dmcn business Log in Talk to us
Platform Security Sovereignty Pricing For personal use
Log in Talk to us
DMCN for business

Email fraud, made impossible. Not filtered — impossible.

DMCN replaces email's 1982 trust model with cryptographic identity: a message from an unverified sender is never delivered, and a message from a verified sender cannot be forged. Your mail is encrypted before it ever reaches us — and the keys stay with your organization, never with us.

Book a design-partner pilot How it works
Emails Gmail and Outlook from day one · Your domain, your DNS · We hold no keys
$3.05B

lost to business email compromise in 2025 alone — roughly $123,000 per reported incident.

FBI IC3, 2025
89%

of unwanted email technically passed SPF, DKIM and/or DMARC. Authentication verifies domains — it has never verified people.

Cloudflare, 2023
0.06%

of 81.6 million real emails were end-to-end encrypted, in the largest study ever done. Pushing key custody onto end users killed every previous attempt.

IEEE S&P, 2022

The tools you already pay for filter fraud. They cannot make it impossible — the protocol underneath has no idea who anyone is. That is the part we replaced.

Why DMCN

We didn't build a better filter. We replaced the trust model.

Senders can't be forged

Every DMCN message carries its sender's cryptographic signature, verified before delivery. Impersonating your CEO, your bank or your suppliers isn't detected and filtered — it's structurally impossible.

Your admin holds the keys

Mail is end-to-end encrypted, and on a managed domain your own administrator — not us, not each employee — is the custodian. A lost laptop or a departure is recovered by your org in minutes. We can't read anything, ever.

No rip-and-replace

The bridge keeps you emailing Gmail, Outlook and every legacy address from day one, with SPF, DKIM and DMARC alignment handled for you. Mail between DMCN inboxes is always end-to-end encrypted.

Your domain stays yours

You keep your own DNS as the trust root and consent is mutual and revocable — we hold no zone and no keys, so we are structurally incapable of impersonating your domain or being compelled to hand over your mail.

Admin key custody

The keys stay in your building.

Encrypted email failed for 25 years because key custody was dumped on end users. On a managed domain, your administrator is the custodian — never each employee, and never us. The provider can't read the mail; your organization can always recover it.

Onboard in minutes
Your admin provisions each mailbox and pairs it to the employee's devices with a short verification code. No passwords to distribute, nothing for us to see.
Recover without us
Lost or stolen laptop? Your admin re-pairs the account the same way. Recovery never involves DMCN — the custody boundary is inside your organization.
Offboard instantly
When someone leaves, one rotation locks every device they hold out of the mailbox — immediately, and provably. The address is re-keyed and work continues.
Managed domain acme.example
Sara Lindqvist
sara@acme.example
Active
Tom Okafor
tom@acme.example
Active
New starter
devices: 0 — pair to onboard
Provisioned
Departed 12 Jul
j.doe@acme.example
Rotated · locked out
Pair a device Rotate & lock out
Deployment

No rip-and-replace. Four steps.

01

Keep your domain

Publish two DNS records at your own domain. Your DNS stays the root of trust — we never touch your zone.

02

Enroll mutually

Your domain authorizes us to serve it; our fleet accepts your domain. Two explicit cryptographic consents — either side can revoke.

03

Provision your team

Your admin mints each mailbox and pairs employees' devices with a short verification code. Keys stay inside your organization.

04

Mail everyone

Legacy mail flows through the bridge with authentication alignment handled for you. Mail between DMCN inboxes is end-to-end encrypted from the first message.

Sovereignty

“We hold no zone and no keys. We are structurally incapable of reading your mail, impersonating your domain, or being compelled to do either.”

Your DNS stays the root of trust, consent is mutual and revocable, and your address book survives us. That's not a contract clause — it's the architecture.

Why sovereignty buyers pick DMCN
Start here

A 30-day pilot with drills, not demos.

We don't ask you to believe the pitch — we ask you to watch the drills pass on your own domain, with your own admin holding the keys. Success criteria agreed up front, in writing.

Talk to us See pricing
The design-partner pilot 30 days
One managed domain on your own DNS, your team's real mailboxes
Bridge enabled — everyone keeps emailing Gmail, Outlook and suppliers
An offboarding drill: rotate a real account, watch its devices go dark
A recovery drill: a lost device re-paired by your admin in minutes
A spoofing demonstration against your current stack, side by side
Design-partner input into the admin console and retention roadmap

Questions, answered straight.

Nobody we email is on DMCN. Does it still work?

Yes — that's what the bridge is for. Your team keeps emailing every normal address from day one, and we handle SPF, DKIM and DMARC alignment on outbound so your mail lands in inboxes. Every counterparty who adopts DMCN upgrades that channel to end-to-end encryption automatically. You buy it for what it does inside your organization today; the network effect is upside, not a prerequisite.

What happens when an employee loses a device — or leaves?

That's the headline feature, not the fine print. On a managed domain your admin custodies the keys: a lost laptop is re-paired in minutes, and offboarding is a rotation that locks every device the departed employee holds out of the mailbox immediately. This is exactly the key-management problem that sank S/MIME and PGP — DMCN was designed around it.

Can DMCN read our mail?

No. Mail is encrypted on your devices, our servers hold no key material — not even encrypted copies — and there is nothing on our side to read, leak or hand over. On a managed domain your own administrator can recover accounts; we never can. The two-sided guarantee: the provider can never read the mail, your organization's administrator can.

Is mail to Gmail and Outlook end-to-end encrypted?

No, and we won't pretend otherwise. Mail crossing the bridge to legacy email is protected in transit (TLS), like all email today — that's the floor, never the ceiling. Mail between DMCN inboxes never touches the bridge and is always end-to-end encrypted. If you want us out of the trust path entirely, you can run your own bridge.

What about compliance and eDiscovery?

Every message is signed at composition — tamper-evident and non-repudiable, which is stronger evidence than ordinary email. Admin key custody answers recovery; for retention, encrypted archive-on-send to an organization archive key is designed and on the roadmap, and design partners shape it. We'll be straight with you about what's built versus planned.

What if DMCN disappears?

The protocol is open and identity records are self-certifying: your keys, your domain and your mail remain yours and remain verifiable without us. No incumbent provider can make that claim. You can also export everything at any time.

Put email fraud out of business.

One email starts the conversation. Thirty days proves it on your own domain.

Book a design-partner pilot