BIMI is short for “brand indicators for message identification”, a new standard looking at enhancing mail authenticity and veracity in electronic mail exchange. The standard in itself is not a security solution, in the best opinion it is a perception manager.
BIMI is more like a trust association mechanism, a mechanism that deals with the same trust factor that identity attackers require from a victim to proceed.
The 10 BIMI Benefits
- Mail authentication includes fetching a logo.
- Your organisation gets to receive more impression to users.
- Including BIMI to our mail authentication means at least 4layers (SPF, DKIM and DMARC).
- Your logo helps mail managing application user interface UI look more brilliant instead of initials.
- You add an additional complexity to help users avoid phishing attacks.
- Mail tracking insights can be more accurate to IT Teams with a VMC.
- Gain more insights into attacks on your mailing with VMC.
- Ensure real mails are delivered with a VMC.
- Stop identity attacks from formation or in the least make it harder.
- Gain improvement in Brand Trust.
Here is how to setup BIMI
BIMI requires that you to have DMARC already setup along with an svg format logo available from your mail domain. There is a Verified Mark Certificate (VMC) obtainable from Certificate Authorities (CA) which can be added to further authenticate the BIMI record. The VMC is currently optional and may become mandatory in the near future.
Create a txt record with
The entries below goes into the host field
This part goes into the value field
v=BIMI1; l=[SVG logo URL]; a=[PEM URL];
Requirement for a Verified Mark Certificate
- Attain DMARC compliant.
- Ensure your logo is trademarked.
- Make ready an SVG compliant version of your logo.
- Purchase and install a VMC.
- See how your logo will display.
An advise you should heed
BIMI’s required logo svg is a single logo available for regular and dark theme where it can be square, rounded corners or circle layout determined by the mail application user interface. You should thus consider these factors wile creating your svg file as you get to provide a single file.