Email identity
Email is an identity string that signup, the mailer, and the SSO claim may each parse differently. Compare those views with mailboxes you own, and treat a mismatch as identity confusion rather than a cosmetic alias.
Skill
No skill is linked for this class yet. Start with the playbook and the checklist on this page.
Checklists
None linked for this class yet.
Disclosures
No public card yet.
Playbooks
- Inbound email and renderers - Inbound mail becomes a ticket, a comment, or HTML. The questions are who renders it, whether links are unfurled server-side, and whether the address the app stores is the address that received the mail.
Questions
Which systems have to agree?
The store, the mailer, and the SSO claim. If they canonicalize the mailbox differently, map the difference with addresses you own. Do not send mail to anyone else.
Is an alias a finding?
Only when it creates two accounts the app treats as one, or delivers a reset or invite to a mailbox you control that the app thought belonged to someone else. A cosmetic alias is not the bug.
This page is the linked pack hunt_brief("email") returns on the MCP connector. Authorized testing only.