Last updated 2026-10-09
Gmail uses 550 5.7.26 for three different situations. Match your bounce to one of them.
This email has been blocked because the sender is unauthenticated. Gmail requires all senders to authenticate with either SPF or DKIM. Authentication results: DKIM = did not pass SPF [domain-name] with ip: [ip-address] = did not pass. For instructions on setting up authentication, go to Email sender guidelines (https://support.google.com/mail/answer/81126#authentication).
The (E)MAIL FROM domain [domain-name] has an SPF record with a hard fail policy (-all) but it fails to pass SPF checks with the ip: [ip-address]. To best protect our users from spam and phishing, the message has been blocked. For more information, go to Email sender guidelines (https://support.google.com/mail/answer/81126#authentication).
Unauthenticated email from domain-name is not accepted due to domain's DMARC policy. Contact the administrator of domain-name domain if this was legitimate email. To learn about the DMARC initiative, go to Control unauthenticated email from your domain (https://support.google.com/mail/answer/2451690).
Source: Google, Gmail SMTP errors and codes, section 550 5.7.26, fetched 2026-10-08.
Replace yourdomain.com with the domain in the From address of the bounced message.
SPF record:
dig +short TXT yourdomain.com | grep v=spf1
DMARC record:
dig +short TXT _dmarc.yourdomain.com
DKIM, using the selector from the bounced message's DKIM-Signature header (s= value):
dig +short TXT selector._domainkey.yourdomain.com
Or paste the bounced message's headers into the header analyzer and read the Authentication-Results line.
This error is live on your domain right now. If you need it gone today, the Humerly Emergency Fix is the direct route: your DNS, every change on your approval, verified before we call it done. Details and the price are on the Emergency Fix page.
Request the fixWhat this page covers: the authentication records the receiver checked and how to correct them. It does not predict where a message lands once accepted; authentication and inbox placement are separate questions.
No. It means this message did not pass authentication (SPF, DKIM, or your own DMARC policy).
SPF checks the IP of the server that sent the message, not where your mailbox is hosted (RFC 7208). A tool that sends on your behalf needs your SPF include, or a DKIM key published for your domain.
Text B yes. Text A needs SPF or DKIM. Text C needs the passing result to also align with the From domain.