Domains and Amazon SES
Sending is only allowed from a verified domain you added in the dashboard.
Add the domain, publish the records on the domain card, then press Verify. The walkthrough is Verify a domain. The record shapes are DNS records.
Open the domain verification guideSet AWS_ACCESS_KEY_ID, AWS_SECRET_ACCESS_KEY, and AWS_REGION. Pigeon calls SES v2 CreateEmailIdentity and sends with the SES SendEmail action. The IAM user needs ses:SendEmail, ses:CreateEmailIdentity, and ses:GetEmailIdentity.
Point SES event publishing at POST /webhooks/ses/:SES_WEBHOOK_TOKEN. Delivery, bounce, and complaint notifications update the email and the suppression list.