Features
Every SES signal, made legible
A closer look at what TrackSES shows you about Amazon SES, from the live event stream to per-recipient history, smart alert rules and cross-project analytics, all on minimal, scoped AWS permissions.
See every event the moment SES emits it
Deliveries, bounces, complaints, opens, clicks, rejects and rendering failures flow into one feed in real time. Filter by type, domain or recipient and watch your sending happen live, with no polling and no refresh.
Know which domain is dragging your reputation
Delivery, bounce and complaint rates are broken out per sending domain and tracked over 7-, 30- and 90-day windows. The cross-project Overview rolls the same breakdown up across every project you run.
A full timeline for every address
Search any recipient and see their complete event history with six metrics per address: sent, delivered, bounced, complained, opened and clicked. Catch the addresses that keep failing before they drag down your sender reputation.
"bounce": { "bounceType": "Permanent" }
Everything SES knows about that event
Open any event for the full diagnostic picture: SMTP response codes and reporting MTA for deliveries, bounce type and sub-type with per-recipient diagnostic codes, complaint feedback type, open and click IP addresses, the exact URL clicked, and the raw SNS payload.
Get warned before AWS throttles you
Two rule types cover what matters. Count-based rules fire when bounces or complaints exceed a threshold inside a sliding window, with a configurable cooldown. Rate-threshold rules fire when the bounce or complaint percentage crosses a line above a minimum volume. Alerts reach you by email and in the in-app notification center.
One view across all your projects
The Overview page rolls up KPIs across every project in your organization: total projects, domains, emails processed and overall delivery rate. Domain-level deliverability is broken out per project, so you can compare at a glance.
Scoped to observe, never to send
TrackSES connects over SNS with a least-privilege IAM user. It is read-only on your data; the dedicated resources it creates are prefixed trackses-* . The only writes on your account are its own SNS event destination and a default configuration set on the identities you connect; your existing destinations stay untouched. It never requests ses:Send* and physically cannot send.
ses:Send*: never requested ses:DeleteIdentity: never requested "Resource": "arn:aws:sns:*:*:trackses-*", "Action": [ "sns:Subscribe", "sns:Receive" ]
And the rest
Everything else that makes it click
See it on your own SES events
Connect in minutes and watch your live dashboard fill up as events arrive.