Qualification
Qualifying the request: domains, mechanisms, senders, goal
For CISO, CIO, IT and deliverability roles, the request form works best from a concrete decision record rather than a generic brief. It should name the domains in scope, the mechanisms believed to be in place, the main sending sources and the goal — a baseline, a specific fix, DMARC readiness or BIMI. With that, dotNice can separate a quick record check from a full estate baseline, an alignment fix or BIMI preparation — and recommend clearly what to inventory, align, enforce or display.
The review is most valuable when the buyer can describe the current gap: which domains send mail, which mechanisms are configured, which senders are third parties, and which internal team owns DNS and the sending platforms. A request is qualified when it states the domains, the mechanisms in place and the goal. The output is a scoped decision — a per-mechanism baseline with owners — not a service catalogue.
The cost of waiting belongs in the same record. Misaligned authentication leaves a brand spoofable and its legitimate mail at risk the moment anyone tightens a policy without the baseline, and a missing BIMI logo is a visible trust gap in crowded inboxes. Quantifying the exposure — spoofing and phishing risk, deliverability loss, brand visibility — is what moves an authentication baseline from a backlog item to a funded decision with an owner and a deadline.