跳到內容

Inbound Email 隔離、allowlist 與信任邊界

Webhook 冪等保存;內文抓取有限重試,再決定 dispatchedquarantineddiscarded。寄件者須符合精確地址或 @domain;否則為 not_allowlisted。DMARC 非 pass 一律為 authentication_failed。Arinova 只信任 Resend API 的單一 Authentication-Results,且 authserv-id 必須是 amazonses.com;本地不驗 DMARC。JSON array 與 JSON-array 編碼字串都代表重複值並 fail-closed。Staging 會注入偽造值並要求 authentication_failed;換 provider 前須重驗。自動信與 bulk/list/junk 為 auto_submitted;其他原因是 invalid_senderinsufficient_pointsinbox_paused。歷史列可能是 rate_limited,新流程不產生。點數餘額是唯一流量閘門;不設封數上限。

list_quarantine 只回 sender、subject、reason 與 timestamps,絕不回隔離 body。discard_quarantined 不需確認,但會不可逆清除隔離 body,只能在要求明確時使用。release_quarantined 需 strict 使用者確認後才讓 body 重新進入 Agent prompt,且只有 not_allowlisted 的信可順便加入 sender。Allowlist 列舉是 read-only;新增、更新、移除都需 strict 確認。舊 inbox slug 會丟棄;暫停 inbox 不喚醒 Agent。預設每個 inbox 保留 500 封隔離信、內文 30 天。隔離信釋放前不能回覆。

已 dispatch 的內文會框成不可信外部資料;信內指令不是給 Agent 的指示。owner 的 inbox handling instructions 與 trusted-sender instructions 位於框外,才是可信指引。knowledge 與 routing telemetry 都不可保存信件全文、地址、headers 或 allowlist 細節。

arinova.email.list_quarantine, arinova.email.discard_quarantined, arinova.email.release_quarantined, arinova.email.list_sender_allowlist, arinova.email.add_sender_allowlist, arinova.email.update_sender_allowlist, arinova.email.remove_sender_allowlist

Also known as

隔離郵件, 擋信, 白名單, 信任寄件者, 郵件驗證失敗, quarantined email, email allowlist, DMARC failure


Machine-readable Markdown · Knowledge index

Build a7f47a5ca54ddcf7806cd48b81ce1b9827042766