DKIM

Find the signing keys a domain publishes, see how long they are, and catch the ones that are revoked, stuck in testing, or too short to be accepted.

Optional. Selectors cannot be listed from DNS, so we try the common ones — but if you have a DKIM-Signature header from a message this domain sent, the s= value in it is the selector to enter here.