Scope and price
What is included, what is not, and what it costs.
Each price sits next to what it covers and where its scope ends, so you can decide before anyone starts work. Prices in pounds sterling.
Standard project
Email authentication finished and documented
One domain, one main mail provider and up to three agreed sending services. Usually four to six weeks. Half on agreeing the scope, half on acceptance.
- Two live sessions with whoever controls your DNS.
- Sender inventory, a record of the settings before we start, and a way back from every change.
- One round of agreed corrections after the second session.
- A dated record for your file: the services confirmed and their tests, the settings before and after, and the reasons for the policy.
- Acceptance against that record, not against a score.
Not included
- Additional domains, or more than three sending services — quoted separately once we have looked.
- Migrating your mail platform, or fixing an unrelated deliverability problem.
- Reaching a reject policy where the evidence says it would block legitimate mail. We will say so rather than push.
- Monitoring after acceptance, which is offered separately.
If something goes wrong
We help put right any problem caused by a change we guided, at no extra charge.
Larger or more complicated
Several domains, a migration in flight, or a long list of senders. Quoted after a look rather than from a list. That range is a starting point, not a price.
Not included
- Monitoring after acceptance, which is offered separately.
Ongoing monitoring
Offered after your project is accepted, once monitoring for your domain is set up and tested: one domain, a written scope and a stated limit on human time.
Questions firms ask before deciding
We already have an IT provider. Why would we need you?
Because the project is built around them. Your IT provider or administrator makes every change in your DNS and mail settings; we bring the inventory of services that send as your firm, the tests, the review of the reports and the record. They keep the relationship, and they end up with a record they can maintain.
Do you need our passwords or access to our systems?
No. We never ask for passwords, and we do not need access to your DNS, your mailboxes or your Microsoft 365 tenant. Your administrator makes the changes while we go through them together, and we work from what is published and from the reports receivers send.
What if a reject policy is not right for us yet?
Then we do not set it. Reject is the aim once every legitimate service passes and the person responsible agrees. If a service cannot be fixed within the project, the record says which one, why, and which policy is safe in the meantime. That is part of the result, not a failure of it.
We use Microsoft 365 or Google Workspace. Isn't this already done?
Your mail platform looks after its own mail. It does not know about the other services that send as your firm, such as case management, billing, newsletters or an office scanner, and signing with your own domain may not be switched on. The DMARC policy is a decision nobody makes for you. We check what is published and what actually sends.
What is monitored, and for how long?
During the project we review the aggregate reports receivers send, because the policy decision depends on them. Monitoring after acceptance is a separate service with its own price, a written scope and a stated limit on human time. You decide on it once the project is accepted.
What if we only need one thing fixed?
Say so when you request the call. If it really is one agreed fault with one service, we quote a smaller scope instead of the full project, and tell you what that scope leaves out.
How do we know the project is finished?
It is accepted against the record, not against a score. The record lists the services confirmed and their test results, the settings before and after, each change with a way back, the policy decision with its reasons, and every open item with an owner. See a sample record.
Can we stop part-way through?
Yes. The written order you receive before any work starts sets out how either side can stop, and what is due for work already done.
For IT providers and MSPs
Keep the client relationship.
Bring us in for a defined project with an agreed scope, responsibilities and handover. Referral terms are agreed in writing before the work starts.
Northstar Infinity Works Ltd, company no. 17326480. Who we are · Check what your domain publishes