HomeDocsSupport
OverviewWhat is AliasFleet?Creating an AliasEmails Not ArrivingContact Support

Getting Started

Getting Started
  • What is AliasFleet?
  • Your First Alias
  • Understanding Forwarding
  • Your Dashboard at a Glance

Account & Billing

Account & Billing
  • Your Plan and Usage Limits
  • Upgrading to Pro
  • Managing Your Subscription
  • Downloading Invoices
  • Support Ticket Limits
  • Membership Tier
  • Billing Cycle and Renewal
  • API Rate Limits by Plan

Billing Support

Account & Billing
  • Cancelling Your Subscription
  • Downgrading Your AliasFleet Plan
  • Understanding Proration and Plan Changes
  • Updating Your Payment Method
  • Handling Failed Payments and Account Suspension
  • AliasFleet Refund Policy

Email Aliases

Email Aliases
  • Creating and Managing Aliases
  • Activating and Deactivating an Alias
  • Deleting an Alias
  • Sorting, Filtering and Searching Aliases
  • Grid View vs List View
  • Grouping Aliases
  • Alias Categories
  • Copying an Alias Address
  • Per-Alias Email Banner Settings
  • Alias Permission Mode
  • Sending Outbound Emails (Quick Send)

Custom Domains

Custom Domains
  • Adding a Custom Domain
  • DNS Verification
  • Domain Status and Health Indicators
  • Subdomains
  • Removing a Domain
  • Using Your Domain on Aliases

Destinations

Destinations
  • What Is a Destination?
  • Adding a Destination
  • Verifying a Destination
  • Setting a Default Destination
  • Reply from Aliases
  • Send New Emails from Aliases
  • Understanding Email Threading & Replies
  • One-Click Enable from Bounce Email
  • Removing a Destination
  • PGP Encryption for Destinations
  • WKD Auto-Encryption for Replies & Sends

Security & Privacy

Security & Privacy
  • Security Best Practices
  • Two-Factor Authentication (2FA)
  • Active Sessions
  • Changing Your Password
  • What Data AliasFleet Stores
  • Reporting a Security Issue
  • Browser Extension Sessions
  • How to Use Vault Lock in the Extension

Rate Limiting

Security & Privacy
  • Rate Limiting & Account Protection

Settings

Settings
  • General Settings
  • Profile Settings
  • Alias Settings
  • Destinations in Settings
  • Notification Settings
  • Security Settings
  • Deleting Your Account

Analytics

Analytics
  • Analytics Overview
  • Alias Performance
  • Top Senders
  • Trends
  • Bounces
  • Bandwidth Usage
  • Category Breakdown
  • Exporting Analytics Data
  • Understanding Your Alias Statistics
  • How Monthly Trends Work

Sender Rules

Sender Rules
  • Using Sender Rules
  • Blacklist vs Deactivating an Alias
  • Using Sender Rules to Allow Senders (Whitelist)
  • Blocked Emails Explained

Troubleshooting

Troubleshooting
  • Emails Not Arriving
  • Can't Verify a Destination
  • DNS Not Verifying
  • Can't Log In
  • Replies Not Going Through Alias
  • Alias Not Forwarding
  • Payment Failed
  • Browser Extension Issues
  • Too Many Requests Error
  • Page Not Loading or Showing an Error

Developers

Developer API
  • Identity & Token Introspection API
  • Aliases API
  • Alias Destinations & Batch Operations API
  • Domains API
  • Destinations API
  • Quick-Send API
  • Sender Rules API
  • Activity & Audit Logs API
  • Fleet Analytics API
  • Rules Engine API
  • Security & Threat Intelligence API
  • Webhooks API
PrivacyTermsCookies
Article Navigation
OverviewWhat is AliasFleet?Creating an AliasEmails Not ArrivingContact Support

Getting Started

Getting Started
  • What is AliasFleet?
  • Your First Alias
  • Understanding Forwarding
  • Your Dashboard at a Glance

Account & Billing

Account & Billing
  • Your Plan and Usage Limits
  • Upgrading to Pro
  • Managing Your Subscription
  • Downloading Invoices
  • Support Ticket Limits
  • Membership Tier
  • Billing Cycle and Renewal
  • API Rate Limits by Plan

Billing Support

Account & Billing
  • Cancelling Your Subscription
  • Downgrading Your AliasFleet Plan
  • Understanding Proration and Plan Changes
  • Updating Your Payment Method
  • Handling Failed Payments and Account Suspension
  • AliasFleet Refund Policy

Email Aliases

Email Aliases
  • Creating and Managing Aliases
  • Activating and Deactivating an Alias
  • Deleting an Alias
  • Sorting, Filtering and Searching Aliases
  • Grid View vs List View
  • Grouping Aliases
  • Alias Categories
  • Copying an Alias Address
  • Per-Alias Email Banner Settings
  • Alias Permission Mode
  • Sending Outbound Emails (Quick Send)

Custom Domains

Custom Domains
  • Adding a Custom Domain
  • DNS Verification
  • Domain Status and Health Indicators
  • Subdomains
  • Removing a Domain
  • Using Your Domain on Aliases

Destinations

Destinations
  • What Is a Destination?
  • Adding a Destination
  • Verifying a Destination
  • Setting a Default Destination
  • Reply from Aliases
  • Send New Emails from Aliases
  • Understanding Email Threading & Replies
  • One-Click Enable from Bounce Email
  • Removing a Destination
  • PGP Encryption for Destinations
  • WKD Auto-Encryption for Replies & Sends

Security & Privacy

Security & Privacy
  • Security Best Practices
  • Two-Factor Authentication (2FA)
  • Active Sessions
  • Changing Your Password
  • What Data AliasFleet Stores
  • Reporting a Security Issue
  • Browser Extension Sessions
  • How to Use Vault Lock in the Extension

Rate Limiting

Security & Privacy
  • Rate Limiting & Account Protection

Settings

Settings
  • General Settings
  • Profile Settings
  • Alias Settings
  • Destinations in Settings
  • Notification Settings
  • Security Settings
  • Deleting Your Account

Analytics

Analytics
  • Analytics Overview
  • Alias Performance
  • Top Senders
  • Trends
  • Bounces
  • Bandwidth Usage
  • Category Breakdown
  • Exporting Analytics Data
  • Understanding Your Alias Statistics
  • How Monthly Trends Work

Sender Rules

Sender Rules
  • Using Sender Rules
  • Blacklist vs Deactivating an Alias
  • Using Sender Rules to Allow Senders (Whitelist)
  • Blocked Emails Explained

Troubleshooting

Troubleshooting
  • Emails Not Arriving
  • Can't Verify a Destination
  • DNS Not Verifying
  • Can't Log In
  • Replies Not Going Through Alias
  • Alias Not Forwarding
  • Payment Failed
  • Browser Extension Issues
  • Too Many Requests Error
  • Page Not Loading or Showing an Error

Developers

Developer API
  • Identity & Token Introspection API
  • Aliases API
  • Alias Destinations & Batch Operations API
  • Domains API
  • Destinations API
  • Quick-Send API
  • Sender Rules API
  • Activity & Audit Logs API
  • Fleet Analytics API
  • Rules Engine API
  • Security & Threat Intelligence API
  • Webhooks API
PrivacyTermsCookies
Developer API
Docs
Developer API
Destinations API

Destinations API

Register destination inboxes, execute 6-digit OTP verification challenges, configure per-channel sender identities, and manage routing fallbacks.

9 min read
Updated September 4, 2026

Register forwarding inboxes, manage 6-digit OTP verification challenges, configure custom sender identities, and manage routing targets.


Quick Reference

EndpointMethodScopePurpose
/v1/destinationsGETdestinations:readList all destination inboxes with default resolution
/v1/destinations/verifiedGETdestinations:readList only verified inboxes eligible for alias routing
/v1/destinationsPOSTdestinations:writeRegister a new destination and trigger 6-digit OTP email
/v1/destinations/:idGETdestinations:readRetrieve destination details and verification status
/v1/destinations/verifyPOSTdestinations:writeSubmit 6-digit OTP code to verify ownership
/v1/destinations/resendPOSTdestinations:writeResend verification code (60-second cooldown)
/v1/user/default-destinationPATCHdestinations:writeSet the default destination for new aliases
/v1/destinations/:id/usageGETdestinations:readInspect active aliases linked to this destination
/v1/destinations/:id/from-nameGETdestinations:readRetrieve custom sender display name and subject rules
/v1/destinations/:id/from-namePATCHdestinations:writeConfigure custom sender display name and subject rules
/v1/destinations/:idDELETEdestinations:writeDelete destination with dependency safety checks

GET /v1/destinations — List Destinations

Scope: destinations:read · Rate Limit: 60/min · Idempotent: Yes

Returns all destination inboxes registered to your account, including pending verification states and default inbox resolution.

Example Request

curl -X GET "https://api.aliasfleet.com/v1/destinations" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Accept: application/json"

Response (200 OK)

{
  "destinations": [
    {
      "id": "dest_adn6UTmkzn6OWpGq",
      "email": "primary-ops@company.com",
      "is_verified": true,
      "is_active": true,
      "can_reply": true,
      "can_send": true,
      "verified_at": "2026-06-16T09:44:04.169Z",
      "failed_attempts": 0,
      "blocked_until": null,
      "is_default": true,
      "created_at": "2026-06-01T12:00:00.000Z"
    },
    {
      "id": "dest_rNZO2x0c8GPOJxiR",
      "email": "alerts@company.com",
      "is_verified": false,
      "is_active": true,
      "can_reply": false,
      "can_send": false,
      "verification_sent_at": "2026-09-04T14:30:00.000Z",
      "verified_at": null,
      "failed_attempts": 0,
      "blocked_until": null,
      "is_default": false,
      "created_at": "2026-09-04T14:30:00.000Z"
    }
  ],
  "default_destination": {
    "id": "dest_adn6UTmkzn6OWpGq",
    "email": "primary-ops@company.com",
    "is_verified": true,
    "is_active": true
  }
}

GET /v1/destinations/verified — List Verified Destinations

Scope: destinations:read · Rate Limit: 60/min · Idempotent: Yes

Returns only destinations that have passed OTP verification and are actively available to receive forwarded emails.

Example Request

curl -X GET "https://api.aliasfleet.com/v1/destinations/verified" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Accept: application/json"

Response (200 OK)

{
  "destinations": [
    {
      "id": "dest_adn6UTmkzn6OWpGq",
      "email": "primary-ops@company.com",
      "is_verified": true,
      "is_active": true,
      "can_reply": true,
      "can_send": true
    }
  ]
}

POST /v1/destinations — Register New Destination

Scope: destinations:write · Rate Limit: 60/min · Idempotent: Yes

Registers an external email address as a destination inbox. Dispatches a 6-digit numeric verification code to the specified address.

Request Body Parameters

ParameterTypeRequiredConstraintsDescription
emailstringYesValid RFC 5322 emailTarget external inbox address.

Example Request

curl -X POST "https://api.aliasfleet.com/v1/destinations" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Content-Type: application/json" \
  -d '{
    "email": "audit-inbox@company.com"
  }'

Response (201 Created)

{
  "destination": {
    "id": "dest_kLpQr2nVwYz3a4b5",
    "email": "audit-inbox@company.com",
    "is_verified": false,
    "is_active": true,
    "can_reply": false,
    "can_send": false,
    "verification_sent_at": "2026-09-04T15:00:00.000Z",
    "failed_attempts": 0,
    "created_at": "2026-09-04T15:00:00.000Z"
  }
}

Errors

StatusCodeCause & Resolution
400 Bad RequestINVALID_EMAILMalformed email syntax.
403 ForbiddenQUOTA_EXCEEDEDMaximum destination count reached for your plan tier.
409 ConflictALREADY_EXISTSThis destination address is already registered on your account.

POST /v1/destinations/verify — Verify Destination OTP

Scope: destinations:write · Rate Limit: 60/min · Idempotent: Yes

Submits the 6-digit verification code sent to the destination email address. Upon verification, the inbox unlocks immediately for alias routing.

Request Body Parameters

ParameterTypeRequiredConstraintsDescription
emailstringYesValid email addressTarget destination email being verified.
codestringYes6 numeric digitsVerification code from the email message.

Example Request

curl -X POST "https://api.aliasfleet.com/v1/destinations/verify" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Content-Type: application/json" \
  -d '{
    "email": "audit-inbox@company.com",
    "code": "481923"
  }'

Response (200 OK)

{
  "message": "Destination verified"
}

Errors

StatusCodeCause & Resolution
400 Bad RequestALREADY_VERIFIEDDestination is already verified.
400 Bad RequestCODE_EXPIREDOTP expired (> 15 minutes old). Call /v1/destinations/resend to get a new code.
400 Bad RequestINVALID_CODECode mismatch. Check the email and re-enter.
429 Too Many RequestsTOO_MANY_ATTEMPTS3 consecutive incorrect entries triggered a 15-minute lockout. Wait for the lockout window to expire.

POST /v1/destinations/resend — Resend Verification OTP

Scope: destinations:write · Rate Limit: 5/min · Idempotent: Yes

Generates and emails a fresh 6-digit OTP code to the destination address. Enforces a 60-second cooldown period per address.

Request Body Parameters

ParameterTypeRequiredDescription
emailstringYesDestination email address requiring a new code.

Example Request

curl -X POST "https://api.aliasfleet.com/v1/destinations/resend" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Content-Type: application/json" \
  -d '{
    "email": "audit-inbox@company.com"
  }'

Response (200 OK)

{
  "message": "Verification email resent"
}

Errors

StatusCodeCause & Resolution
400 Bad RequestALREADY_VERIFIEDDestination is already verified.
429 Too Many RequestsCOOLDOWNCalled within 60 seconds of previous send. Inspect retryAfterSeconds in response.

PATCH /v1/user/default-destination — Set Default Destination

Scope: destinations:write · Rate Limit: 60/min · Idempotent: Yes

Sets the primary default inbox for your account. New aliases provisioned without an explicit recipient will automatically forward to this address.

Request Body Parameters

ParameterTypeRequiredConstraintsDescription
destination_idstringYesValid dest_ identifierUnique ID of a verified destination inbox.

Example Request

curl -X PATCH "https://api.aliasfleet.com/v1/user/default-destination" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Content-Type: application/json" \
  -d '{
    "destination_id": "dest_adn6UTmkzn6OWpGq"
  }'

Response (200 OK)

{
  "success": true,
  "default_destination": {
    "id": "dest_adn6UTmkzn6OWpGq",
    "email": "primary-ops@company.com"
  }
}

Errors

StatusCodeCause & Resolution
400 Bad RequestNOT_VERIFIEDTarget destination must complete verification before becoming default.
404 Not FoundNOT_FOUNDDestination ID does not exist on your account.

GET /v1/destinations/:id/usage — Inspect Destination Usage

Scope: destinations:read · Rate Limit: 60/min · Idempotent: Yes

Returns the total number of active aliases currently forwarding to this destination inbox.

Path Parameters

ParameterTypeRequiredDescription
idstringYesUnique destination identifier (dest_...).

Example Request

curl -X GET "https://api.aliasfleet.com/v1/destinations/dest_adn6UTmkzn6OWpGq/usage" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Accept: application/json"

Response (200 OK)

{
  "alias_count": 27
}

PATCH /v1/destinations/:id/from-name — Configure Sender Identity

Scope: destinations:write · Rate Limit: 60/min · Idempotent: Yes

Configures sender display names, subjects, and format overrides on messages routed through this destination.

Request Body Parameters

ParameterTypeRequiredConstraintsDescription
typestringYes'destination', 'forward', 'reply', 'send'Routing channel rule to configure.
fromNamestringNoMax 255 charsCustom sender display name.
useFromNamebooleanNotrue or falseEnable or disable custom display name.
subjectstringNoMax 255 charsSubject prefix or replacement.
useSubjectbooleanNotrue or falseEnable or disable subject customization.
fromAddressFormatstring | nullNo'name_and_email', 'name_only', nullHeader format rule. Set null to inherit global default.

Example Request

curl -X PATCH "https://api.aliasfleet.com/v1/destinations/dest_adn6UTmkzn6OWpGq/from-name" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e" \
  -H "Content-Type: application/json" \
  -d '{
    "type": "send",
    "fromName": "Acme Operations Team",
    "useFromName": true,
    "subject": "[Acme Notice] ",
    "useSubject": true
  }'

Response (200 OK)

{
  "success": true
}

DELETE /v1/destinations/:id — Delete Destination

Scope: destinations:write · Rate Limit: 60/min · Idempotent: Yes

Permanently removes a destination inbox from your workspace.

Path Parameters

ParameterTypeRequiredDescription
idstringYesUnique destination identifier (dest_...).

Example Request

curl -X DELETE "https://api.aliasfleet.com/v1/destinations/dest_kLpQr2nVwYz3a4b5" \
  -H "Authorization: Bearer afp_4a8f9c1b2d3e4f5a6b7c8d9e0f1a2b3c4d5e6f7a8b9c0d1e"

Response (200 OK)

{
  "success": true,
  "message": "Destination removed"
}

Errors

StatusCodeCause & Resolution
400 Bad RequestPRIMARY_EMAIL_PROTECTEDCannot delete your primary account login email.
400 Bad RequestDEPENDENT_ALIASESActive aliases currently route to this destination. Query /usage and reassign those aliases first.
400 Bad RequestLAST_VERIFIED_PROTECTEDAccounts must retain at least one verified destination. Add a replacement before deleting.
404 Not FoundNOT_FOUNDDestination ID does not exist.

Frequently Asked Questions

Can aliases forward to unverified destinations?

No. Incoming emails are dropped or held until destination ownership is confirmed through the 6-digit OTP verification handshake.

How long does a destination verification code remain valid?

Verification codes expire 15 minutes after issuance. If entered incorrectly 3 consecutive times, a 15-minute lockout activates to prevent brute-force attempts.

What happens if I try to delete a destination with active aliases?

The API rejects deletion with HTTP 400 DEPENDENT_ALIASES. You must reassign or delete dependent aliases before removing the destination.

Can I remove my primary account email from destinations?

No. The primary account email address is protected against deletion to prevent accidental account lockouts.

Was this article helpful?

Related articles

Identity & Token Introspection API

Verify token validity, inspect active permission scopes, and retrieve account metadata using the Identity API.

Aliases API

Create, list, inspect, update, and soft-delete email aliases programmatically using the AliasFleet REST API.

Alias Destinations & Batch Operations API

Configure multi-destination forwarding fanout, execute atomic batch updates across up to 100 aliases, and fine-tune per-alias privacy settings.

Domains API

Query shared platform domains, register custom brand domains, verify DNS records, and inspect catch-all forwarding rules.

Quick-Send API

Dispatch outbound emails through your aliases, stage attachments via presigned URLs, inspect delivery logs, and manage sender signatures.

Content

Quick ReferenceGET /v1/destinations — List DestinationsExample RequestResponse (`200 OK`)GET /v1/destinations/verified — List Verified DestinationsExample RequestResponse (`200 OK`)POST /v1/destinations — Register New DestinationRequest Body ParametersExample RequestResponse (`201 Created`)ErrorsPOST /v1/destinations/verify — Verify Destination OTPRequest Body ParametersExample RequestResponse (`200 OK`)ErrorsPOST /v1/destinations/resend — Resend Verification OTPRequest Body ParametersExample RequestResponse (`200 OK`)ErrorsPATCH /v1/user/default-destination — Set Default DestinationRequest Body ParametersExample RequestResponse (`200 OK`)ErrorsGET /v1/destinations/:id/usage — Inspect Destination UsagePath ParametersExample RequestResponse (`200 OK`)PATCH /v1/destinations/:id/from-name — Configure Sender IdentityRequest Body ParametersExample RequestResponse (`200 OK`)DELETE /v1/destinations/:id — Delete DestinationPath ParametersExample RequestResponse (`200 OK`)Errors

Still need help?

Can't find the answer you're looking for? Our support team is here to help.

Create Support Ticket