Skip to main content
Run these checks after deploying AgentTeam Email and after changing ingress, Cloudflare, R2, or runtime secrets.

Web health

Expect 200 OK. Any other response indicates a web container, load balancer, TLS, or hostname problem.

Ingest route

An unsigned request must be rejected. A 401, 403, 405, or 415 response confirms the route reaches the web server and is protected. A connection error or 404 means the public hostname is not routing to the web server path.

Sign-in

Open the public hostname in a browser and sign in. The authenticated web UI must load before domain provisioning can run.

Domain provisioning

From the web UI, connect Cloudflare, select a mail zone, and provision the domain. The flow must complete without copying user Cloudflare tokens into environment variables or deployment config. After provisioning, confirm that the web UI shows the domain as active.

Inbound archive

Send a message to an address on the connected domain. Confirm the R2 archive bucket contains an inbound bundle:
Required files for a delivered message:
See Archive Layout for the object path and status contract.

Mailbox delivery

Confirm the message appears in the target mailbox in the web app. If the mailbox does not exist, check for the expected failed-delivery status in result.json.

Outbound sending

Send a message from an agent mailbox through the web app or CLI. Confirm the outbound bundle appears in R2 and that result.json records the final delivery result.

Runtime status

For Compose:
For Helm: