Free DMARC XML to Human Converter
Turn DMARC Reports Into Readable Data

Upload your DMARC XML, ZIP, GZ, or EML files to analyze sending sources, message volumes, and SPF, DKIM, and DMARC results without digging through raw XML.

Need Ongoing DMARC Monitoring?

This DMARC XML analyzer analyzes the reports you already have. If you'd rather not collect and upload XML files manually, the DMARKOFF platform automatically ingests DMARC reports, lets you manage multiple domains in one place, and alerts you when important changes are detected.

About the DMARC XML to Human Converter

DMARC aggregate reports (RUA) arrive as raw XML from mailbox providers that process mail claiming to be from your domain. A report can contain records for many sending IPs, message volumes, and authentication results, with hundreds of lines of nested XML that quickly become difficult to review manually.
 
Drop your files in, and the XML to Human Converter by DMARKOFF handles the parsing. Archives are unpacked automatically, reports are grouped by domain, and the raw data is turned into a plain-language summary, with sending sources sorted into Known, Unknown, and Forward, SPF/DKIM/DMARC results, and drill-down views by provider, IP, host, or reporter.

What the DMARC XML to Human Converter Shows

✓ Multiple reports upload at once (.xml, .zip, .gz, .eml), auto-unpacked and grouped by domain
✓ Calculates an overall domain spoofability score from 0 to 100
✓ Every sending source organized into a readable table, with message volumes and authentication results
✓ Sorts every sending source into a readable table, grouped as Known, Unknown, and Forward, with message volumes and pass/fail rates
✓ SPF, DKIM, and DMARC results shown in plain terms
✓ Drill-down views by Provider, Sending IP, Host, or Reporter
✓ Filters by SPF, DKIM, and DMARC pass/fail and by disposition
✓ A visitor ID to reopen your converted reports later (keep it safe for future access)

Why Choose Free XML to Human Converter

Zero friction – no signup, no credit card, instant results.
Privacy-friendly – uploaded reports and converted results are deleted after 30 days.
Reopen your results – a visitor ID lets you return to previously converted reports without an account (make sure to save it).

FAQ

It's the raw aggregate report (RUA) that mailbox providers like Google, Microsoft, and Yahoo send to a domain's DMARC reporting address. It contains aggregate records for mail claiming to be from your domain during a reporting period, including sending IPs, message counts, SPF/DKIM results, DMARC alignment, and the reported disposition.

Our free DMARC reader accepts .xml, .zip, .gz, and .eml. Archives are unpacked automatically, and reports for multiple domains are grouped by domain automatically, up to 10 domains per upload.

Start by looking at the sending IP, message count, disposition, and SPF/DKIM results for each record. Then check whether SPF and DKIM pass under DMARC alignment. If you're wondering how to read DMARC XML reports, an XML-to-human converter can parse and organize this information for you, so you don't have to trace each record manually.

Known sources are sending IPs that pass authentication and match infrastructure you'd expect (your mail provider, marketing tools, etc.). Unknown sources are IPs sending mail as your domain that don't clearly match a known sender. Forwards are legitimate mail that's been forwarded through another server, which can fail SPF by design even though the message is genuine.

A CRM, helpdesk, marketing platform, forwarding service, or other mail provider may appear as a separate source, by IP address, hostname, or provider name, even if you haven't documented it. Our DMARC viewer surfaces every source sending as your domain, not just the ones you already expect. If it passes authentication, it could be a legitimate sender you haven't documented. If it fails authentication and you don't recognize it, it's worth investigating further.

No. You can upload the file, and our free DMARC XML analyzer handles the parsing for you. Instead of raw XML tag names, you'll see plain labels like Pass, Fail, and Forward, so the output reads like a human-friendly report with clear data.

No. You don't need an account to use the DMARC XML reader. A visitor ID lets you reopen your converted results later instead of logging in. Because there is no password, anyone with your visitor ID or results link may be able to view the data, so keep them private.

Your DMARC reports are kept for 30 days from upload, after which the reports and their converted output are automatically deleted.

DMARC XML reports are sent automatically to the address specified in your domain's DMARC record (the rua= tag), usually as a .zip or .gz attachment. You'll need a published DMARC record with a valid rua= address before providers start sending reports.