We are releasing a new security setting in our UI called IP Allowlisting. Securing sending is essential when sending emails through Postmark. IP Allowlisting adds a new layer of protection for API sending. You define the IP ranges allowed to send email through the Postmark API and sending requests sent from outside those ranges are rejected with a 403 status code.
Here's how it works — You can add up to 10 IP ranges (in IPv4 CIDR format) that are allowed to send email using the Postmark API. Send requests originating from outside these ranges will be rejected with a 403 status code.
You can set this at two levels:
A few things to know before you turn it on: