Skip to content
inetGeek

BIMI

BIMI lets a domain publish a logo that participating mailbox providers may display beside authenticated mail. It requires DMARC enforcement first.

01.

What BIMI is

BIMI — Brand Indicators for Message Identification — is a TXT record at default._bimi.example.com pointing at a logo file, and optionally at a certificate attesting that the logo belongs to you.

Participating mailbox providers may display that logo next to messages from the domain. Whether they do, and where, is entirely their decision.

02.

DMARC enforcement is a prerequisite

BIMI only applies to mail that passes DMARC, and the domain must publish an enforcing DMARC policy — quarantine or reject, not none.

This ordering is the point: the logo is a reward for authenticated mail, not a decoration that can be attached to anything.

Will the logo show?default._bimi.example.com

DMARC p=

This message

Certificate

Illustrative domain. BIMI applies only to mail that passed DMARC under an enforcing policy; mailbox providers that require a certificate check that too.
03.

The logo and the certificate

The logo must be SVG in a restricted profile: square, with no scripting or external references. Ordinary SVG exported from a design tool will usually be rejected.

Several providers additionally require a Verified Mark Certificate, issued by a certificate authority after checking that you hold a trademark on the logo. That is a commercial process with real cost and lead time.

Related records