27 endpoints under /api/v1/email.
List send keys (metadata only — never a secret)
Responses
Response body
sendKeysEmailSendKey[]requiredShow fields
idstringrequirednamestringrequiredkeyIdstringrequireddomainIdsstring[]requiredcreatedAtstringrequiredlastUsedAtstring
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Mint a send key
The plaintext secret is returned ONCE. Minting a long-lived credential is admin-tier (email.key.admin) — org-wide for an unrestricted key.
Request body
namestringrequireddomainIdsstring[]
Responses
Response body
sendKeyobjectrequiredShow fields
idstringrequirednamestringrequiredkeyIdstringrequireddomainIdsstring[]requiredcreatedAtstringrequiredlastUsedAtstring
secretstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
List inbound routes
Responses
Response body
routesEmailRoute[]requiredShow fields
idstringrequireddomainIdstringrequiredpatternstringrequiredendpointIdstringrequiredcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Create an inbound route
Pattern is the local part: exact, trailing-star prefix, or '*'. The domain must be receive-armed; the endpoint must be the org's.
Request body
domainIdstringrequiredpatternstringrequiredendpointIdstringrequired
Responses
Response body
idstringrequireddomainIdstringrequiredpatternstringrequiredendpointIdstringrequiredcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
List the org's Email domains
Responses
Response body
domainsEmailDomain[]requiredShow fields
idstringrequirednamestringrequiredsendStatestring · enumrequiredpendingverifiedfailedreceiveStatestring · enumrequirednonependingverifiedfailedcreatedAtstringrequireddnsRecordsEmailDnsRecord[]requiredShow fields
capabilitystring · enumrequiredsendreceivetypestringrequirednamestringrequiredvaluestringrequiredpriorityinteger
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Register a domain
Returns the DNS records to publish. 409 when the name has a live claim anywhere (SES identities are account-global).
Request body
namestringrequired
Responses
Response body
idstringrequirednamestringrequiredsendStatestring · enumrequiredpendingverifiedfailedreceiveStatestring · enumrequirednonependingverifiedfailedcreatedAtstringrequireddnsRecordsEmailDnsRecord[]requiredShow fields
capabilitystring · enumrequiredsendreceivetypestringrequirednamestringrequiredvaluestringrequiredpriorityinteger
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
List webhook endpoints
Responses
Response body
webhooksEmailWebhook[]requiredShow fields
idstringrequiredurlstringrequiredeventTypesstring[]requireddisabledbooleanrequiredcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
The message log (metadata; 90-day window)
Parameters
-
directionquery string · enum -
statequery string -
domainIdquery string -
toquery string -
sincequery string -
cursorquery string
Responses
Response body
messagesEmailMessage[]requiredShow fields
idstringrequireddirectionstring · enumrequiredsendreceivestatestringrequiredfromstringrequiredtostring[]requiredccstring[]subjectstringsizeBytesintegerrequireddoorstringdomainIdstringrequiredlastErrorstringcreatedAtstringrequiredsentAtstringstateAtstringrequired
cursorstring
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
The org's sending posture (read-only)
Quota raises and unpause are staff actions (ADR 0049 §6) — there is deliberately no org-side settings write.
Responses
Response body
dailyQuotaintegerrequiredpausedbooleanrequiredpausedAtstringpauseReasonstringbouncePausePctnumbercomplaintPausePctnumberacceptedTodayinteger
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Create a webhook endpoint
The signing secret is returned ONCE (rotate for a new one).
Request body
urlstring · urirequiredeventTypesstring · enum[]required
Responses
Response body
webhookobjectrequiredShow fields
idstringrequiredurlstringrequiredeventTypesstring[]requireddisabledbooleanrequiredcreatedAtstringrequired
signingSecretstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Revoke a send key
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Delete an inbound route
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
One domain, with its DNS records
Parameters
-
idpath string required
Responses
Response body
idstringrequirednamestringrequiredsendStatestring · enumrequiredpendingverifiedfailedreceiveStatestring · enumrequirednonependingverifiedfailedcreatedAtstringrequireddnsRecordsEmailDnsRecord[]requiredShow fields
capabilitystring · enumrequiredsendreceivetypestringrequirednamestringrequiredvaluestringrequiredpriorityinteger
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
The org's suppression list
Responses
Response body
suppressionsEmailSuppression[]requiredShow fields
idstringrequiredaddressstringrequiredreasonstring · enumrequiredbouncecomplaintmanualcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Suppress an address (manual)
Request body
addressstringrequired
Responses
Response body
idstringrequiredaddressstringrequiredreasonstring · enumrequiredbouncecomplaintmanualcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Delete a domain
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
One message, with its delivery events
Parameters
-
idpath string required
Responses
Response body
messageobjectrequiredShow fields
idstringrequireddirectionstring · enumrequiredsendreceivestatestringrequiredfromstringrequiredtostring[]requiredccstring[]subjectstringsizeBytesintegerrequireddoorstringdomainIdstringrequiredlastErrorstringcreatedAtstringrequiredsentAtstringstateAtstringrequired
eventsEmailMessageEvent[]requiredShow fields
kindstring · enumrequiredsentdeliveredbouncedcomplainedbounceTypestringrecipientstringdetailobjectoccurredAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Update a webhook endpoint
Parameters
-
idpath string required
Request body
urlstring · urieventTypesstring · enum[]disabledboolean
Responses
Response body
idstringrequiredurlstringrequiredeventTypesstring[]requireddisabledbooleanrequiredcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Delete a webhook endpoint
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Observe which DNS records are live (debugging)
For each expected record, whether it currently resolves — found, missing, mismatch (with the observed value), or error. Distinct from the domain's SES verification state, which this helps explain.
Parameters
-
idpath string required
Responses
Response body
recordsobject[]required
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Remove a suppression (the address becomes deliverable again)
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Recent webhook deliveries
Parameters
-
messageIdquery string -
endpointIdquery string
Responses
Response body
deliveriesEmailDelivery[]requiredShow fields
idintegerrequiredendpointIdstringrequiredeventTypestringrequiredmessageIdstringstatestring · enumrequiredpendingdeliveringdeliveredfailedattemptsintegerrequiredlastStatusintegerlastErrorstringdeliveredAtstringcreatedAtstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Force a verification pass
Parameters
-
idpath string required
Responses
Response body
statusstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Arm receiving on a domain
Receiving MX is EXCLUSIVE — pointing a mailbox domain's MX at the platform breaks its existing mail. Arm a dedicated subdomain.
Parameters
-
idpath string required
Responses
Response body
idstringrequirednamestringrequiredsendStatestring · enumrequiredpendingverifiedfailedreceiveStatestring · enumrequirednonependingverifiedfailedcreatedAtstringrequireddnsRecordsEmailDnsRecord[]requiredShow fields
capabilitystring · enumrequiredsendreceivetypestringrequirednamestringrequiredvaluestringrequiredpriorityinteger
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
The raw message (message/rfc822; 30-day window)
Parameters
-
idpath string required
Responses
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Rotate the signing secret
The NEW secret is returned once; the old stops signing immediately.
Parameters
-
idpath string required
Responses
Response body
signingSecretstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Redeliver a webhook payload
Inserts a NEW delivery row from the frozen payload.
Parameters
-
idpath integer
Responses
Response body
idintegerrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired
Response body
errorstringrequired