It appears that what you're missing is that this one "flaw" is not enough
to get mail rejected by policyd-weight. Policyd-weight, much like SA,
works on cumulative scoring. One "bad" thing isn't going to get your mail
rejected. But, in general, spam, viruses, phishing scams, et. al. will
not only not be listed as an MX in DNS, they also won't reverse. They
also forge the domain. They also lie about the sender domain. They also
come from dialups or from known "spammy" servers. So, the *cumulative*
effect is that the mail gets rejected.

One "flaw" such as a missing MX record is not going to cause a problem.

