The Outbound Self-Audit

diagnose why your cold emails aren't landing in 15 minutes. no tools required.

READ THIS FIRST

we get over 3,000 support tickets inside our business.

know the most common ones?

"how do I connect inboxes to a sending platform?"

"what's SMTP?"

"how do I set up forwarding?"

people don't know the basics.

and that's not a dig. the cold email space moves fast, there's a million voices saying a million different things, and most of the "education" out there comes from people who have something to sell you on the back of it.

i've set up infrastructure for over 2,000 businesses. i've seen every failure mode. every misconfiguration. every "my emails were working fine and then suddenly they weren't."

this audit gives you a 15-minute diagnostic. five areas. score yourself honestly. you'll know exactly what's broken and what to fix first.

what's inside:

  1. authentication checklist (SPF, DKIM, DMARC)
  2. domain health scorecard
  3. inbox setup evaluation
  4. sending behaviour check
  5. a scoring system that tells you where to start

the goal: figure out whether your problem is infrastructure, copy, or both. then fix the right one.


QUICK WIN: the 60-second diagnostic

answer these 5 questions right now. don't overthink it.

  1. do you know if your SPF, DKIM, and DMARC records are properly configured? (yes / no / not sure)
  2. have you warmed up your inboxes for at least 14 days before sending? (yes / no)
  3. are you sending from your primary business domain? (yes / no)
  4. are all your cold emails going through one provider (Google only or Outlook only)? (yes / no)
  5. do you know your current reply rate? (yes / no)

scoring:

→ 4-5 "yes" answers: you're in decent shape. this audit will fine-tune things.

→ 2-3 "yes" answers: there are gaps. this audit will find them.

→ 0-1 "yes" answers: your infrastructure needs work before you send another email.

if you answered "not sure" to question 1, start with Section 1 below. that's your biggest risk.


Section 1: Check Your Authentication

gmail and outlook run invisible pre-send checkpoints before your email reaches anyone.

the first checkpoint: authentication. SPF, DKIM, DMARC. if these aren't configured properly, you're flagged before your email is even read.

this is the #1 preventable deliverability killer. and most agencies skip it or misconfigure it.

what each record does

SPF (Sender Policy Framework)

→ tells receiving servers which IPs are authorised to send email from your domain

→ without it: anyone can spoof your domain. servers treat your emails as suspicious.

DKIM (DomainKeys Identified Mail)

→ adds a digital signature to every email you send

→ without it: servers can't verify the email actually came from you. trust score drops.

DMARC (Domain-based Message Authentication)

→ tells servers what to do when SPF or DKIM fails (quarantine, reject, or nothing)

→ without it: you have no policy. servers make their own decision. usually that decision is spam.

your authentication checklist

  • [ ] SPF record exists on every sending domain
  • [ ] SPF record includes your sending platform's IPs
  • [ ] SPF record doesn't exceed the 10-lookup limit
  • [ ] DKIM is enabled and the signature passes verification
  • [ ] DMARC record exists (even if set to "none" initially)
  • [ ] DMARC is set to at least p=quarantine (not p=none) for production domains
  • [ ] all records have been tested with a tool like MXToolbox or Google Admin Toolbox

how to check: send a test email to mail-tester.com. it gives you a score out of 10 and flags exactly what's missing.

if you scored below 8/10, fix your DNS before sending another cold email. everything else in this audit is pointless if authentication is broken.


Section 2: Check Your Domain Health

your domain has a reputation. email providers track it.

if you're sending cold emails from your primary business domain and something goes wrong, your main domain reputation gets destroyed. and that affects EVERYTHING. your team's emails, your support emails, your transactional emails. all of it.

domain health checklist

  • [ ] you're using separate lookalike domains for cold outreach (not your primary domain)
  • [ ] each sending domain is at least 14 days old before sending
  • [ ] each domain has its own DNS records (SPF, DKIM, DMARC)
  • [ ] you're not reusing domains that have been flagged or burned previously
  • [ ] your domains look legitimate (e.g., try-acme.com or getacme.co, not xvf7-acme.xyz)

warmup status

  • [ ] every inbox has been warmed up for 14+ days before campaign launch
  • [ ] warmup is still running alongside your campaigns (don't turn it off)
  • [ ] warmup emails are getting positive engagement (replies, opens from real addresses)

common mistake: buying 50 domains, skipping warmup, blasting emails on day one. the domains get flagged within 48 hours and you've wasted your money.

warmup is not optional. it's the process of building trust with Google and Outlook before you start sending. skip it and you're burning cash.


Section 3: Check Your Inbox Setup

not all inboxes are created equal.

if you bought cheap inboxes from a random reseller, you might be sharing the same sending IP as a bunch of spammers. gmail may have already flagged your IP before you even send your first email.

inbox setup checklist

  • [ ] your inboxes are client-owned (not shared or rented)
  • [ ] you know what sending IPs your inboxes are on
  • [ ] your IPs haven't been blacklisted (check at mxtoolbox.com/blacklists)
  • [ ] each inbox sends a maximum of 10-15 emails per day
  • [ ] you're not sending all volume through a single inbox

provider diversification

going all-in on one provider is a liability. when that provider updates its filtering models, your entire operation collapses overnight.

the two-lane provider strategy:

→ split your sending between Google Workspace and Microsoft Outlook

→ 70/30 or 50/50 configurations both work

→ if one provider tightens filtering, the other lane keeps running

→ monitor each lane separately so you catch problems early

score yourself:

  • [ ] sending through Google only → HIGH RISK
  • [ ] sending through Outlook only → HIGH RISK
  • [ ] sending through both with a planned split → GOOD

Section 4: Check Your Sending Behaviour

infrastructure can be perfect and you can still get flagged based on HOW you send.

email providers track patterns. if your sending behaviour looks suspicious, you get throttled. and the worst part about throttling is it's invisible. your emails are still "sending." you just don't know they're being quietly deprioritised.

i know over 20 cold emailers who got wiped out by silent throttling in 2025. most of them didn't realise what was happening until their pipeline had already shrunk.

sending behaviour checklist

  • [ ] you're ramping up volume gradually (not going from 0 to 100 emails on day one)
  • [ ] each inbox sends no more than 10-15 emails per day
  • [ ] your sending is spread across 6+ hours (not all blasted at 9am)
  • [ ] you're not sending identical copy from multiple inboxes (triggers pattern detection)
  • [ ] your emails have some variation in length and format
  • [ ] you're tracking reply rate per inbox (not just aggregate)

throttling detection

you might be getting throttled RIGHT NOW and not know it.

warning signs:

→ open rates dropping gradually over 2-3 weeks

→ reply rates falling even though copy hasn't changed

→ deliverability tools show "delivered" but engagement is declining

→ new inboxes perform well but older ones are dying

if you're seeing these patterns, rotate your inboxes. add fresh domains. check your IPs.


Section 5: Your Audit Score

go back through each section and count your checkboxes.

| Section | Total Checks | Your Score |

|---------|-------------|------------|

| 1. Authentication | 7 | ___ / 7 |

| 2. Domain Health | 8 | ___ / 8 |

| 3. Inbox Setup | 8 | ___ / 8 |

| 4. Sending Behaviour | 6 | ___ / 6 |

| TOTAL | 29 | ___ / 29 |

what your score means

24-29: SOLID

your infrastructure is in good shape. if you're still not getting replies, the problem is likely your email copy and targeting. grab The Cold Email Copy Kit for that.

16-23: GAPS

there are holes in your setup. the sections where you scored lowest are where to focus. fix those first before worrying about copy or offer.

0-15: REBUILD

your infrastructure needs serious work. don't send another cold email until you've addressed authentication and domain health. you're burning reputation with every send.

priority fix order

no matter your score, fix things in this order:

  1. authentication first (SPF, DKIM, DMARC) — if this is broken, nothing else matters
  2. domain health second — get off your primary domain, warm up properly
  3. inbox setup third — diversify providers, check IPs
  4. sending behaviour last — this only matters once the infrastructure is solid