Post-quantum · signed · sealed · screened

Email for
human and AI agents.

A full mailbox and a transactional API on every domain you own: signed, sealed, fraud-screened. Post-quantum from day one.

ML-DSA-65 signed ML-KEM-768 sealed Passkey login Fraud-screened
One stack. Every surface.

Everything email: signed, sealed, screened.

Same infrastructure serves your mailbox and your AI agents. Toggle below for your view.

Mailbox

ThreadsFoldersStarsDrafts SignaturesSchedule sendSnoozeUndo send FiltersAliasesOut-of-officeSearch

Productivity

CalendarRemindersTasksNotes ContactsImport mailDesign Studio

Security

Passkey loginTwo-step verificationE2E encryption PQC sealedFraud screeningKill-switch

Audit & Compliance

Court-admissibleHash-chained logSigned receipts Consent gateBearer resolution 911

API & SDK

Send endpointTypeScript SDKWebhooks Domain onboardingWhite-label@iset/email

MCP for Agents

MCP serverScoped keysRead-only mode Draft & sendRevocableE2E never exposed
AGENT CORE

MCP Server

Native Model Context Protocol server. Tools: list, search, read, draft, send. Scoped per-identity, revocable, end-to-end encrypted mail stays unreadable.

claude_desktop_configBearer authTool discovery Read-only keyFull-access key
SDK

@iset/email

TypeScript SDK for integrators. One import, one key, every domain you own.

send()mailboxes.create()mailboxes.messages() mailboxes.open()scan()domains.verify()
PROTOCOL

Signed Envelope

Every message signed ML-DSA-65, sealed ML-KEM-768, with a ZK sender proof. Verifiable independently of ISET.

ISP envelopeML-DSA-65ML-KEM-768 Schnorr ZKX-SignatureCrown codes
HOOKS

Webhooks & Events

Real-time event stream for your agent pipeline. Every state change delivers a signed envelope.

email.deliveredemail.openedfraud.alert domain.verifiedconsent.refusedbearer.resolved
SEND

Transactional API

Resend-shaped drop-in. POST /v1/emails, DKIM-signed, fraud-screened before delivery.

POST /v1/emailsGET /v1/domainsGET /v1/mailboxes Publish DNSVerify domain
MTA

Inbound & Relay

SMTP intake with consent gate, fraud screening, and PQC seal. Relay mode for full deliverability.

SMTP listenerCloudflare routingConsent gate Provider relayOwn MTA

Plug into any MCP host

One config block. One scoped key. Every mailbox on every domain you own.

Endpoint

https://iset.email/mcpCopy

Header

Authorization: Bearer <your key>Copy

claude_desktop_config.json

{
  "mcpServers": {
    "iset-email": {
      "command": "npx",
      "args": [
        "-y", "mcp-remote",
        "https://iset.email/mcp",
        "--header",
        "Authorization: Bearer YOUR_KEY"
      ]
    }
  }
}
AI agents

Your email is an agent tool.

One scoped key covers every mailbox you own. End-to-end encrypted mail stays unreadable to the agent.

Generate a key

Settings → Connect AI agents. Read-only or full. Revocable any time.

Plug into Claude

Tools: list · search · read · ask-inbox · draft · send. Native MCP.

You stay in control

Scoped to your identity. Nothing leaves your stack.

Protocol

Real cryptography. Real audit.

Post-quantum primitives, FIPS-standard, protocol-governed. Day one, not roadmap.

ML-DSA-65

NIST FIPS 204: every envelope signed, independently verifiable

ML-KEM-768

NIST FIPS 203: mailboxes sealed to bearer key, server holds ciphertext

Court-admissible

Hash-chained audit log, re-verified on read, signed on write

Get started

Put email on every domain you own.

Connect a domain, provision your first address, send a signed message in minutes.