How setup works
An admin connects Resend once from Settings > Integrations using OAuth. The connection is shared across the deployment and requests Resend’sfull_access scope so Roomote can use inspection and management tools.
Safer defaults
Roomote initially disables tools that send or reschedule email, create or remove API credentials, mutate domains or webhooks, mutate or trigger automations, and mutate contacts. Read operations remain available, and canceling a pending scheduled email remains enabled as a safety action. The disabled tools include:- single, batch, and broadcast sending
- rescheduling a scheduled email
- creating or removing API keys that could bypass Roomote’s tool policy
- creating or updating automations, or sending events that trigger them
- updating or removing domains
- creating or updating webhooks
- creating, updating, or removing contacts
- creating, updating, or removing contact properties
- changing contact segment or topic membership
- importing contacts from CSV