Return-Path: <bounce@spoofed.example>
Received: from unknown (unknown [198.51.100.66])
	by mx1.meridiansupply.example with ESMTP id p7aa02;
	Tue, 17 Feb 2026 08:05:02 -0800
Received-SPF: fail (brightside.example: domain of bounce@spoofed.example does not designate 198.51.100.66 as permitted sender) client-ip=198.51.100.66;
Authentication-Results: mx1.meridiansupply.example;
	spf=fail smtp.mailfrom=spoofed.example;
	dkim=fail reason="signature verification failed" header.d=brightside.example header.s=feb2026;
	dmarc=fail (p=REJECT sp=REJECT) header.from=brightside.example
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=brightside.example; s=feb2026; t=1771200000;
	h=from:to:subject:date:message-id;
	bh=SAMPLEbodyHashBase64Placeholder0000000000000=;
	b=SAMPLEsignatureBase64Placeholder00000000000000000000000000000000/NOTREAL=
From: Maya Chen <maya@brightside.example>
To: Sam Rivera <sam@meridiansupply.example>
Subject: Order confirmation (all checks fail)
Date: Tue, 17 Feb 2026 08:05:00 -0800
Message-ID: <p7-auth-fail@brightside.example>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit

The authentication headers are the fixture; the body is filler.
Every DKIM and ARC value in this message is a visible SAMPLE placeholder
and will not verify against any key.
