Gmail to Start Testing Brand Logo Validation System for Emails - MacRumors
Skip to Content

Gmail to Start Testing Brand Logo Validation System for Emails

Google this week announced several new security features for its G Suite services, and the most notable for Gmail users is a pilot of an email specification that allows brand logos to display within authenticated emails.

gmail logo display
Brand Indications for Message Identification (BIMI) is developed by the AuthIndicators Working Group, and requires emails to pass Google's anti-abuse validation, after which it brands the incoming message with a logo of the company that sent it.

Our BIMI pilot will enable organizations, who authenticate their emails using DMARC, to validate ownership of their corporate logos and securely transmit them to Google. Once these authenticated emails pass all of our other anti-abuse checks, Gmail will start displaying the logo in existing avatar slots in the Gmail UI.

By authenticating messages using the existing DMARC system and requiring strong authentication, the spec aims to give users and email security systems increased confidence in the source of emails while creating a trusted brand presence.

Google says it will be starting the BIMI pilot in the coming weeks with a limited number of senders. To learn more about BIMI, you can visit the working group's website.

Tag: Gmail

Popular Stories

Apple Event Logo

Apple to Release These 15 New Products Later This Year

Friday June 12, 2026 7:45 am PDT by
Apple's annual WWDC developers conference is drawing to a close, but there is still a lot to look forward to in the second half of the year. Apple is expected to release at least 15 more products later this year. Now that the more intelligent and personal version of Siri has finally arrived in beta, a full two years after Apple first previewed it at WWDC 2024, we should begin to see some new ...
Apple Lists 250 Changes Across iOS 27 and More Feature

Apple Shares List of 250 Changes Across iOS 27, macOS Golden Gate, and More

Wednesday June 10, 2026 1:34 pm PDT by
During its WWDC 2026 keynote on Monday, Apple briefly showed a slide with hundreds of new features and enhancements coming across iOS 27, macOS 27 Golden Gate, watchOS 27, tvOS 27, and visionOS 27. All of the software updates are currently available as developer betas, and they are expected to be released to all users in September. We already highlighted some of the key new features from the ...
liquid glass app icon

Apple Maps to Get These 10 New Features in iOS 27

Thursday June 11, 2026 5:45 am PDT by
Apple Maps is getting a range of new features in iOS 27, headlined by an upgraded Flyover experience that uses AI to improve the realism and detail of its aerial imagery. Flyover is a longstanding feature of Apple Maps and lets users explore more than 350 cities in 3D with detailed landmarks, roads, parks, and buildings. Apple described the enhanced Flyover in iOS 27 as combining aerial...

Top Rated Comments

77 months ago
Maybe Google should have a chat with Twitter about how well these "verification" systems work.

Also, I'm sure there's some subtle irony in using CNN in their graphic...
Score: 8 Votes (Like | Disagree)
B4U Avatar
77 months ago
Hey, Google. No need to remind everyone that you peek at the emails. 🤣
Score: 4 Votes (Like | Disagree)
77 months ago
authentic fake news.
Score: 3 Votes (Like | Disagree)
Dezryth Avatar
77 months ago
Certified verified fake news straight to my Inbox?? Thanks Google! :P
Score: 2 Votes (Like | Disagree)
77 months ago
Glad to see Google authenticating their customers
Score: 2 Votes (Like | Disagree)
77 months ago
Oh, yes... BIMI. It's useless without VMC (Verified Mark Certificates), possibly even creates false security...
Why? It doesn't protect from lookalike domains. Everyone can setup a lookalike domain like "macrumrs.com" and setup BIMI on that, put the MR logo. SPF, DKIM, DMARC... all of that will pass with flying colors. S/MIME signing has the same issue.

As for BIMI: We don't need any further protection from fake "FROM:" emails. Spoofed emails end up in the junk anyway thanks to SPF and possibly DKIM.

All of this nonsense could be eliminated when the sending server simply signs the emails using a (manually) validated cert for the sending domain.

However, there are to many backward people that think that, before touching the core of the mail-server they rather build another system around it. For example, Microsoft doesn't even support DKIM on Microsoft Exchange Server.
Score: 1 Votes (Like | Disagree)