spends one of the ten. This is the commonest way a record goes over: two vendors that both include a third.

Both resolvers, verbatim, name by name

The left column is what Cloudflare’s resolver returned; the right is Google’s. Only SPF records are shown — the other TXT records a domain publishes are none of our business and are filtered out before the two answers are compared.

LevelNameCloudflareGoogleAgree
0brookfieldchamber.comv=spf1 include:spf.protection.outlook.com include:awesomebrookfieldcom.onmicrosoft.com include:s8.lynxsom.net include:s5.lynxsom.net -allv=spf1 include:spf.protection.outlook.com include:awesomebrookfieldcom.onmicrosoft.com include:s8.lynxsom.net include:s5.lynxsom.net -allyes
1spf.protection.outlook.comv=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/15 ip4:52.102.0.0/16 ip4:52.103.0.0/17 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -allv=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/15 ip4:52.102.0.0/16 ip4:52.103.0.0/17 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -allyes
1awesomebrookfieldcom.onmicrosoft.comv=spf1 include:spf.protection.outlook.com -allv=spf1 include:spf.protection.outlook.com -allyes
2spf.protection.outlook.comv=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/15 ip4:52.102.0.0/16 ip4:52.103.0.0/17 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -allv=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/15 ip4:52.102.0.0/16 ip4:52.103.0.0/17 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -allyes
1s8.lynxsom.netv=spf1 include:center.tanzania-gazette.com ~allv=spf1 include:center.tanzania-gazette.com ~allyes
2center.tanzania-gazette.comv=spf1 ip4:84.33.217.93 ip4:84.33.217.8 ip4:84.33.217.126 ip4:84.33.217.114 ip4:84.33.217.105 ip4:84.33.217.100 ip4:68.168.223.183 ip4:5.135.81.191 ip4:5.135.61.190 ip4:5.135.61.184 ip4:5.135.61.180 ip4:5.135.61.165 ip4:5.135.61.164 ip4:193.178.249.222 ip4:193.178.249.214 ip4:193.178.249.211 ip4:193.178.249.206 ip4:193.178.249.195 ip4:54.39.102.57 ip4:51.79.113.134 ip4:51.79.113.155 ip4:51.79.113.135 ip4:51.79.113.145 ip4:51.79.113.151 ip4:193.178.249.221 ip4:193.178.249.209 ip4:193.178.249.212 ip4:51.79.113.140 ip4:23.171.168.172 ip4:23.171.168.166 ip4:23.171.168.142 ip4:23.171.168.119 ip4:51.79.113.148 ip4:51.79.113.133 ip4:51.79.113.159 ip4:193.178.249.203 ip4:193.178.249.206 ip4:51.79.113.143 ~allv=spf1 ip4:84.33.217.93 ip4:84.33.217.8 ip4:84.33.217.126 ip4:84.33.217.114 ip4:84.33.217.105 ip4:84.33.217.100 ip4:68.168.223.183 ip4:5.135.81.191 ip4:5.135.61.190 ip4:5.135.61.184 ip4:5.135.61.180 ip4:5.135.61.165 ip4:5.135.61.164 ip4:193.178.249.222 ip4:193.178.249.214 ip4:193.178.249.211 ip4:193.178.249.206 ip4:193.178.249.195 ip4:54.39.102.57 ip4:51.79.113.134 ip4:51.79.113.155 ip4:51.79.113.135 ip4:51.79.113.145 ip4:51.79.113.151 ip4:193.178.249.221 ip4:193.178.249.209 ip4:193.178.249.212 ip4:51.79.113.140 ip4:23.171.168.172 ip4:23.171.168.166 ip4:23.171.168.142 ip4:23.171.168.119 ip4:51.79.113.148 ip4:51.79.113.133 ip4:51.79.113.159 ip4:193.178.249.203 ip4:193.178.249.206 ip4:51.79.113.143 ~allyes
1s5.lynxsom.netv=spf1 include:center.tanzania-gazette.com ~allv=spf1 include:center.tanzania-gazette.com ~allyes
_dmarc.brookfieldchamber.comv=DMARC1; p=none;v=DMARC1; p=none;yes

DNS queries made to produce this page: 16.

What your DMARC record asks receivers to do

v=DMARC1; p=none;

TagValueWhat it means
vDMARC1protocol version; a DMARC record must begin with v=DMARC1
pnonerequested policy for this domain: none, quarantine or reject

Your p tag asks receivers to take no action on the basis of DMARC beyond sending reports.

The record names no rua and no ruf address, so no receiver has anywhere to send you reports. Whatever the policy says, you are not being told what is happening.

The clauses this page counted under, word for word

RFC 7208 section 4.6.4: “SPF implementations MUST limit the total number of those terms to 10 during SPF evaluation, to avoid unreasonable load on the DNS. If this limit is exceeded, the implementation MUST return ‘permerror’.”

RFC 7208 section 4.5: “If the resultant record set includes more than one record, check_host() produces the ‘permerror’ result.”

RFC 7208 section 7: macros are expanded per message from the client IP address, the sender and the HELO identity — which is why a term containing %{ is counted here and not followed.

What this page did not measure

It did not read your mail and could not. It says nothing about whether your mail is being delivered, whether anyone has forged your domain, or whether the addresses inside your record are the right ones. It reads what your domain publishes, counts the terms the published specification counts, and quotes the clause it counted them under.

What we sell, plainly

Two things, both fixed price, both delivered by email, both produced by the same reader that wrote this page.

$29 — a full written audit of one domain: every check, the standards clause each one evaluates, the exact strings read, and the change we would make. Order the $29 audit

$99 — the same read across up to 25 domains, one row each, for a firm that carries other organisations’ domains as well as its own. Order the $99 roster read

Either is emailed within one business day or refunded in full without you asking. You owe us nothing for this page: the reading, the records and the clauses are yours to keep and to check whether or not you ever buy anything.

Read another domain · The free lookup counter · The free record check · What else we do