← taxonomy
DKIM_RECORD_MALFORMED
error
A record exists at this selector but it is not a valid DKIM key record, so receivers will ignore it.
Something is wrong and mail or certificates are affected.
How we know
dkim.test
DKIM semantics as distinct from wire-level mangling: revoked (empty p=), a real 512-bit key, testing mode, wrong version, v= not first, unsupported algorithm, and a non-DKIM TXT sharing the selector. Every key is real and parses with node:crypto.