Agent skill

Email Deliverability

by ericrisco in ericrisco/rsc-harness

A skill your agent uses when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code…

MITAuto-check passedBackend & APIs

Install Email Deliverability

skills CLI
$ npx skills add ericrisco/rsc-harness --skill email-deliverability -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ericrisco/rsc-harness email-deliverability --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ericrisco/rsc-harness.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/email-deliverability .claude/skills/email-deliverability && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
email-deliverability
GitHub stars
174
Token cost
~2.3k tokens
SKILL.md length
1,130 words
Files
4 (incl. scripts)
Skills in repo
233
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code…

  • Works in 3 steps: SPF + DKIM both set, and DMARC present… → One-click unsubscribe (List-Unsubscribe… → Spam-complaint rate kept low. The hard…
  • Mail already sent lands in spam
  • SKILL.md covers Not this skill, The three records that must…, Gmail / Yahoo bulk-sender rules and BIMI — the verified logo, last, plus 3 more sections
  • Runs Shell scripts from its folder; reaches acme.com

What it does

Email Deliverability is an agent skill from ericrisco/rsc-harness. Use when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code: SPF/DKIM/DMARC alignment, domain warmup, spam-complaint rate, one-click unsubscribe, BIMI. NOT putting mail on the wire through a provider API (that is email-connector).

Its SKILL.md is about 2.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including scripts (for example `evals/README.md`, `evals/cases.yaml` and `scripts/verify.sh`).

It sits in Backend & APIs, covering Transactional email and Email management. It works with Gmail. The repository describes itself as: Your agent invents things because it has no memory, and can't touch your database because it has no arms. rsc is the meta-harness that gives it both, plus the trade to know the… The licence is MIT.

When your agent uses it

  • Mail already sent lands in spam
  • Fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation
  • Not the sending code: SPF/DKIM/DMARC alignment
  • Spam-complaint rate

Example prompts

  • “/email-deliverability”

Requirements

  • A Bash shell

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. SPF + DKIM both set, and DMARC present at minimum p=none. At least one
  2. One-click unsubscribe (List-Unsubscribe + List-Unsubscribe-Post) on
  3. Spam-complaint rate kept low. The hard threshold where filtering kicks in

What it can do on your machine

Read from SKILL.md and the folder at commit e3d5b33. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Shell), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • acme.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Email Deliverability loads about 2.3k tokens when it runs. Until then it costs about 90 tokens; SKILL.md has 1,130 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~90
When it runs · the whole SKILL.md, loaded when a task matches
~2.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from ericrisco/rsc-harness at commit e3d5b33, republished under its MIT licence (© ericrisco). 1,130 words, ~2,260 tokens.

Download SKILL.mdSave it as .claude/skills/email-deliverability/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
email-deliverability
description
Use when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code: SPF/DKIM/DMARC alignment, domain warmup, spam-complaint rate, one-click unsubscribe, BIMI. NOT putting mail on the wire through a provider API (that is `email-connector`).
tags
email, deliverability, spf, dkim, dmarc, bimi, sender-reputation, bulk-sender
recommends
email-connector, newsletter, cold-outreach, gdpr-privacy, data-policy
origin
risco

email-deliverability — make mail authenticate and land in the inbox

This skill owns one layer: why mail you already send gets filtered, deferred, or rejected, and the DNS + reputation work that fixes it. It starts where the send technically succeeds but the message never reaches the inbox.

The lever is almost never the sending code. It is three DNS records that must align, a complaint rate you must hold down, and a reputation you build slowly and lose fast. Treat this as ops on a domain, not a code change.

Not this skill

  • Sending the mail at all — provider SDK, sendEmail() seam, templates, retries, batch caps, bounce/complaint webhooks → ../email-connector/SKILL.md. That skill feeds the suppression list; this one explains the reputation it protects.
  • Subject lines, open/click optimization, list growth → newsletter.
  • Outbound prospecting sequences, lead lists → cold-outreach (deliverability is a constraint on it, not the same job).
  • Consent, lawful basis, retention of the address list → gdpr-privacy and data-policy. Unsubscribe mechanics live here; consent law does not.
  • Handling the DKIM private key and provider API secrets → ../secure-coding/SKILL.md.

The three records that must align

SPF, DKIM, and DMARC are not three ways to do the same thing. DMARC is the policy; it passes only when SPF or DKIM both authenticate and align with the visible From: domain. Most "SPF is set but DMARC fails" tickets are an alignment miss, not a missing record.

RecordWhat it assertsCommon break
SPF (TXT)This IP/host is allowed to send for the domainLists the provider but the Return-Path is a different domain → no alignment
DKIM (TXT)This message body+headers are signed by a key the domain publishedProvider signs with provider.net, not your domain → no alignment; or a deprecated 1024-bit key (publish 2048-bit, rotate periodically)
DMARC (TXT at _dmarc)What to do when neither aligns, plus where to send reportsPolicy left at p=none forever; never tightened
dns
; DMARC — start at none to collect reports, then tighten to quarantine/reject.
_dmarc.acme.com.  IN TXT  "v=DMARC1; p=none; rua=mailto:dmarc@acme.com; fo=1"

Alignment rule, stated once: the domain in From: must match the domain SPF authenticated (the Return-Path/envelope domain) or the domain in the DKIM d= tag. Use a custom Return-Path and a domain-keyed DKIM selector through your provider so at least one aligns. Verifying SPF alone passing is the classic false comfort.

Gmail / Yahoo bulk-sender rules

If you send more than ~5,000 messages/day to Gmail or Yahoo accounts, these are enforced, not advisory. Enforcement ramped from late 2025; failures now draw temporary and permanent rejections, not silent spam-foldering.

  1. SPF + DKIM both set, and DMARC present at minimum p=none. At least one of SPF/DKIM must align with From:.
  2. One-click unsubscribe (List-Unsubscribe + List-Unsubscribe-Post) on marketing/promotional mail, honored within 2 days. Transactional mail (password reset, receipt, shipping) is exempt.
  3. Spam-complaint rate kept low. The hard threshold where filtering kicks in is 0.3% (Postmaster Tools); Google's reliable-inbox target is below 0.1%. Treat 0.3% as the cliff, 0.1% as the speed limit.
text
List-Unsubscribe: <https://acme.com/u/abc123>, <mailto:unsub@acme.com?subject=unsub>
List-Unsubscribe-Post: List-Unsubscribe=One-Click

BIMI — the verified logo, last

BIMI shows your brand logo (and on Gmail a blue verified checkmark) next to the message. It is the last step, never a fix for placement: it requires you have already passed DMARC at enforcement, and it changes how a delivered message looks, not whether it gets delivered.

Hard prerequisite: DMARC at p=quarantine or p=reject with pct=100. A record left at p=none does not qualify — that is why "add BIMI to escape the spam folder" is backwards; you cannot publish it until the auth work is done.

Whether the logo (and checkmark) actually render depends on the certificate:

ApproachCost / proofWhere it shows
Self-asserted (no certificate)Free; logo onlyYahoo, Fastmail — not Gmail
CMC (Common Mark Certificate)Cheaper; ~12 months of public logo use, no registered trademarkGmail + the rest, with checkmark
VMC (Verified Mark Certificate)~$749–$1,500/yr; needs a registered (or government-modified) trademarkGmail + the rest, with checkmark

Active mark-certificate issuers in 2026: DigiCert, GlobalSign, SSL.com (Sectigo resells; Entrust exited mark certificates in 2025). The logo file must be SVG Tiny PS 1.2, square, with no scripts or external references.

dns
; BIMI — only valid once DMARC is at quarantine/reject with pct=100.
; a= is the VMC/CMC PEM; omit it for a self-asserted (non-Gmail) logo.
default._bimi.acme.com.  IN TXT  "v=BIMI1; l=https://acme.com/logo.svg; a=https://acme.com/vmc.pem"

Do BIMI only after weeks of clean, enforced DMARC. It amplifies a good reputation; it does not create one.

Show full SKILL.md (456 more words)Show less

Warm a cold domain (decision flow)

A brand-new domain has zero reputation; blasting volume on day one looks exactly like a spammer. Warm only if the domain genuinely has no history.

  • New domain, no send history → warm: start ~20-50/day to engaged recipients, roughly double every few days over 4-6 weeks, watch Postmaster reputation before each step up. Send your most-opened content first.
  • Established domain, new provider/IP → warm the IP path, not the domain; migrate a slice of volume and ramp.
  • Established domain, same IP, sudden spam folder → do NOT warm; this is a reputation or auth regression. Read the rejection code and Postmaster trend first (see the error table).

Skipping warmup to "just send the campaign" is the most common self-inflicted blacklisting. There is no fast path; reputation is earned by consistent, low-complaint sending.

Read the rejection, then act

SignalLikely causeFix
550 5.7.26Message unauthenticated — SPF and DKIM both failed/missingPublish SPF + DKIM through the provider; confirm at least one aligns
dmarc=fail in headers, SPF=passAlignment miss: Return-Path ≠ From: domainSet a custom Return-Path on your domain, or align the DKIM d=
421/451 deferral, then later deliveryReceiver throttling an unwarmed/spiky senderSlow the ramp; spread volume; warm the domain
Postmaster "Bad" domain reputationSustained complaints / spam-trap hitsCut volume, prune unengaged, fix consent, hold under 0.1% complaints
Lands in Promotions (not Spam)Not a failure — bulk/marketing classificationLeave it; do not chase the Primary tab by faking transactional headers

Anti-patterns

Anti-patternWhy it breaksDo instead
"SPF passes, so we're authenticated"DMARC needs alignment; SPF on a mismatched Return-Path still fails DMARCVerify DMARC result in headers, not SPF alone; align Return-Path or DKIM
Leaving DMARC at p=none foreverPublishes intent to enforce nothing; spoofers and filters both noticeCollect rua reports, then move to quarantine then reject
p=reject on day one with no report reviewSilently drops your own legitimate sub-streams (CRM, support tools)Stage none → quarantine → reject, reading reports at each step
Blasting full volume from a new domainLooks like spam; gets throttled/blacklisted with no recovery for weeksWarm: tiny start to engaged users, ramp over 4-6 weeks
Buying/scraping a list to hit volumeSpam traps + complaints spike past 0.3% → domain reputation tanksSend only to opted-in, engaged recipients; prune the unengaged
Faking transactional headers to dodge PromotionsViolates bulk rules; risks rejection, not just folderingAccept Promotions placement; earn Primary via engagement
Routing the unsubscribe to a form that takes a weekBreaks the 2-day one-click honor rule; raises complaintsHonor List-Unsubscribe-Post one-click within 2 days, automatically
Adding BIMI to fix spam-folderingBIMI needs DMARC enforcement you do not have yet, and it changes logo display, not placementFix auth + reputation first; add BIMI last as a branding layer

© ericrisco, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files (scripts) in skills/email-deliverability of ericrisco/rsc-harness.

  • SKILL.md
  • evals/README.md
  • evals/cases.yaml
  • scripts/verify.sh

Open the folder on GitHubat commit e3d5b33

Compare with similar skills

Email Deliverability next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Email Deliverability compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Email Deliverability this skillericrisco/rsc-harness174—~2.3kAutomated safety check: PassMIT
Smtp Email Senderopenakita/openakita2k—~693Automated safety check: NotesAGPL-3.0
Deliverability Test Publicgrowthenginenowoslawski/coldoutboundskills751—~1kAutomated safety check: PassMIT
Imap Smtp Emailfreestylefly/wesight9443 repos~1.7kAutomated safety check: NotesMIT
Mjml Email TemplatesAaronontheweb/dotnet-skills1.2k1 repos~2.7kAutomated safety check: PassMIT
Imap Smtp Emailwentorai/Research-Claw858—~1.3kAutomated safety check: NotesCustom licence

Similar skills

  • Smtp Email Sender

    openakita/openakita

    Send emails via SMTP (Gmail, Outlook, etc.). An agent skill from openakita/openakita.

    2k GitHub stars~693 tokensUpdated 15 days ago
    Backend & APIsAuto-check: notes
  • Deliverability Test Public

    growthenginenowoslawski/coldoutboundskills

    Compare reply rates, bounce rates, and positive reply rates broken down by inbox type (SMTP / Gmail / Outlook) for a Smartlead account.

    751 GitHub stars~1k tokensUpdated 3 days ago
    Backend & APIsAuto-check passed
  • Imap Smtp Email

    freestylefly/wesight

    Read and send email via IMAP/SMTP. An agent skill from freestylefly/wesight.

    944 GitHub starsUsed in 3 repos~1.7k tokens
    Backend & APIsAuto-check: notes
  • Mjml Email Templates

    Aaronontheweb/dotnet-skills

    Build responsive email templates using MJML markup language.

    1.2k GitHub starsUsed in 1 repo~2.7k tokens
    Backend & APIsAuto-check passed
  • Imap Smtp Email

    wentorai/Research-Claw

    Read, search, and manage email via IMAP protocol. An agent skill from wentorai/Research-Claw.

    858 GitHub stars~1.3k tokensUpdated 1 mo ago
    Backend & APIsAuto-check: notes
  • Gmail Email

    open-gitagent/gitagent

    Send emails via Gmail SMTP using App Password authentication.

    713 GitHub stars~235 tokensUpdated today
    Productivity & AutomationAuto-check: notes

More from ericrisco/rsc-harness

All 233 skills in this repo
  • Ab Testing

    ericrisco/rsc-harness

    A skill your agent uses when designing or analyzing a controlled experiment — falsifiable hypothesis, sample size from an MDE, reading significance/CI/power, CUPED, or rescuing tests that won't go…

    174 GitHub stars~2.4k tokensUpdated yesterday
    Auto-check passed
  • Accessibility

    ericrisco/rsc-harness

    A skill your agent uses when making a web UI conform to WCAG 2.2 Level AA — axe-core or Lighthouse a11y violations, keyboard operability, focus management, ARIA roles/names/live regions, contrast…

    174 GitHub stars~3.4k tokensUpdated yesterday
    Auto-check passed
  • Ads

    ericrisco/rsc-harness

    A skill your agent uses when running or fixing paid acquisition on Google or Meta — campaign structure (Performance Max, Demand Gen, Search, Advantage+), platform-fit creative, budget/scaling rules…

    174 GitHub stars~2.2k tokensUpdated yesterday
    Auto-check passed
  • Agent Eval

    ericrisco/rsc-harness

    A skill your agent uses when measuring whether an LLM or agent system actually got better and gating merges on it: golden sets, fixing an inflated LLM-as-judge, scoring RAG (faithfulness, contextual…

    174 GitHub stars~3.2k tokensUpdated yesterday
    Auto-check passed
  • AI Media

    ericrisco/rsc-harness

    A skill your agent uses when a creative goal must become a finished media file: pick and order generative-media models per modality — AI voiceover, image-to-video clips, score — then glue them with…

    174 GitHub stars~3.3k tokensUpdated yesterday
    Auto-check passed
  • Analytics

    ericrisco/rsc-harness

    A skill your agent uses when instrumenting product or web analytics — GA4/PostHog SDK wiring, event taxonomy, funnels, double-counted events, consent gating, PII scrubbing.

    174 GitHub stars~2.8k tokensUpdated yesterday
    Auto-check passed

Works with

Questions about Email Deliverability

What does Email Deliverability do?

A skill your agent uses when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code…. Email Deliverability is an agent skill from ericrisco/rsc-harness. Use when mail already sent lands in spam, is rejected, or fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation, not the sending code: SPF/DKIM/DMARC alignment, domain warmup, spam-complaint rate, one-click unsubscribe, BIMI.

When should I use Email Deliverability?

Email Deliverability fits situations like: mail already sent lands in spam; fails the Gmail/Yahoo bulk-sender checks and the fix is authentication and reputation; not the sending code: SPF/DKIM/DMARC alignment; spam-complaint rate.

How do I install Email Deliverability in Claude Code?

Run `npx skills add ericrisco/rsc-harness --skill email-deliverability -a claude-code`. Or copy the skill folder (skills/email-deliverability in ericrisco/rsc-harness) into .claude/skills/email-deliverability in your project. Claude Code loads it when a task matches its description.

How do I install Email Deliverability in Codex?

Run `npx skills add ericrisco/rsc-harness --skill email-deliverability -a codex`. Or copy the skill folder (skills/email-deliverability in ericrisco/rsc-harness) into .agents/skills/email-deliverability in your project. Codex loads it when a task matches its description.

Can I use Email Deliverability in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ericrisco/rsc-harness --skill email-deliverability -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/email-deliverability, .gemini/skills/email-deliverability, .github/skills/email-deliverability and .opencode/skills/email-deliverability in your project.

What does Email Deliverability need to run?

Going by SKILL.md and its folder, Email Deliverability needs a shell for the scripts in its folder. Our summary lists: A Bash shell.

Does Email Deliverability access the network?

SKILL.md names 1 domain. In commands or code: acme.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Email Deliverability safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Email Deliverability use?

Email Deliverability is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Email Deliverability use?

About 2.3k tokens (SKILL.md is roughly 9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Email Deliverability?

Skills that share tags, products or a category with Email Deliverability: Smtp Email Sender (openakita/openakita, 2k stars), Deliverability Test Public (growthenginenowoslawski/coldoutboundskills, 751 stars), Imap Smtp Email (freestylefly/wesight, 944 stars) and Mjml Email Templates (Aaronontheweb/dotnet-skills, 1.2k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Email Deliverability?

ericrisco (a GitHub user) maintains it in ericrisco/rsc-harness, which has 174 GitHub stars. The repository holds 233 skills in this directory. The repository was last updated on October 7, 2026.

Source: ericrisco/rsc-harness on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.