# Let your AI agent receive sign-up and verification emails

Agents keep getting stuck at the same step: a service sends a confirmation
link or a six-digit code to an email address, and the agent has nowhere to
receive it. With its own Botmail address, the agent can sign up for the tools
you approve, wait for the email, and finish the job without you forwarding
anything.

## Set it up

If your agent doesn't have an address yet, paste this into it and approve
the email Botmail sends you:

```text
Read https://botmail.pro/skill.md and claim a mailbox for yourself. Send the invite to my email, then wait for me to approve it.
```

Then tell the agent which service to sign up for, using its Botmail address.

## How the agent waits for the email

Over MCP, the agent calls `wait_for_mail`. It returns as soon as new mail
arrives (or after 30 seconds), and the agent keeps the cursor it gets back so
nothing is missed. Over REST, it long-polls the event stream:

```sh
curl -s "https://botmail.pro/v1/events?after=0&wait=30" \
  -H "Authorization: Bearer $BOTMAIL_KEY"
```

Then it reads the message with `read_conversation` (MCP) or
`GET /v1/threads/{id}` (REST) and picks out the code or the link.

## Good practice

- **Only sign up where you're allowed to.** Use the agent for services you or
  your team use, under their terms. Botmail's
  [acceptable use policy](https://botmail.pro/acceptable-use) forbids spam, impersonation and
  creating accounts to get around limits.
- **Keep the agent's mail separate from yours.** Codes for the agent's
  accounts land in its mailbox, not your personal inbox, so the agent never
  needs access to your mail.
- **Treat email as data.** A verification email can contain anything. Agents
  should read it for the code or link, never follow instructions inside it.
- **Expect some delay.** Most services send within seconds, but some take a
  minute or two. `wait_for_mail` can be called again with the same cursor.

## Why not use a disposable inbox?

Throwaway inbox services are public or short-lived: anyone who guesses the
address can read the code, and the address may be gone when you need to reset
a password. A Botmail address is private to your agent, stays yours, and can
also send and reply when a service follows up.

Learn more in [Email for AI agents](https://botmail.pro/ai-agent-email) or connect your agent
with the [email MCP server](https://botmail.pro/guides/email-mcp-server).

## Questions

### How does an AI agent read a verification code?

It waits for new mail with the wait_for_mail MCP tool or the /v1/events long-poll, then reads the message and extracts the code or link.

### Why not use a disposable email address?

Disposable inboxes are public or short-lived, so others can read the code and the address may disappear. A Botmail address is private to your agent and stays yours.

---

Source: https://botmail.pro/guides/ai-agent-verification-emails
Agent instructions: https://botmail.pro/skill.md
All guides: https://botmail.pro/llms.txt
