You check if your email is blacklisted by looking up your sending domain and IP address against the major DNS-based blocklists, known as DNSBLs. Read the result carefully, since some lookups return an error that looks like a listing but is not. Most cold senders should check the domain first, because a shared mailbox has no dedicated IP of its own.
This page is the detail page for one signal covered in our cold email deliverability guide: a blacklist listing. For the wider set of reasons cold email lands in spam, read that guide first.
What is an email blacklist in cold outreach?
An email blacklist, usually called a DNSBL or RBL, is a list of IP addresses or domains that mail servers query before accepting a message, to decide whether to reject or flag it. A listing means some provider recorded spam, abuse or a compromised server at that address, not that your writing is the problem.
There are two kinds, and cold outreach senders need to tell them apart:
- IP blacklists list a sending server's IP address. They matter most to senders who own a dedicated sending IP, which most cold email setups on shared Google Workspace or Microsoft 365 infrastructure do not have.
- Domain blacklists list a sending domain itself, regardless of which IP it sends from. For cold email on shared mailbox infrastructure, this is the one that actually affects delivery.
Spamhaus describes a DNSBL as a list of IP address ranges or other information compiled and presented as a DNS zone. It is queried over DNS so the lookup is fast and cheap for a receiving mail server to run on every incoming connection, according to Spamhaus's own DNSBL usage FAQ.
Which email blacklists actually matter for cold email?
Four lists cover most of what blocks cold outreach mail: Spamhaus, Barracuda, SpamCop and SURBL/URIBL. Each one targets a different kind of bad behavior.
| List | What it lists | Checked by |
|---|---|---|
| Spamhaus ZEN (SBL + XBL + PBL + CSS combined) | IP addresses: known spam sources, compromised hosts, dynamic/residential ranges that should not send mail directly | Spamhaus's own ZEN page |
| Spamhaus DBL | Domains: spam, phishing, malware or botnet activity tied to a domain name | Spamhaus's DBL FAQ |
| Barracuda Reputation Block List (BRBL) | IP addresses with a poor reputation for sending valid email, manually verified | Barracuda Central's own lookups page |
| SpamCop Blocking List (SCBL) | IP addresses that sent mail reported as spam by SpamCop users, automatically time-limited | SpamCop's own blocking list page |
| SURBL / URIBL | Domains and URLs found inside message bodies, not the sending address itself | SURBL's own FAQ |
SURBL and URIBL do not list your sending domain unless a link inside your email points to a domain they list. A plain-text cold email with no tracking links or image domains rarely triggers either one.
Cold senders running on shared Google or Microsoft mailboxes should check the domain lists first. Start with Spamhaus DBL and domain reputation through Google Postmaster Tools, covered below. The IP belongs to the mailbox provider and is shared across thousands of other senders, so it is rarely something a single cold campaign controls or burns on its own.
How do you check if your cold email domain or IP is blacklisted?
You check a domain or IP against the major lists at once using a free multi-list lookup, then confirm any hit on the list's own site before acting on it. A free checker is a starting point, not the final word, because some checkers surface stale or third-party data.
- Run your sending domain, and your mailbox provider's outbound IP if you have one, through a free multi-list lookup tool such as our blacklist checker. Spamhaus's own Reputation Checker covers its own lists directly.
- For domain reputation at Gmail specifically, use Google Postmaster Tools. Google has retired the old high, medium, low and bad domain and IP reputation scores, confirmed in the FAQ on Google's own deprecation notice, which states the Domain and IP Reputation dashboards specifically "will be retired" and are not coming back in the new interface. The current dashboard shows spam rate, authentication pass rate and delivery errors instead, which together tell you what a reputation score used to.
- For Outlook.com and Hotmail recipients, sign up for Microsoft's Smart Network Data Services, known as SNDS, which reports complaint rates and trap hits for IPs you verify ownership of.
- If a lookup shows a hit, go to that specific list's own site and re-run the check there before concluding you are listed. A third-party aggregator can show outdated results.
Our domain checker reads your sending domain's DNS records, including SPF, DKIM, DMARC and MX. That is a different and necessary check alongside a blacklist lookup, since a domain can pass every blacklist check and still fail to authenticate. Our email deliverability test goes a step further and reads a real email you send through it, confirming what actually passed at the receiving server.
How do you read a blacklist check result without being misled?
You read a blacklist result correctly by checking whether the code returned is a real listing or an error about the query itself. A few DNSBLs return codes that look like a listing but mean something else entirely, and that catches out a surprising number of senders who panic over a false alarm.
Spamhaus's public DNSBL mirrors return the code 127.255.255.254 when a query is made through a public or open DNS resolver rather than your own mail server's resolver. They return 127.255.255.255 when a single source sends an excessive number of queries. Spamhaus's own technical notice on these codes states plainly that these error codes must not be interpreted as any sort of reputation or listed value.
The DBL zone has its own version of this: a direct IP query to the domain-only DBL zone returns 127.0.1.255, meaning IP queries are prohibited, according to Spamhaus's DBL FAQ. That code is not a listing either.
If a tool you are using reports one of those specific codes, re-run the check using your own mail server's resolver, or through the list's own web lookup form. Do not treat the result as proof you are blacklisted.
A genuine Spamhaus DBL listing instead returns a specific code for the reason. Spam domains return 127.0.1.2, phishing returns 127.0.1.4, malware returns 127.0.1.5, and botnet command and control domains return 127.0.1.6, per the same FAQ. Knowing which code came back tells you what kind of problem to fix, not just that one exists.
How do you get delisted from an email blacklist?
You get delisted by following the removal process on the specific list that flagged you, since each one has its own form, timeline and evidence requirement; there is no single universal delisting button.
- Spamhaus: submit a removal request through check.spamhaus.org. The form asks you to verify an email address tied to the domain or IP, then either removes the listing immediately or opens a ticket for review.
- Barracuda: submit the Barracuda Central removal request form with the IP, a contact email and a phone number. Barracuda staff review and adjust reputation manually.
- SpamCop: do nothing extra in most cases. SpamCop's own blocking list page describes it as time-based, resulting in quick and automatic delisting when reports stop, per SpamCop's own page. Without further reports, a listed address clears within 24 hours of the last one, per SpamCop's own FAQ on the SCBL.
- SURBL / URIBL: start from the SURBL Lookup page and follow the removal form linked from your specific result, per SURBL's own FAQ.
Delisting only sticks if the cause is actually fixed first. Relisting is common when a sender gets delisted, changes nothing, and triggers the same list again within days.
What is a spam trap and how does it cause a cold email blacklisting?
A spam trap is an email address set up specifically to catch senders with poor list practices, and sending to one is one of the fastest ways to end up on a blacklist. There are two main kinds, and they come from different mistakes.
- Pristine traps are addresses that were never a real inbox and never opted in to anything. They exist only to catch senders who scrape, buy or guess addresses rather than build a list of real prospects who have been individually researched.
- Recycled traps are addresses once real, abandoned by their owner, then reactivated by a mailbox provider or blocklist operator to catch senders still mailing stale addresses. Spamhaus's own explainer notes they make up the majority of spam traps overall.
Hitting even one pristine trap is a stronger signal against you than a handful of recycled-trap hits, because a pristine trap has no legitimate reason to be on any list in the first place. The practical defense for cold outreach is list hygiene. Verify every address before sending and avoid any purchased or scraped list; neither kind of trap can tell your prospecting apart from a spammer's by anything other than the practices behind it.
How does Pipefire pause a campaign before a blacklist listing gets worse?
Pipefire does not run blacklist lookups as a customer-facing check. What it does instead is watch the numbers that a blacklisting usually shows up in first: bounce rate and complaint rate. A campaign pauses automatically once hard bounces pass 3% of at least 20 sends in the last 7 days, or spam complaints pass 0.1%, whichever comes first. Pausing happens before a mailbox can keep sending into a domain that is already trending toward a listing.
Our health checks feature covers this in full: address verification before sending, the two thresholds above, and automatic removal of a mailbox from rotation the same hour it trips either one.
Email blacklist check cold email FAQ
Is a Spamhaus listing the same as a spam complaint?
No. A Spamhaus listing comes from Spamhaus's own data sources identifying spam, phishing, malware or botnet activity tied to an IP or domain. A spam complaint is a recipient at a specific mailbox provider like Gmail clicking "report spam," which is a separate signal that can lead to a listing but is not one by itself.
Does a blacklist check tell me if my cold emails are in the spam folder?
No. A blacklist check only tells you whether a list has recorded your domain or IP; it does not test where a specific email actually landed. For that, use our guide to checking if your cold emails go to spam, which covers header checks and placement tests.
Why does my blacklist checker show a result that isn't on the list's own site?
Third-party aggregator tools sometimes cache stale results or misread a list's return codes, including error codes that are not listings at all, such as Spamhaus's public-resolver error code. Always confirm a hit on the specific list's own site before acting.
Can one spam trap hit get a cold email domain blacklisted?
A single trap hit rarely triggers a listing on its own; most lists act on a pattern across multiple signals or multiple traps over time. Repeated hits, especially on pristine traps, raise the risk sharply, which is why list hygiene matters more than reacting after a hit.
Do I need to check IP blacklists if I send cold email from Google Workspace or Microsoft 365?
Usually not as a priority. The sending IP on shared mailbox infrastructure belongs to the provider and is shared across many senders, so it is rarely the thing one campaign affects. Checking domain reputation through Google Postmaster Tools or a domain-level DNSBL like Spamhaus DBL matters more for a shared-mailbox sender.