What this analysis does
Select the mailbox and adjacent capabilities an AI agent would receive, then add the approval, destination, rate and audit controls that constrain those permissions. Mailybox builds a deterministic abuse-path model so teams can see which combinations create external exfiltration, destructive-action or high-fanout risk without connecting a live mailbox.
How to use the result
Use real evidence
Paste the exact domain, header, message or configuration. The result is only as useful as the evidence supplied.
Review the findings
Mailybox separates observations from inferred causes so you can see what is known and what still needs verification.
Retest after changes
Email authentication and routing are stateful. Re-run the analysis after publishing a fix.
Interpretation matters
Email systems combine DNS, message-level evidence, provider policy and intermediate infrastructure. A single passing check is not proof that every message will deliver, and a single warning is not proof that a domain is misconfigured. Mailybox is designed to expose the evidence and the relationship between signals so the next action is clear.