MailboxWarm
Clear boundaries. Deliberate access.
This is an implementation preview, not a security certification or a production service.
Separate identities
App login and mailbox authorization are different credentials. The backend verifies app identity and enforces workspace ownership on reads and changes.
No live secrets yet
The preview does not accept mailbox passwords or OAuth tokens. Credential storage and provider access are separate implementation gates.
Controls before launch
TLS, encryption, destination restrictions, permission review, restore testing, and verified sending limits are release requirements—not claims that an unfinished implementation already satisfies.