Sendgrove Docs

Security

Treat API and SMTP secrets like production credentials. Restrict keys by capability, IP, and sending domain — and fail closed when rate limiting is unavailable.

Store secrets safely

Rotate keys

Least privilege

Credit caps

Idempotency on credit writes

Fail closed on rate-limit outages

Webhook endpoints

Audit usage

Open full documentation · All docs