URIports vs Palisade in 2026
How URIports and Palisade compare on operating model, pricing, and fit for IT teams and MSPs.
Our verdict: Pick Palisade if you want an AI agent to carry the work through enforcement, whether you manage one domain or thousands. Pick URIports if your team prefers a traditional, operator-led workflow.
1 domain free up to 1,000 emails/month


Palisade is free for one domain, up to 1,000 emails a month. Paid IT-team plans are sized by email volume. Start a 15-day full-product trial with no credit card.
Which one is right for you?
Best for Small teams handling DNS edits
Best for MSPs and IT teams responsible for multiple domains
- You prefer a more traditional URIports workflow with people involved in each enforcement step.
- Your buying criteria center on vendor-specific enterprise requirements.
- Pick URIports if you want web-platform signals (CSP violations, Network Error Logging, certificate expiry, DNS record changes) in the same dashboard as DMARC reports and your team handles all DNS edits itself.
- Pick URIports if you monitor a small set of domains, 30 to 90 days of report history covers your workflow, and a low flat subscription matters more than executed enforcement.
- You run an MSP, or an internal IT or security team, responsible for multiple domains.
- You want an AI agent to investigate issues, configure authentication, and move domains toward p=reject.
- Teams already using Claude, OpenAI, or other AI tools can bring the same agent-led operating model to DMARC.
Free for one domain, up to 1,000 emails a month. Paid IT-team plans are sized by email volume. Start a 15-day full-product trial with no credit card.
Where the day-to-day work actually differs
| Feature | URIports | Palisade |
|---|---|---|
| Enforcement | ||
| Agent does the enforcement work and evaluates policy readiness; you approve each stepWhether the service prepares and carries enforcement work to a person for approval.URIports describes a monitoring workflow: users decide policy changes and add DNS records themselves; the platform organizes reports and alerts (checked 2026-07-18). | No agent-led enforcement | Agent drafts and proposes |
| DMARC report monitoringWhether the service collects DMARC reports for authentication review.URIports processes DMARC aggregate and failure reports, plus SMTP TLS-RPT. | DMARC and TLS-RPT reports | Agent analyzes reports |
| Limits & metering | ||
| Unlimited report retention on every paid planHow long DMARC report data remains available for review.URIports retention is 30 days on Pebble and Stone and 90 days on Mountain and Himalaya; no retention is published for Sand, and Enterprise offers custom retention periods (checked 2026-07-18). | No unlimited retention | Unlimited paid-plan retention |
| API access on every planWhether every plan includes programmatic access to DMARC data.URIports' API is available on Stone ($33/mo) and above. | Starts on Stone | Included on every plan |
| MSP operations | ||
| ConnectWise, HaloPSA & Autotask integrationsWhether the platform connects the named PSA tools to client-domain workflows.URIports does not advertise PSA integrations (checked 2026-07-18); it offers webhooks with Slack, Microsoft Teams, and Discord templates. | Not advertised | Native PSA integrations |
| Portfolio-based MSP pricingWhether MSP pricing is based on a portfolio of client domains.URIports prices by report quota and domain caps, with extra domains in packs of 10 for $12/mo. | No portfolio pricing | Per client domain |
| Hosted records & DNS | ||
| Hosted DMARC & SPF recordsWhether the provider hosts DMARC and SPF records for a domain.URIports hosts MTA-STS policies but does not advertise hosted DMARC or SPF records (checked 2026-07-18). | DMARC and SPF not hosted | Hosted on managed DNS |
| Hosted MTA-STSWhether the provider hosts MTA-STS policies for a domain.Included from Stone; available on Pebble as an optional $6/mo add-on bundled with DNS Monitor. | Stone or Pebble add-on | Hosted on managed DNS |
| SPF flatteningWhether the service reduces SPF DNS lookups before publication.URIports' own FAQ states it does not offer an SPF flattening service and recommends against the technique (checked 2026-07-18). | Not offered | Hosted SPF flattening |
| AI and automation access | ||
| Documented REST API for domain and DMARC statusWhether software can read domain data and manage monitored domains.URIports publishes a REST API for monitored-domain management and DMARC status; API access is available on the Stone plan and higher (checked 2026-08-27). Source (2026-08-27) | Stone plan and higher | REST API published |
| MCP server for connecting AI assistants to domain dataWhether an AI assistant can reach the product's data directly.URIports does not advertise an MCP server or AI-assistant integration on its public API or product pages (checked 2026-08-27). Source (2026-08-27) Source 2 (2026-08-27) | No MCP server listed | MCP server published |
| Programmatic access beyond the dashboardWhether the product can send machine-readable alerts or expose data to software.URIports publishes webhook notifications that send an HTTP POST with JSON when an alert occurs, alongside its REST API (checked 2026-08-27). Source (2026-08-27) Source 2 (2026-08-27) | API and JSON webhooks | REST API published |
| AI-guided sender investigation and DNS draftingWhether the vendor advertises AI that investigates senders or prepares authentication changes.URIports does not advertise AI or machine-learning product features on its public product page (checked 2026-08-27). Its core-capabilities list describes monitoring features instead. Source (2026-08-27) | No AI features listed | Agent drafts fixes |
Want to compare the workflow yourself? Try Palisade free with one domain and up to 1,000 emails a month.
Palisade 96 vs URIports 64, and why
Both products are scored on the same eight dimensions the comparison hub uses, so the figures here are the figures there. Four are derived from vendor facts that each carry a source and a checked date. Four are editorial, marked as such below, and each states its reasoning and its source.
Each dimension is out of 10 and the total is the raw sum out of 80, rescaled to 100 — the raw figure is printed beside it so the conversion is checkable rather than a black box. Scored on what each vendor publishes, not on how the product feels in use. Editorial dimensions last reviewed 2026-09-02.
How reachable the product is from your own software and AI tools. 10 = a documented API on every plan plus a published MCP server. 6 = an API, gated to a tier or to a sales conversation. 3 = no programmatic access advertised.
URIports publishes an API for domain management and DMARC status on Stone and higher plans but no MCP server. Source (2026-08-28)
Palisade publishes a REST API and a remote MCP server on every plan, making the same domain data and remediation workflows available to connected software. Source (2026-08-30)
How much of the report analysis is done for you. 10 = the platform turns raw report data into a prioritised, actionable queue on its own.
Broad report ingestion beyond DMARC (CSP, TLS-RPT, DNS monitoring) with webhook alerting into Slack and Teams; strong at telling you something changed. Source (2026-08-28)
Report data is analysed into a prioritised list of sender, SPF, DKIM and DMARC issues, so nobody reads raw XML. Source (2026-07-29)
How much of the work the vendor's own software does. 10 = it identifies the sending sources, drafts the SPF and DKIM fixes each one needs, and proposes the next policy step. 6 = it applies the records for you, but a person decides what to fix and when to advance. 3 = it reports, and every change is yours to make. A vendor whose team does the work rather than its software scores here on the software alone.
URIports prioritizes findings and sends alerts, but customers choose each SPF, DKIM, and DMARC change and advance policy themselves. Source (2026-08-28)
The agent investigates each sender, drafts the SPF and DKIM changes it needs, and proposes the next policy step; a human approves before deployment. Source (2026-08-30)
10 = full pricing published. 6 = some tiers published, rest quote-gated. 3 = quote only.
Published plans from $6 to $480 monthly on annual billing, plus optional domain and MTA-STS add-ons. Source (2026-08-28)
Published: free plan, then flat monthly plans by email volume from $19/mo Source (2026-08-30)
10 = hosts the records for you. 6 = partial or add-on. 3 = you manage your own DNS.
Partial: hosted MTA-STS is included or optional; other authentication records are monitored rather than hosted. Source (2026-08-28)
10 = a genuine free plan. 6 = time-limited trial only. 3 = no free access.
Free plan: one domain, up to 1,000 emails/mo, 14-day report history, no credit card, plus a 15-day full-product trial Source (2026-08-30)
10 = a real MSP program with multi-tenant management. 6 = partial. 3 = none.
Yes: client-domain labels, domain-scoped team access, API management, webhooks, and add-on domain packs. Source (2026-08-28)
How much work it takes to get a domain from p=none to p=reject. 10 = the platform (or the vendor's team) gets you there without manual DNS edits.
Hosts MTA-STS policies from the Stone tier but not DMARC or SPF records, and its FAQ recommends against SPF flattening, so the authentication work that gets a domain to reject stays manual. Source (2026-08-28)
The DMARC Agent detects when a domain's authentication and alignment are ready for the next policy stage and proposes the move, but a human still approves and applies it, so it is not fully hands-off. Source (2026-07-29)
Where Palisade and URIports actually differ
Each argument keeps the product screens, sourced comparison points, and supporting analysis together.
Manual monitoring vs managed enforcement
Monitoring and alerts vs executed enforcement
URIports collects DMARC aggregate and failure reports, plus SMTP TLS-RPT and browser security reports, and organizes them into a dashboard. Its DMARC page frames the product as decision support: it shows which sending sources are unknown, which fail SPF or DKIM alignment, and how much mail a stricter policy would affect. The user makes the enforcement call and edits DNS themselves; setup starts with manually adding a generated DNS record, then the platform watches and notifies via email, push, webhooks, or Telegram.
URIports

- Agent does the enforcement work and evaluates policy readiness; you approve each step: No agent-led enforcement
- DMARC report monitoring: DMARC and TLS-RPT reports
Palisade

- Agent does the enforcement work and evaluates policy readiness; you approve each step: Agent drafts and proposes
- DMARC report monitoring: Agent analyzes reports
Palisade's agent executes the work instead of reporting on it. It identifies legitimate senders, configures SPF and DKIM, and progressively tightens policy to p=reject. For an MSP running dozens of client domains, that difference is operational: with URIports, every quarantine or reject step on every domain is a manual DNS change your team performs; with Palisade, enforcement is the product's job and your team reviews the outcome.
Report quotas vs pricing clarity
Report quotas and retention caps vs published pricing
URIports meters processed reports per month: 10k on Sand up to 10M on Himalaya, with domain caps at each tier (3, 5, 25, 100, 400) and extra domains in packs of 10 for $12/mo on Stone and above. Retention is 30 days on Pebble and Stone and 90 days on Mountain and Himalaya; the pricing page does not publish a retention period for Sand. API access starts at Stone ($33/mo) and OIDC SSO at Mountain ($133/mo). The pricing page states email volume itself is unlimited.
URIports

- Unlimited report retention on every paid plan: No unlimited retention
- API access on every plan: Starts on Stone
Palisade
A relevant product screenshot was not available in the reviewed evidence.
- Unlimited report retention on every paid plan: Unlimited paid-plan retention
- API access on every plan: Included on every plan
Palisade publishes its self-serve IT-team pricing: a Free plan for one domain and up to 1,000 emails/month, flat monthly plans sized by email volume from $19/month (20% off on annual billing) with 2 to 20 set-up domains by tier (adding domains is free and unlimited), unlimited report retention on paid plans and API access on every plan, and a 15-day full-product trial. MSPs receive a free NFR domain and quoted, portfolio-based per-client-domain pricing with no client email metering. On paid plans retention never expires, and the API ships on every plan, so there is no API tier to plan around.
What each side charges
Three points on each published range: the cheapest plan, one in the middle, and the top of what the vendor publishes. Every plan on both sides is in the pricing section further down.
- Sand$1.25/mo minimum
10k reports/mo, 3 domains; listed for personal and hobby use, retention period not published
- Stone$33/mo ($30/mo annual)
500k reports/mo, 25 domains (extra packs of 10 for $12/mo), 30-day retention, API access, team access, DNS Monitor, Hosted MTA-STS, Certificate Monitor
- EnterpriseCustom - contact sales
Invoice billing, flexible payment terms, quotations, dedicated onboarding, custom report quotas, adjustable retention and domain limits, product and security support
- Free$0
1 domain, your own, capped at 1,000 emails/mo
- IT teams: up to 500,000 emails/mo$59/mo ($47/mo billed annually)
Same product: 6 set-up domains, pick the tier that matches your sending
- Enterprise (more than 2.5M / month)Custom
Custom volume, retention, and terms
Small-team flexibility vs MSP scale
Where URIports fits and where MSP scale strains it
URIports serves teams that want DMARC monitoring alongside web-platform signals: CSP violations, Network Error Logging, certificate expiry, and DNS record changes in one place. Its FAQ addresses MSP use directly: group client domains with labels, invite clients as team members scoped to their own domains, and add domains in packs of 10 without changing tiers. That works when clients are few and someone in-house owns the DNS edits each enforcement step requires.
URIports

- ConnectWise, HaloPSA & Autotask integrations: Not advertised
- Portfolio-based MSP pricing: No portfolio pricing
Palisade

- ConnectWise, HaloPSA & Autotask integrations: Native PSA integrations
- Portfolio-based MSP pricing: Per client domain
At MSP scale the model strains. Report quotas and domain caps force tier planning as clients are added, 30 or 90 days of retention limits look-back during a slow policy rollout, and every enforcement change across every client domain stays manual. URIports fits a team monitoring a handful of domains that wants web reporting signals in the same dashboard and is comfortable executing DMARC enforcement by hand.
Dashboard access vs programmatic access
URIports' Stone-tier REST API and JSON webhooks, with no public MCP listing
URIports publishes a REST API that can read DMARC status and manage monitored domains. It says API access starts on the Stone plan. URIports also publishes webhook notifications: when an alert occurs, it sends an HTTP POST with JSON to a customer-configured endpoint. Its public API documentation lists REST endpoints for DMARC status, domains, and domain groups; URIports does not advertise an MCP server or AI-assistant integration on its public API or product pages (checked 2026-08-27). It also does not advertise AI or machine-learning product features on its public product page (checked 2026-08-27). Source (2026-08-27) Source 2 (2026-08-27) Source 3 (2026-08-27)
URIports
A relevant product screenshot was not available in the reviewed evidence.
Palisade

- Documented REST API for domain and DMARC status: REST API published
- MCP server for connecting AI assistants to domain data: MCP server published
- Programmatic access beyond the dashboard: REST API published
Palisade publishes an MCP server at /mcp. Its agent investigates senders, drafts SPF and DKIM fixes, and proposes each policy step. A human approves before anything ships.
Reachable from your own AI tools
Palisade's MCP server exposes 30 tools over OAuth, so the assistant your team already uses can read domains, pull the exact records to publish and work the task queue. These are the clients the connection guide walks through.
- Claude
- Codex
- Cursor
- Windsurf
- Any MCP client
Still deciding between URIports and Palisade? See what changes with Palisade.
1 domain free up to 1,000 emails/month
The agent does the heavy lifting
Sources identified, SPF and DKIM fixes drafted, each policy step proposed. You approve; nothing ships on its own.
Connect your AI with MCP
30 tools over MCP, so your assistant reads your domains and works the queue.
Connect your DNS manager directly
Approved records go into your own zone at your own provider, across 64. No credentials reach us.
“We evaluated many DMARC providers before choosing Palisade. The quality of their product, the responsiveness and friendliness of their team and their rapid progress on their product roadmap made it a no-brainer for us to move forward.”
URIports pricing explained (and how Palisade compares)
URIports prices five tiers by monthly report volume and domain count, from Sand at a $1.25/mo minimum (10k reports, 3 domains) to Himalaya at $530/mo (10M reports, 400 domains), with a custom enterprise option. Annual billing lowers Pebble through Himalaya, and extra domains come in packs of 10 for $12/mo on Stone and above.
What you'd actually pay
The same five buyer sizes on every comparison, so a shape carries from one page to the next.
1 domain, up to 1,000 emails a month
Sand: personal and hobby use, 3 domains, 10k reports/mo; no 1-domain tier published
2 set-up domains, up to 100K emails a month
Pebble: 5 domains, unlimited email volume, 100,000 reports/mo; no 2-domain tier published
10 set-up domains, up to 1M emails a month
Stone: 25 domains, unlimited email volume, 500,000 reports/mo; no 10-domain tier published
20 set-up domains, up to 2.5M emails a month
Stone: 25 domains, unlimited email volume, 500,000 reports/mo; no 20-domain tier published
Client domains under management, any volume
Standard plan required; Stone includes 25 domains at USD 30/mo billed annually
Palisade’s figures are derived from its published tiers. URIports figures read from their pricing page on 2026-08-28. Plans and prices may have changed since.
How URIports prices
- The metering unit is processed reports per month (10k to 10M depending on tier); the pricing page states email volume itself is unlimited.
- Report retention is 30 days on Pebble and Stone and 90 days on Mountain and Himalaya; the pricing page does not state a retention period for Sand, and Enterprise offers adjustable retention periods.
- Extra domains cost $12/mo per pack of 10 on Stone and above.
- API access starts at the Stone tier ($33/mo); OIDC SSO starts at Mountain ($133/mo).
- One-month free trial, no payment method required.
- What happens when a report quota is exceeded is not specified on the pricing page (checked 2026-07-18).
How Palisade prices
- Palisade publishes self-serve IT-team plans sized by email volume from $19/month with 2 to 20 set-up domains by tier (adding domains is free and unlimited), and prices MSPs per client domain so MSP cost tracks client count; URIports gates tiers by monthly report quota and domain caps (3, 5, 25, 100, 400).
- Palisade includes unlimited report retention on every paid plan; URIports retains report data for 30 days on Pebble and Stone and 90 days on Mountain and Himalaya (no retention period is published for Sand).
- Palisade includes API access on every plan, including Free; URIports' API starts at the Stone tier ($33/mo).
- Palisade's agent does the enforcement work, configuring SPF and DKIM and tightening policy to p=reject with your approval; URIports monitors and alerts while your team makes every DNS and policy change by hand.
URIports pricing read from their public pricing page on 2026-07-18.Plans and prices may have changed since.
Try Palisade free on one domain, or start a 15-day full-product trial with no credit card.
What each one covers, and where it stops
Published facts only, read from each vendor's own material. Neither column describes a hands-on trial, because we have not run one.
URIports combines DMARC aggregate and failure-report monitoring with SMTP TLS-RPT and web-platform signals such as CSP violations, Network Error Logging, certificate expiry, and DNS record changes. Its dashboard shows unknown sending sources, SPF or DKIM alignment failures, and the potential effect of a stricter DMARC policy.
URIports sells five published tiers based on monthly report quota and domain count, with an Enterprise option for custom terms. It suits teams that want to monitor a small portfolio while handling each DNS and policy change themselves, using alerts, team access, labels, and scoped client access as needed.
Palisade is built around an agent that does the DMARC work rather than reporting on it. It identifies every sending source, drafts the SPF and DKIM changes each one needs, and proposes the next policy step when the evidence supports it.
The agent investigates every sender, drafts every fix, and proposes each policy step, you approve before anything ships.
- Processes DMARC aggregate and failure reports alongside SMTP TLS-RPT
- Provides hosted MTA-STS on Stone and as a Pebble add-on
- Provides a REST API from Stone and JSON webhooks for alerts
- The agent investigates senders and drafts the fix, so the work arrives prepared rather than as a list of findings
- Hosted SPF, DKIM and DMARC on redundant managed DNS, so an approved change can be carried out rather than handed off
- Portfolio workflow for MSPs, with ConnectWise, HaloPSA and Autotask integrations and a free NFR domain
- An MCP server and a REST API, so the same data and workflow are reachable from the AI tools a team already uses
- Does not advertise agent-led enforcement work and policy-readiness evaluation with operator approval
- Does not publish unlimited report retention
- Does not advertise named ConnectWise, HaloPSA, or Autotask integrations
- Does not advertise hosted DMARC or SPF records
- Does not offer SPF flattening
- Every policy change waits for a human approval, by design: nothing ships on the agent's own authority
- MSP pricing is quoted per client domain rather than published as a rate card
- Plans are sized by monthly email volume, so a low-domain, high-volume sender lands on a higher tier than domain count alone suggests
- Starts at
- $1.25/mo minimum
- Free trial
- One month; no payment method required
- Retention
- Pebble/Stone: 30 days; Mountain/Himalaya: 90 days
- API tier
- Stone, $33/mo
- Starts at
- Free for 1 domain; IT plans from $19/mo by email volume
- Free tier
- 1 domain, up to 1,000 emails/month
- Trial
- 15 days, full product, no credit card
- MSP model
- Quoted per client domain, portfolio-based
“Palisade made it so easy for us to get our blue verified checkmark and achieve our BIMI compliance”
Sources and further reading
Source checks run through 2026-07-18; every entry keeps its individual check date.
- URIports homepage
Checked 2026-07-18
- URIports pricing, access check
Checked 2026-08-27
- URIports DMARC monitoring
Checked 2026-07-18
- URIports FAQ, access check
Checked 2026-08-27
- URIports product overview, automation check
Checked 2026-08-27
- URIports API
Checked 2026-08-27
- URIports webhook notifications
Checked 2026-08-27
- URIports changelog
Checked 2026-08-27
- URIports site map
Checked 2026-08-27
Palisade vs URIports: FAQ
What is the main difference between URIports and Palisade?
Palisade is agentic DMARC software. Its agent investigates sending sources, works through SPF and DKIM alignment, and moves domains toward p=reject while your team stays in control. When evaluating URIports, compare that operating model with the workflow in its current product documentation and decide how much work you want your team to carry.
Who should choose Palisade?
Choose Palisade if you want an AI agent to carry routine DMARC work through enforcement, whether you manage one domain or thousands. It is also a natural fit for teams already using Claude, OpenAI, or other AI tools to get operational work done.
Who should choose URIports?
Choose URIports if its current integrations, procurement model, or operating workflow better match your requirements. A more operator-led platform can also fit a team that prefers to review reports and make each change itself.
Does Palisade guarantee a specific time to p=reject?
No responsible DMARC platform should promise the same enforcement timeline for every domain. Timing depends on the number of sending sources, access to DNS and third-party systems, and how quickly each legitimate stream can be aligned. Palisade's agent reduces routine investigation and configuration work while operators retain control over policy decisions.
Switching from URIports takes three steps
- 1
Batch-import your domains
Bring your client domains into Palisade in bulk, or let your ConnectWise, HaloPSA, or Autotask integration sync them automatically.
- 2
Run both platforms in parallel
DMARC reporting supports multiple recipients, so Palisade and URIports receive the same reports during the overlap window. Nothing breaks while you compare.
- 3
Cut DNS over on your schedule
Point records at Palisade's hosted infrastructure (redundant managed DNS), then retire the old setup when you're satisfied.
1 domain free up to 1,000 emails/month
Competitor information on this page was last reviewed against public sources on 2026-07-18. Spotted something out of date? Tell us and we'll fix it.

