Multiple SPF records on one domain: why mail fails and how to merge them
What's happening: A domain may publish only one TXT record starting with v=spf1. With two, every receiver returns SPF permerror, so SPF fails for all your mail. It usually happens when a second tool's setup guide says "add this SPF record" and it gets added instead of merged.
How to fix it
- In your DNS host, find every TXT record at the root (
@) that starts withv=spf1. - Merge them into one: keep a single
v=spf1, put everyinclude:from both records in it, and end with one~allor-all. Example:v=spf1 include:_spf.google.com include:sendgrid.net ~all. - Delete the extra record(s).
- Make sure the merged record stays under 10 DNS lookups.
Not sure which record is wrong? Check your domain free: it shows which of SPF, DKIM and DMARC is failing, in 5 seconds, no signup.