🔒
Authoritative Server Boundary Policy

Outbound email dispatch gates (DELIVERY_MODE, DRY_RUN, CONFIRM_LIVE) are strictly controlled via server-side environment configuration. The web console cannot override dispatch safety gates. All credentials and secrets are withheld from client presentation.

System Status & Environment Invariants
System Health
Core API health and database connection
Healthy (1.0.0)
Delivery Mode
Outbound execution mode (stub, staged, live)
staged
Dry Run Staging Enforced
Prevents external provider dispatch side-effects
True (Staging Active)
Confirm Live Flag
Required environment flag for live sending
False (Blocked)
Volume Caps & Hard Safety Thresholds
Daily Volume Cap
Hard limit across CLI and Web dispatches
10 sends / 24h
Weekly Volume Cap
Rolling 7-day volume cap
50 sends / 7d
Minimum Person Confidence
Threshold for leader verification acceptance
≥ 0.70 (70%)
Login Rate Limiter
Brute-force protection on /api/v1/auth/login
5 attempts per 15 minutes