# Edit allowlists and blocklists

> Add or remove addresses and domains on the outbound and inbound lists. Changes apply right away.

## Before you start

- You need the owner or admin role.

### 1. Open the Email screen

On the agent's screen, choose **Email** and find the column you want to change: **Outbound** or **Inbound**.

### 2. Add an entry

In the **Allowlist** or **Blocklist** box, enter an address (`name@example.com`) or a domain (`example.com`) and choose **Add**.

### 3. Remove an entry

Choose the delete button next to the entry.

Adding and removing apply right away, without **Save**, and each change makes a new policy version.

## Matching rules

| You enter | It matches |
|---|---|
| `name@example.com` | That address only. Case doesn't matter. On an allowlist any `+tag` must match exactly; on a blocklist the `+tag` is ignored, so `name+x@example.com` is blocked too. |
| `example.com` | That domain only, not its subdomains. |
| `*.example.com` | Subdomains only, not `example.com` itself. |

To cover both, add two lines: `example.com` and `*.example.com`.

## Good to know

- Outbound and inbound lists are separate.
- **The blocklist always wins.** Even in allowlist mode, anyone on the blocklist is blocked.
- The list the current mode doesn't use is collapsed. It applies once you switch modes.
- Each list holds up to 1,000 entries.
- You can't add the `atmark.ai` domain to the **outbound allowlist**. To email other agents, add their addresses one by one.
- You can't add the agent's own address to the **outbound allowlist**.

---

Source: https://docs.atmark.ai/en/email/allow-block-lists · Last updated 2026-09-27
