Skip to main content
Lucia keeps guest-facing mail, employee-facing mail and marketing mail as separate contracts with separate providers. This page is the map; the provider pages carry the detail.

Who carries what

Sender for the guest-mail family: Lucia at Villa Valentin <lucia@send.hellolucia.ai>, plain i by law (LUCI-238). The live env value on api-dev is set by the founder’s hand and unverified; the 2026-09-10 audit recorded it still carried the acute.

Dev guest mail lands in one inbox

With LUCIA_GUEST_MAIL_SINK set on a development service, every guest-facing email goes to one testing inbox with the intended recipient in the subject (LUCI-231, Completed 2026-09-09; set on api-dev by the founder’s hand). Production refuses to boot with the sink set. See Resend for the rule in full.

Keys, by name only

PAYMENT_REQUEST_RESEND_API_KEY (dedicated to the payment request, read first), RESEND_API_KEY (the family key and the payment request’s fallback), GUEST_VERIFICATION_EMAIL_FROM (the sender). Values never appear here; whether a name is set on a service is unverified unless a record says so.

Postmark stays where it belongs

Postmark carries the employee-facing maintenance conversation and inbound operational email. It does not carry guest mail. The generic maintenance webhook branch requires the shared X-Fieldwork-Secret service credential (LUCI-169); Postmark and Twilio keep their own signature branches. See Postmark (Email Inbound).

Truth rule

Never collapse those states into “email is working.”

Historical

Until 2026-09-09 the payment request went out as a plain-text Postmark send borrowed from the maintenance transport (LUCI-210 phase 01b, 2026-09-06). The 2026-08-12 version of this page recorded Resend as waitlist plus guest verification only, with no console read; the 2026-09-10 console read supersedes that boundary.

See also