Mail for developers and CTOs
Email webhooks for every new message, reply and bounce
message.created, thread.replied, bounces, opens and clicks, signed and delivered to your endpoint.
Free tier on every product. No card.
Sam Rivera wrote to [email protected]
Re: Saturday showing at 18 Bayview Ave
Saturday at 10 works for us. Can we bring our lender?
Email webhooks let your app react to mail instead of polling for it. SyncYak Mail watches each connected mailbox and posts an event to your endpoint when a message arrives (message.created), when someone replies to a message you sent with reply tracking on (thread.replied), when a send bounces (message.bounce_detected), and, with tracking on, when a message is opened or a link is clicked.
Each delivery is JSON in the Nylas v3 event shape, signed with your webhook secret.
How it works
Receive email webhooks in three steps
Send users to the connect page
Link to /v3/connect/auth with your client ID and redirect URI. Users approve access; you get a code to exchange for a grant.
Add a webhook destination
Choose the events and the URL. SyncYak verifies it with a challenge first.
Verify and handle
Check X-Nylas-Signature, the hex HMAC-SHA256 of the body with your secret, then process the event.
A new email webhook that does not miss replies
A mailbox’s sync cursor is set the moment it connects, so a reply arriving before the first poll is still delivered. History is never imported, so you do not receive a flood of old mail.
- message.created for new mail
- thread.replied for replies to tracked sends
- message.bounce_detected, message.opened, message.link_clicked
Email reply detection for follow-up
Send with thread_replies on and thread.replied tells you each time that message gets an answer, which is what sequences and CRMs need to stop following up and alert a person.
Inbound email webhook security and verification
A destination is verified with a challenge before it receives events: SyncYak calls your URL with a challenge value and expects it back, so events never go to an address that is not yours. A failed challenge keeps the destination saved as unverified until you fix it.
Each event is signed in the X-Nylas-Signature header: the hex HMAC-SHA256 of the raw body with the destination’s secret. Compute it in constant time and compare before you trust the payload. The secret can be rotated without downtime by accepting both values for a short while.
- Challenge on create
- HMAC-SHA256 signature on every event
- grant.created, grant.updated, grant.deleted and grant.expired for connection changes
Use cases
What teams trigger from email
Stop a sequence
Pause follow-ups when the lead replies.
Log activity
Add the email to the contact’s timeline.
Handle bounces
Flag bad addresses automatically.
What you get with Mail
Mail is a mailbox API that speaks the Nylas v3 format. You register your own Google, Microsoft and Yahoo OAuth apps once, send people to SyncYak’s hosted connect page, and get a grant per connected mailbox. IMAP and SMTP with an app password cover every other provider.
Free connects 3 mailboxes and sends 1,000 messages a month. Hobby is $12 a month for 10 mailboxes with open and click tracking; Pro is $49 for 50; Business is $199 for 250.
- Hosted connect page with provider detection, PKCE and single-use state
- Webhooks for message.created, replies, bounces, opens and clicks, signed with HMAC-SHA256
- POST /v3/grants/{grant_id}/messages/send sends from the user’s own address
- An existing Nylas v3 integration switches by changing the API host, client ID and secret
Frequently asked questions
Something else? Write to [email protected] and a person answers.
How many webhook destinations can I add?
Per plan, from one on Free.
How do I test locally?
Run syncyak http 3000 and use the tunnel address as the destination while you build.
Is this the same as inbound parsing?
No. Mail watches users’ own mailboxes. For addresses that only receive and parse, use SyncYak Parse.
Is there a free plan for Mail?
Yes. Mail has a free tier with no card and no end date: 3 mailboxes, inbound webhooks, your own google and microsoft apps. Paid tiers start at $12 a month, and you can move up or down at any time.
Can I use the other SyncYak products on the same account?
Yes. Email parsing, the mailbox API, CRM sync, error tracking and tunnels share one login, one team, one API key system and one bill. Each product has its own tier, so you only pay more for the one that grows.
Related
Related solutions
Start with Mail free
3 mailboxes, Inbound webhooks, Your own Google and Microsoft apps, free every month. Set up in minutes, and add the other SyncYak products on the same account when you need them.
Free tier on every product. No card.