Finocket sends outreach on its own included accounts out of the box — nothing to set up. If you'd rather send from your own provider accounts (your sender identity, your reputation, your provider bill), add your keys under Profile → Outreach sending. Consent checks are unchanged either way.
Which providers are ready today?
- Email — ready: Resend and ZeptoMail. Each needs an API key/token and a verified from sender or domain at the provider.
- Email — listed but coming soon: Amazon SES and SendGrid appear in the list, but they are not wired yet. You can't rely on them for sending today; use Resend or ZeptoMail, or the included sender.
- WhatsApp — ready: Meta Cloud API (phone-number ID + permanent access token) and 360dialog (API key). Business-initiated messages must use a Meta-approved template.
- SMS — ready: MSG91, Fast2SMS, Twilio and Plivo. Indian routes need a DLT-registered sender ID and template IDs; US routes on Twilio need approved A2P 10DLC registration. Until those are in place, SMS stays queued — it is never fired unregistered.
What's the difference between a company key and a personal key?
A company credential — only the workspace owner can set it — applies to everyone in the workspace. A personal credential, which any member can set, overrides the company one for that member's own sending. Set neither and Finocket's included sending applies. This lets a business run one official sender while a field salesperson sends from their own account.
What does bringing a key change — and what doesn't it?
A key only swaps the transport: the account a message physically leaves from. Everything that decides whether a message may go — consent, suppression, quiet hours, template class, jurisdiction rules — runs exactly as before through the single send checkpoint. Your own key never bypasses compliance.
How are my keys protected?
Every credential is encrypted per workspace before it's stored — plaintext never lands in the database, and a saved key is never shown again. The screen only shows which provider is configured and whether it's verified. To rotate a key, paste a new one over it. When you save, use Save & send test email (email) or Save & verify (WhatsApp/SMS) — only verified credentials are used for real outreach, so a bad key can't silently swallow a campaign.
Related: Email, campaigns and consent, Sending & deliverability.