Most workspaces use [temporary inboxes](/ai-agents/temporary-inboxes) the way
they were first built: one person, or their agent, mints an address and reads
what arrives. **Platform mode** is for a different shape — a product that mints
inboxes *for its own users*, through one API key, and hands each user a link to
read their own mail without a SendOps account.

If that is what you are building, the developer guide is
[Temporary inboxes for platforms](https://developers.sendops.dev/api-reference/inboxes-for-platforms).
This page is about the switch itself: what it changes, who can flip it, and
what you are agreeing to.

## What it changes

Turning Platform mode on changes three things for every inbox minted afterwards.

- **Caps are applied per `account_ref` instead of per API key.** `account_ref`
  is the id your product attaches to each mint to say which of *your* users it
  is for. Without Platform mode, one API key may hold five live inboxes in
  total — your sixth user would be refused because of your first five. With it,
  each `account_ref` may hold five live unrestricted inboxes, and the workspace
  may hold 500. Sending `account_ref` becomes required.
- **The daily limit rises to 2,000 mints**, and the hourly window is removed. A
  platform's mint rate follows its users' activity, not one person's afternoon.
- **You may restrict an inbox to any sender address without SendOps verifying
  it.** Outside Platform mode, an inbox can only be restricted to addresses the
  minting person has proved they read, by typing back a code. Your product has
  already verified its users' addresses at signup, so in Platform mode SendOps
  takes your word for it, and records that it did: those inboxes show a
  restriction source of **platform** rather than **verified**.


  The settings card says it in full, and it is the whole point of the switch
  being self-serve rather than something support turns on for you:

  *Platform mode is for products that mint temporary inboxes for their own
  users through the API. Caps are applied per `account_ref` instead of per API
  key, the daily limit rises to 2,000, and you may restrict an inbox to any
  sender address without SendOps verifying it. By turning this on you confirm
  that your product has verified that its users own the addresses it passes as
  `allowed_senders`. Mail from an unverified stranger landing in a restricted
  inbox is your responsibility.*


## Who can turn it on

Go to **Workspace → Temporary inboxes** and use the **Platform mode** switch.

You need the **Manage organization settings** permission (`org.settings.manage`
— owners and organization admins have it). Someone who can rename the
workspace but does not hold that permission sees the switch disabled, with a
tooltip saying why: making the promise above is a decision for an owner or
admin, not for anyone who can edit a setting.

Every change is recorded in the [audit log](/team/audit-log) with the old and
new value, so a workspace can always answer "when did we turn this on, and who
did it".

## Turning it off

Switching Platform mode off changes the rules for the **next** mint. Inboxes
that already exist are untouched: an inbox restricted under Platform mode keeps
its restriction, and its **platform** restriction source, for the rest of its
lifetime. That is the honest record of how it was made.

## Where to see what your product minted

**Infrastructure → Temporary inboxes** lists every inbox in the workspace —
address, `account_ref`, status, whether it is restricted and by whom, how many
messages arrived and how many were refused, when it expires, and who minted it.
From there you can revoke the links your product handed out, one at a time, or
delete an inbox outright. The page never shows message content; that only
travels through the links themselves and the API. The
[temporary inboxes article](/ai-agents/temporary-inboxes#the-inboxes-page)
walks through it.

## Related pages

- [Temporary inboxes](/ai-agents/temporary-inboxes) — what an inbox is, how
  long it lives, and what a restricted inbox actually checks
- [Temporary inboxes for platforms](https://developers.sendops.dev/api-reference/inboxes-for-platforms)
  — the developer guide, with every request and response
- [Audit log](/team/audit-log) — where the switch is recorded