SERVICESRESULTSCASE STUDIESABOUTEXPERTISEBLOGCONTACT
BOOK AUDIT
BACK TO THE BLOGDELIVERABILITY

Email Deliverability for DTC Brands: SPF, DKIM, and Sender Reputation Explained

Uros Korene · 8 MIN READ

We get asked to fix “bad email performance” more often than we get asked to fix deliverability directly, but they’re frequently the same problem. A flow with sharp copy and smart segmentation can’t outperform a domain that’s landing in spam. Deliverability is the floor everything else sits on.

SPF, DKIM, and DMARC, in Plain Terms

These three records live in your domain’s DNS settings and together tell mailbox providers your email is legitimate.

  • SPF (Sender Policy Framework): A list of servers authorized to send email on your domain’s behalf. Without it, a receiving server has no way to confirm your ESP is allowed to send as you.
  • DKIM (DomainKeys Identified Mail): A cryptographic signature attached to each email, proving it wasn’t altered between sending and delivery. It’s how a receiving server confirms the message is authentic, not spoofed.
  • DMARC (Domain-based Message Authentication, Reporting and Conformance): The policy layer on top of SPF and DKIM. It tells receiving servers what to do when a message fails authentication (quarantine, reject, or do nothing) and asks for reporting on failures so you can catch problems.

Klaviyo, like most modern ESPs, walks you through setting these up during domain authentication. Skipping this step, or leaving records misconfigured, is one of the most common root causes we find when auditing an account with a spam-folder problem.

Authentication Gets You In the Door. Reputation Keeps You There.

Passing SPF and DKIM doesn’t guarantee inbox placement. Mailbox providers like Gmail, Outlook, and Yahoo track sender reputation continuously: how often recipients open, click, reply, mark as spam, or delete without reading. A domain with a history of low engagement gets throttled toward spam even with perfect authentication, because reputation is a moving signal, not a one-time check.

List Hygiene Is a Deliverability Practice, Not Just a List-Size Decision

This is where list hygiene and deliverability directly connect. Mailbox providers evaluate engagement at the domain level, not just per-subscriber. A list padded with unengaged addresses drags down the aggregate engagement rate mailbox providers see for your entire sending domain, which lowers inbox placement even for the subscribers who do want your emails.

Suppressing unengaged subscribers, ideally after a genuine win-back attempt, isn’t just a list-cleanliness habit. It’s one of the most direct levers you have on inbox placement for your active subscribers.

70.7%
Open rate sustained by an e-commerce brand on a properly authenticated domain with active list hygiene practices

→ Full case study: 70.7% open rate, e-commerce open rate system

Sending Patterns Matter Too

A sudden spike in send volume, especially from a domain with limited sending history, can trigger spam filtering on its own, independent of content or list quality. New domains and newly warmed IPs benefit from a gradual ramp in volume rather than an immediate jump to full list size. Consistency in sending cadence also helps: mailbox providers build a reputation baseline around your normal patterns, and abrupt deviations from that baseline can trigger closer scrutiny.

The Order of Operations

If open rates are underperforming, the fix order matters. Authentication (SPF/DKIM/DMARC) first, because nothing else works if the domain isn’t trusted. List hygiene second, because engagement signals are what sustain reputation over time. Copy and flow strategy last, because copy improvements can only show their real impact once the infrastructure underneath them is sound.

[ DATA_NOTE ] Performance figures cited above are illustrative composites based on patterns observed across accounts managed by OpenRateLab and should not be interpreted as the verified results of one identifiable account. Technical guidance reflects general email authentication standards (SPF, DKIM, DMARC) as documented by major mailbox providers and ESPs.

FREQUENTLY ASKED

What are SPF, DKIM, and DMARC?[+]

SPF (Sender Policy Framework) lists which servers are allowed to send email for your domain. DKIM (DomainKeys Identified Mail) adds a cryptographic signature proving an email wasn't altered in transit. DMARC (Domain-based Message Authentication, Reporting and Conformance) tells receiving mail servers what to do if a message fails SPF or DKIM, and asks for reports on failures. All three together are what mailbox providers check before deciding whether your email is trustworthy.

Why is my email going to spam even though the copy is good?[+]

Inbox placement is determined mostly by sender reputation and authentication, not subject line or copy quality. A domain with missing or misconfigured SPF/DKIM/DMARC, a history of low engagement, or a list full of unengaged or invalid addresses will land in spam regardless of how well the email is written. Deliverability problems have to be fixed at the infrastructure and list-health level before copy improvements can show their real effect.

How does list hygiene affect deliverability?[+]

Mailbox providers track engagement at the domain level. A list full of subscribers who never open or click signals to Gmail, Outlook, and Yahoo that your mail isn't wanted, which lowers inbox placement for everyone on the list, including engaged subscribers. Regularly suppressing unengaged addresses, ideally after a genuine win-back attempt, protects deliverability for the subscribers who want to hear from you.

DEPLOYMENT_FINAL_PHASE

WANT RESULTS
LIKE THIS?

Tell us where you are, what's not working, and what you want to grow. We'll map out an exact strategy. No cost, no obligation.

GET A FREE AUDIT