parsedmarc vs Palisade in 2026
How parsedmarc and Palisade compare on operating model, pricing, and fit for IT teams and MSPs.
Our verdict: Pick Palisade if you want an AI agent to carry the work through enforcement, whether you manage one domain or thousands. Pick parsedmarc if your team prefers a traditional, operator-led workflow.
1 domain free up to 1,000 emails/month


Palisade is free for one domain, up to 1,000 emails a month. Paid IT-team plans are sized by email volume. Start a 15-day full-product trial with no credit card.
Which one is right for you?
Best for Teams with engineering time and in-house data infrastructure
Best for MSPs and IT teams responsible for multiple domains
- You prefer a more traditional parsedmarc workflow with people involved in each enforcement step.
- Your buying criteria center on vendor-specific enterprise requirements.
- Pick parsedmarc if you have engineering time to run the pipeline yourself and only need to monitor a small set of your own domains.
- Pick parsedmarc if report data must stay inside your own infrastructure and you already operate Elasticsearch, OpenSearch, or Splunk.
- You run an MSP, or an internal IT or security team, responsible for multiple domains.
- You want an AI agent to investigate issues, configure authentication, and move domains toward p=reject.
- Teams already using Claude, OpenAI, or other AI tools can bring the same agent-led operating model to DMARC.
Free for one domain, up to 1,000 emails a month. Paid IT-team plans are sized by email volume. Start a 15-day full-product trial with no credit card.
Where the day-to-day work actually differs
| Feature | parsedmarc | Palisade |
|---|---|---|
| Enforcement | ||
| Agent does the enforcement work and evaluates policy readiness; you approve each stepWhether the product performs enforcement work and prepares policy steps for approval.parsedmarc parses and stores reports; its docs describe no capability to change SPF, DKIM, or DMARC records or enforce policy (checked 2026-07-18) | No enforcement capability | Agent drafts; you approve |
| DMARC report monitoringWhether the product collects DMARC reports for review.Parses aggregate, failure, and SMTP TLS reports into JSON/CSV and backends such as Elasticsearch, Splunk, and PostgreSQL, with Kibana and Grafana dashboards | Parses reports to backends | Agent analyzes reports |
| Limits & metering | ||
| Unlimited report retention on every paid planHow long report history remains available to your team.Unlimited on every Palisade paid plan; parsedmarc retention is whatever your own storage backend holds, and you size, pay for, and manage that storage | Your storage backend | Unlimited on paid plans |
| Portfolio-based MSP pricingWhether MSP pricing is based on the client-domain portfolio.The project is distributed as a self-hosted Python module and CLI rather than a commercial service, so it publishes no portfolio price; adopters supply the infrastructure and maintenance (checked 2026-08-29). Source (2026-08-29) | No portfolio price | Per client domain |
| MSP operations | ||
| ConnectWise, HaloPSA & Autotask integrationsWhether the product connects directly to the named PSA systems.Does not advertise any PSA integrations (checked 2026-07-18) | No PSA integrations | Native PSA integrations |
| API access on every planWhether every plan includes programmatic access to product data.Usable as a Python module and CLI, but there is no hosted service or REST API | No hosted REST API | Included on every plan |
| Hosted records & DNS | ||
| Hosted DMARC, SPF & MTA-STS recordsWhether the product hosts the listed authentication records.Does not manage or host DNS records (checked 2026-07-18) | No DNS record hosting | Hosted on managed DNS |
| SPF flatteningWhether SPF lookup chains can be reduced before publication.Does not advertise SPF flattening (checked 2026-07-18) | Not advertised | Hosted SPF flattening |
| DNS uptime guaranteeWhether hosted records are served through redundant managed DNS.parsedmarc is a self-hosted Python module and CLI, not a hosted DNS service, so a vendor DNS uptime guarantee does not apply (checked 2026-08-29). Source (2026-08-29) | No DNS hosting | Redundant managed DNS |
| AI and automation access | ||
| Published REST or GraphQL API for product dataWhether a customer can build against a documented hosted REST or GraphQL API.parsedmarc documents a Python module and CLI utility, plus an API reference for its package. It does not advertise a hosted REST or GraphQL API (checked 2026-08-27). Source (2026-08-27) | Python module and CLI | REST API published |
| MCP server for connecting AI assistants to domain dataWhether an AI assistant can reach the product's data directly.parsedmarc does not advertise an MCP server or an AI-assistant integration in its public documentation, which lists a Python module, CLI utility, and Python API reference (checked 2026-08-27). Source (2026-08-27) | No MCP server listed | MCP server published |
| Advertised AI or machine-learning featuresWhether the vendor advertises AI features and explains what they do.parsedmarc does not advertise an AI or machine-learning feature in its public documentation. The documented features cover report parsing, JSON or CSV output, dashboard backends, and outbound destinations (checked 2026-08-27). Source (2026-08-27) | No AI feature listed | Agent drafts fixes |
| Data export and webhook deliveryWhether report data can leave the product without working in its dashboard.parsedmarc documents JSON and CSV output and a webhook configuration that posts individual reports as a JSON body to aggregate, failure, and SMTP TLS webhook URLs (checked 2026-08-27). Source (2026-08-27) | JSON, CSV, and webhooks | REST API published |
Want to compare the workflow yourself? Try Palisade free with one domain and up to 1,000 emails a month.
Palisade 96 vs parsedmarc 50, and why
Both products are scored on the same eight dimensions the comparison hub uses, so the figures here are the figures there. Four are derived from vendor facts that each carry a source and a checked date. Four are editorial, marked as such below, and each states its reasoning and its source.
Each dimension is out of 10 and the total is the raw sum out of 80, rescaled to 100 — the raw figure is printed beside it so the conversion is checkable rather than a black box. Scored on what each vendor publishes, not on how the product feels in use. Editorial dimensions last reviewed 2026-09-02.
How reachable the product is from your own software and AI tools. 10 = a documented API on every plan plus a published MCP server. 6 = an API, gated to a tier or to a sales conversation. 3 = no programmatic access advertised.
parsedmarc publishes a Python API and CLI that write JSON, CSV, and webhooks to operator-run systems, but it does not publish a hosted service API or MCP server (checked 2026-08-28). Source (2026-08-28)
Palisade publishes a REST API and a remote MCP server on every plan, making the same domain data and remediation workflows available to connected software. Source (2026-08-30)
How much of the report analysis is done for you. 10 = the platform turns raw report data into a prioritised, actionable queue on its own.
It automates report collection, decompression, parsing, enrichment, and delivery while leaving prioritization and remediation to the operator's analysis systems. Source (2026-08-28)
Report data is analysed into a prioritised list of sender, SPF, DKIM and DMARC issues, so nobody reads raw XML. Source (2026-07-29)
How much of the work the vendor's own software does. 10 = it identifies the sending sources, drafts the SPF and DKIM fixes each one needs, and proposes the next policy step. 6 = it applies the records for you, but a person decides what to fix and when to advance. 3 = it reports, and every change is yours to make. A vendor whose team does the work rather than its software scores here on the software alone.
The package parses and exports report data but does not manage DNS records or propose policy changes, so the operator carries out every remediation and rollout step. Source (2026-08-28)
The agent investigates each sender, drafts the SPF and DKIM changes it needs, and proposes the next policy step; a human approves before deployment. Source (2026-08-30)
10 = full pricing published. 6 = some tiers published, rest quote-gated. 3 = quote only.
Free open-source software under the Apache 2.0 licence; operators pay for their own infrastructure. Source (2026-08-28)
Published: free plan, then flat monthly plans by email volume from $19/mo Source (2026-08-30)
10 = hosts the records for you. 6 = partial or add-on. 3 = you manage your own DNS.
No: the package parses reports and does not host or manage authentication records. Source (2026-08-28)
10 = a genuine free plan. 6 = time-limited trial only. 3 = no free access.
The complete package is free to use under the Apache 2.0 licence. Source (2026-08-28)
Free plan: one domain, up to 1,000 emails/mo, 14-day report history, no credit card, plus a 15-day full-product trial Source (2026-08-30)
10 = a real MSP program with multi-tenant management. 6 = partial. 3 = none.
No commercial MSP programme; it is a self-hosted open-source parser maintained as a software project. Source (2026-08-28)
How much work it takes to get a domain from p=none to p=reject. 10 = the platform (or the vendor's team) gets you there without manual DNS edits.
The package turns reports into structured data that supports operator-led policy work, but it does not manage DNS records or provide a staged workflow for changing DMARC policy. Source (2026-08-28)
The DMARC Agent detects when a domain's authentication and alignment are ready for the next policy stage and proposes the move, but a human still approves and applies it, so it is not fully hands-off. Source (2026-07-29)
Where Palisade and parsedmarc actually differ
Each argument keeps the product screens, sourced comparison points, and supporting analysis together.
Recommendations vs execution
How enforcement actually happens
parsedmarc is a Python module and CLI that watches a mailbox over IMAP, Microsoft Graph, or the Gmail API, parses incoming aggregate, failure, and SMTP TLS reports, and ships the results to backends such as Elasticsearch, Splunk, or PostgreSQL. Kibana and Grafana dashboards visualize the data. That is where the workflow ends: the docs describe no mechanism for changing SPF, DKIM, or DMARC records, so acting on the data is a separate manual job.
parsedmarc

- Agent does the enforcement work and evaluates policy readiness; you approve each step: No enforcement capability
- DMARC report monitoring: Parses reports to backends
Palisade

- Agent does the enforcement work and evaluates policy readiness; you approve each step: Agent drafts; you approve
- DMARC report monitoring: Agent analyzes reports
Palisade does the rest of that job. Its AI agent reads the same report data, identifies legitimate senders, configures SPF and DKIM for them, and progressively tightens the DMARC policy until the domain reaches p=reject, with each step approved by your team. With parsedmarc, a person interprets the dashboard and edits DNS by hand for every domain; with Palisade, enforcement is the product rather than a task the dashboard leaves behind.
License cost vs operating cost
What free actually costs
There is no license fee: parsedmarc is Apache 2.0 software you download and run. The costs sit elsewhere. You provide a server, mailbox access for report collection, and a storage and dashboard stack such as Elasticsearch with Kibana or OpenSearch with Grafana if you want visualization. You also own upgrades and breakage; the project is maintained by one developer who accepts sponsorships, and no commercial support or SLA is advertised (checked 2026-07-18).Source
parsedmarc
A relevant product screenshot was not available in the reviewed evidence.
- Unlimited report retention on every paid plan: Your storage backend
- Portfolio-based MSP pricing: No portfolio priceSource
Palisade
A relevant product screenshot was not available in the reviewed evidence.
- Unlimited report retention on every paid plan: Unlimited on paid plans
- Portfolio-based MSP pricing: Per client domain
Palisade publishes its self-serve IT-team pricing: a Free plan for one domain and up to 1,000 emails/month, flat monthly plans sized by email volume from $19/month (20% off on annual billing) with 2 to 20 set-up domains by tier (adding domains is free and unlimited), unlimited report retention on paid plans and API access on every plan, and a 15-day full-product trial. MSPs receive a free NFR domain and quoted, portfolio-based per-client-domain pricing with no client email metering. With retention unlimited on paid plans, there is no storage bill to size or prune.
What each side charges
Three points on each published range: the cheapest plan, one in the middle, and the top of what the vendor publishes. Every plan on both sides is in the pricing section further down.
- Open source / self-hosted$0 license (self-hosted)
Python CLI and module that parses aggregate (RUA), failure (RUF), and SMTP TLS reports from an inbox over IMAP, Microsoft Graph, or the Gmail API, with output to Elasticsearch, OpenSearch, Splunk, PostgreSQL, Kafka, S3, and other backends. You supply the hosting, storage, dashboards, and maintenance.
- Free$0
1 domain, your own, capped at 1,000 emails/mo
- IT teams: up to 500,000 emails/mo$59/mo ($47/mo billed annually)
Same product: 6 set-up domains, pick the tier that matches your sending
- Enterprise (more than 2.5M / month)Custom
Custom volume, retention, and terms
In-house control vs client scale
Who parsedmarc genuinely serves
parsedmarc fits engineering and security teams that already run a data stack and want DMARC report data inside their own infrastructure, including regulated environments where failure reports cannot leave the building. Since v8.19.0 it supports multi-tenant Elasticsearch and OpenSearch setups through index prefixes mapped to domains, so a technically staffed team can monitor several domains from one pipeline it fully controls.
parsedmarc

- ConnectWise, HaloPSA & Autotask integrations: No PSA integrations
- API access on every plan: No hosted REST API
Palisade

- ConnectWise, HaloPSA & Autotask integrations: Native PSA integrations
- API access on every plan: Included on every plan
The model stops scaling when the domains belong to clients. Every new client domain adds mailbox routing, parsing configuration, dashboard triage, and hand-edited DNS changes, with no PSA integrations, no client reporting layer, and no per-domain price to bill against. parsedmarc fits a team with engineering time that monitors a small set of its own domains and wants the data in-house.
Dashboard access vs programmatic access
parsedmarc's Python library and webhooks, without a published MCP server
parsedmarc publishes a Python module and CLI utility, with library API references for its package. It writes report data as JSON or CSV and can post individual aggregate, failure, and SMTP TLS reports to configured webhook URLs. The public documentation does not advertise a hosted REST or GraphQL API, MCP server, AI-assistant integration, or AI or machine-learning feature (checked 2026-08-27). Source (2026-08-27) Source 2 (2026-08-27)
parsedmarc
A relevant product screenshot was not available in the reviewed evidence.
Palisade
A relevant product screenshot was not available in the reviewed evidence.
- Published REST or GraphQL API for product data: REST API published
- MCP server for connecting AI assistants to domain data: MCP server published
- Advertised AI or machine-learning features: Agent drafts fixes
Palisade publishes an MCP server and a REST API. Its agent investigates senders, drafts SPF and DKIM fixes, and proposes each policy step. A human approves before anything ships.
Reachable from your own AI tools
Palisade's MCP server exposes 30 tools over OAuth, so the assistant your team already uses can read domains, pull the exact records to publish and work the task queue. These are the clients the connection guide walks through.
- Claude
- Codex
- Cursor
- Windsurf
- Any MCP client
Still deciding between parsedmarc and Palisade? See what changes with Palisade.
1 domain free up to 1,000 emails/month
The agent does the heavy lifting
Sources identified, SPF and DKIM fixes drafted, each policy step proposed. You approve; nothing ships on its own.
Connect your AI with MCP
30 tools over MCP, so your assistant reads your domains and works the queue.
Connect your DNS manager directly
Approved records go into your own zone at your own provider, across 64. No credentials reach us.
“We evaluated many DMARC providers before choosing Palisade. The quality of their product, the responsiveness and friendliness of their team and their rapid progress on their product roadmap made it a no-brainer for us to move forward.”
parsedmarc pricing explained (and how Palisade compares)
parsedmarc has no pricing page because there is nothing to buy: it is Apache 2.0 open-source software. The real cost structure is the infrastructure you host it on and the staff time spent on setup, integration, and upgrades.
What you'd actually pay
The same five buyer sizes on every comparison, so a shape carries from one page to the next.
1 domain, up to 1,000 emails a month
Apache 2.0 covers the software license only
2 set-up domains, up to 100K emails a month
Apache 2.0 covers the software license only
10 set-up domains, up to 1M emails a month
Apache 2.0 covers the software license only
20 set-up domains, up to 2.5M emails a month
Apache 2.0 covers the software license only
Client domains under management, any volume
Apache 2.0 covers the software license only
Palisade’s figures are derived from its published tiers. parsedmarc figures read from their pricing page on 2026-08-28. Plans and prices may have changed since.
How parsedmarc prices
- Apache 2.0 licensed; there is no license fee and no paid tier (checked 2026-07-18).
- Real costs are self-managed: a server to run it on, mailbox access for report collection, a storage and dashboard stack (Elasticsearch/Kibana, OpenSearch/Grafana, or Splunk) if you want visualization, and ongoing version upgrades.
- The project is maintained by one developer who accepts sponsorships; it does not advertise commercial support or an SLA (checked 2026-07-18).
- Requires Python 3.10+ on Linux, Windows, or macOS; a bundled IPinfo Lite database handles IP geolocation, with MaxMind GeoLite2 as an optional alternative.
How Palisade prices
- Palisade is a hosted service with published self-serve IT-team pricing: flat monthly plans sized by email volume from $19/month. MSP pricing is quoted per client domain based on portfolio size; parsedmarc's cost is servers, storage, and staff hours instead of a subscription.
- Palisade's AI agent carries the enforcement work through to p=reject with your approval; parsedmarc parses and stores reports, and every record change is a manual task it leaves to you.
- Palisade hosts DMARC, SPF and MTA-STS records with SPF flattening on redundant managed DNS; parsedmarc does not touch DNS at all.
- Palisade ships native ConnectWise, HaloPSA and Autotask integrations plus API access on every plan, including Free; parsedmarc offers data outputs you wire into your own tooling.
parsedmarc pricing read from their public pricing page on 2026-08-29.Plans and prices may have changed since.
Try Palisade free on one domain, or start a 15-day full-product trial with no credit card.
What each one covers, and where it stops
Published facts only, read from each vendor's own material. Neither column describes a hands-on trial, because we have not run one.
parsedmarc is self-hosted Apache 2.0 software for engineering and security teams that want DMARC report data in their own infrastructure. Its Python module and CLI parse aggregate, failure, and SMTP TLS reports from an inbox over IMAP, Microsoft Graph, or the Gmail API, then send them to a chosen backend.
Teams supply the hosting, storage, dashboards, and maintenance. parsedmarc can write report data to Elasticsearch, OpenSearch, Splunk, PostgreSQL, Kafka, S3, and other backends, with Kibana and Grafana used for visualization. No hosted subscription or paid tier is published; the operating cost is the infrastructure and staff time spent on setup, integration, and upgrades.
Palisade is built around an agent that does the DMARC work rather than reporting on it. It identifies every sending source, drafts the SPF and DKIM changes each one needs, and proposes the next policy step when the evidence supports it.
The agent investigates every sender, drafts every fix, and proposes each policy step, you approve before anything ships.
- Parses and sends aggregate, failure, and SMTP TLS reports to storage backends
- Uses the team's storage backend for report retention
- Provides JSON, CSV, and webhook report delivery
- The agent investigates senders and drafts the fix, so the work arrives prepared rather than as a list of findings
- Hosted SPF, DKIM and DMARC on redundant managed DNS, so an approved change can be carried out rather than handed off
- Portfolio workflow for MSPs, with ConnectWise, HaloPSA and Autotask integrations and a free NFR domain
- An MCP server and a REST API, so the same data and workflow are reachable from the AI tools a team already uses
- Does not advertise changes to SPF, DKIM, or DMARC records or policy enforcement
- Does not publish portfolio-based MSP pricing
- Does not advertise named ConnectWise, HaloPSA, or Autotask integrations
- Does not advertise a hosted REST or GraphQL API
- Does not advertise hosted DMARC, SPF, or MTA-STS record management
- Every policy change waits for a human approval, by design: nothing ships on the agent's own authority
- MSP pricing is quoted per client domain rather than published as a rate card
- Plans are sized by monthly email volume, so a low-domain, high-volume sender lands on a higher tier than domain count alone suggests
- Starts at
- $0 license (self-hosted)
- License model
- Apache 2.0
- Paid tier
- No paid tier
- Minimum runtime
- Python 3.10+
- Starts at
- Free for 1 domain; IT plans from $19/mo by email volume
- Free tier
- 1 domain, up to 1,000 emails/month
- Trial
- 15 days, full product, no credit card
- MSP model
- Quoted per client domain, portfolio-based
“Palisade made it so easy for us to get our blue verified checkmark and achieve our BIMI compliance”
Sources and further reading
Source checks run through 2026-07-18; every entry keeps its individual check date.
- parsedmarc documentation
Checked 2026-07-19
- parsedmarc documentation (self-hosted setup and configuration)
Checked 2026-07-19
- parsedmarc GitHub repository
Checked 2026-07-19
- parsedmarc GitHub project source
Checked 2026-07-19
- parsedmarc usage documentation (exports and webhooks)
Checked 2026-08-27
Palisade vs parsedmarc: FAQ
What is the main difference between parsedmarc and Palisade?
Palisade is agentic DMARC software. Its agent investigates sending sources, works through SPF and DKIM alignment, and moves domains toward p=reject while your team stays in control. When evaluating parsedmarc, compare that operating model with the workflow in its current product documentation and decide how much work you want your team to carry.
Who should choose Palisade?
Choose Palisade if you want an AI agent to carry routine DMARC work through enforcement, whether you manage one domain or thousands. It is also a natural fit for teams already using Claude, OpenAI, or other AI tools to get operational work done.
Who should choose parsedmarc?
Choose parsedmarc if its current integrations, procurement model, or operating workflow better match your requirements. A more operator-led platform can also fit a team that prefers to review reports and make each change itself.
Does Palisade guarantee a specific time to p=reject?
No responsible DMARC platform should promise the same enforcement timeline for every domain. Timing depends on the number of sending sources, access to DNS and third-party systems, and how quickly each legitimate stream can be aligned. Palisade's agent reduces routine investigation and configuration work while operators retain control over policy decisions.
Switching from parsedmarc takes three steps
- 1
Batch-import your domains
Bring your client domains into Palisade in bulk, or let your ConnectWise, HaloPSA, or Autotask integration sync them automatically.
- 2
Run both platforms in parallel
DMARC reporting supports multiple recipients, so Palisade and parsedmarc receive the same reports during the overlap window. Nothing breaks while you compare.
- 3
Cut DNS over on your schedule
Point records at Palisade's hosted infrastructure (redundant managed DNS), then retire the old setup when you're satisfied.
1 domain free up to 1,000 emails/month
Competitor information on this page was last reviewed against public sources on 2026-07-18. Spotted something out of date? Tell us and we'll fix it.

