United States DMARC & MTA-STS Adoption Report 2026
We at PowerDMARC analyzed email authentication posture across U.S. domains, and two things stood out: DMARC adoption is rising, but enforcement remains uneven, and MTA-STS lags materially behind. That gap is where spoofing and downgrade risk persist.
Washington D.C., remains the epicenter of global cybersecurity policy, but as we move into 2026, the gap between mandate and implementation is widening. Despite heightened federal guidance, such as CISA’s “Shields Up” posture and broader national cybersecurity initiatives, the U.S. remains a primary playground for AI-driven spoofing and Business Email Compromise (BEC) scams that cost the economy over $2.9 billion last year.
This PowerDMARC analysis reveals a nation that has addressed identity authentication (SPF/DMARC) but left transport layer security (MTA-STS) and zone integrity (DNSSEC) dangerously exposed.
Report Request - United States DMARC Adoption
"*" indicates required fields
