How WordPress Agencies Can Manage Client Mailboxes

Plan agency mailbox access in WordPress with client consent, separate site boundaries, tested sender identities, and a documented handoff.

Cover Image for How WordPress Agencies Can Manage Client Mailboxes

An agency can install PressedMail on a client's WordPress site so authorized people can read and answer a compatible mailbox there. Before connecting it, agree on whose mailbox it is, who may read it, and who will maintain the connection.

Website administration does not automatically mean permission to read client email. A mailbox can contain invoices, employee correspondence, password resets, and unrelated customer information. Define access around the client's actual request.

PressedMail also does not turn independent client websites into one agency inbox. Treat each WordPress installation and its users as a separate setup. Multiple connected mailboxes on a paid plan are a product capability, not a substitute for client boundaries.

Decide where the mailbox belongs

The straightforward arrangement is a client's mailbox connected to that client's WordPress installation. The client retains its provider account and recovery path. The agency installs or supports the interface under the agreed scope.

Another situation is an agency using its own business mailbox to communicate with clients. That is the agency's correspondence and fits the freelancer workflow, even if several agency staff are involved.

Combining unrelated client mailboxes on an agency-owned site changes who has access and who stores the data. Do not make that change merely because the account screen accepts another connection. Agree on the arrangement first and verify the permissions it relies on.

PressedMail folder pane beside fictional correspondence

Screenshot of fictional messages in the paid PressedOut layout. It shows mailbox organization, not isolation between agency clients.

Record ownership before entering credentials

A useful connection record names the client, WordPress site, mailbox provider, mailbox address, business owner, permitted operators, and support contact. It should also identify the person who can approve a change to the provider's authentication policy.

Keep secrets out of this general record. Use the client's approved credential-sharing process and minimize the people who receive reusable mailbox credentials. An agency project ticket is a poor place to paste a password that remains valid after the project ends.

Check the mailbox address with the client. A contact address printed on a website may be an alias or a forwarding destination rather than a mailbox with IMAP access. The custom-domain account guide explains the distinction.

For managed providers, account access may also depend on administrator policy. Do not weaken that policy to make a connection wizard succeed. Ask the responsible administrator to evaluate the supported access method.

Set up one client and one mailbox first

PressedMail Free supports one mailbox. Start there when the client's requirement is one business address inside its own site. Paid plans add multiple accounts and other capabilities, but a larger account allowance is not proof that the access arrangement is correct.

Install the plugin on the agreed WordPress site and connect an owned or explicitly authorized mailbox. Use harmless test messages while checking the setup. Avoid a screenshot that exposes the client's real inbox merely to prove that mail appeared.

Verify incoming and outgoing behavior separately. Send a message from an address the tester controls, wait for synchronization, and reply. Check the reply at the receiving address and confirm that the From identity belongs to the client rather than to the agency.

If the provider rejects the connection, collect the relevant error and account context without exposing the secret. A working provider login and a working IMAP or SMTP connection are separate observations.

Verify who can reach the mailbox

WordPress users, mailbox credentials, and provider permissions are different controls. A user who cannot open a particular WordPress screen might still have provider access through credentials they received elsewhere.

Inspect the current administrative settings and test the roles the client intends to use. Check with an allowed user and a user who should not have access. Include direct navigation, because hiding a menu item alone does not establish an authorization boundary.

Do not give a client access to an agency's broader mail workspace and rely on a tag to separate their messages. A folder called “Client A” is an organizational label. It does not create a separate tenant or a private client portal.

Maintain the site around this access. Trusted plugins, updates, appropriate account permissions, and recovery planning affect the environment in which mail is read. WordPress's hardening documentation covers those responsibilities.

The article on securing email display addresses a different boundary: how externally supplied message content is rendered once an authorized user opens it.

Keep site sending separate from inbox access

A client may want both mailbox access and reliable WordPress notifications. PressedMail includes a WordPress SMTP route, but it has its own SMTP server configuration. The inbox connection does not automatically become the site's system-mail route.

Inventory existing SMTP and email API integrations before changing anything. A form, a store, and a membership plugin may not all send through the same mechanism. Agree on which component will own wp_mail and who will respond when a notification fails.

Free supports a single WordPress SMTP server. Pro includes additional server connections and sender routing. Neither plan distinction creates an automatic fallback service, and a successful SMTP submission does not establish recipient inbox placement.

For a client operating the setup themselves, the small-business email workspace guide is a useful handoff companion. It covers the ongoing responsibilities without assuming the agency will remain the operator.

An Email Connections list containing fictional accounts

Screenshot composite of multiple mailbox connections, a paid-plan example. It does not show a cross-site agency dashboard or prove client access isolation.

Handoff should include a recovery route

Give the client the provider's webmail address, connection ownership details, approved WordPress users, and the contact responsible for updates. Make sure the person accepting the handoff can use the fallback login through the client's own recovery arrangements.

Explain how to recognize an incoming connection problem and an outgoing one. The client should know that a normal-looking inbox can contain old mirrored messages while synchronization is failing.

Document any rules you created, including their conditions and destination folders. A later operator should not have to guess why messages disappear from the inbox. If several mail categories need different treatment, use the multiple-workflow guide to describe the arrangement.

At the end of the engagement, remove agency access through the agreed WordPress and provider processes. Review app passwords, delegated access, and shared credentials as applicable. Removing a WordPress account alone does not revoke a separate provider credential.

Also agree on what happens to local copies, exported files, and backups. Disconnecting a mailbox should not be described as erasing every copy held by every system.

When an agency should choose another tool

Provider webmail is often enough when the client's request is occasional inbox access. A dedicated helpdesk is better suited to explicit requirements for conversation assignment, response commitments, or several people coordinating replies.

PressedMail can place email beside site work, but do not sell the client an assignment system or a management console for all their WordPress installations. Describe the actual setup, the edition being used, and the people responsible for it.

Common questions

Can one PressedMail installation manage every client's WordPress site?

PressedMail's multiple-mailbox capability does not provide a dashboard controlling independent WordPress installations. Plan and support each site's access arrangement explicitly.

Does a client tag restrict who can read messages?

No. Tags organize messages. They should not be used as a permission boundary.

Who should own the mailbox connection?

The client should retain control of its provider account and recovery process. Agency access should reflect the agreed support role and be removable at handoff.

Can an agency keep using PressedMail for its own client correspondence?

Yes, with its own authorized mailbox setup. Keep that business correspondence distinct from access to mailboxes owned by individual clients.

What should happen when an agency operator leaves?

Review their WordPress access and every provider access method they possessed. Update the support record so the remaining operators know who now owns the connection.

Manage your email inside WordPress

PressedMail Free adds an email client directly to your WordPress dashboard. Connect a compatible IMAP/SMTP mailbox, read and send mail, organize messages, and configure WordPress SMTP.

Download PressedMail Free →

Newsletter

Get useful PressedMail updates.

New releases, setup guidance, and practical ways to handle email in WordPress.

Occasional PressedMail email. Unsubscribe whenever you like.

Choose the plan that fits your WordPress sites.

Paid plans include unlimited accounts and users. Compare Premium and Ultimate features, then choose the site count you need.

Yearly plans are priced by number of sites. Lifetime is a one-time payment covering up to 100 sites.

Starter

For one site

$49/ year
1 Website
  • All current and future Premium features
  • Unlimited email accounts
  • Contacts, calendar, and email rules
  • AI tools and phishing detection
  • Layouts, themes, and workspace controls
  • Licensed updates and priority support
Most Popular

Premium

For multiple sites

$89/ year
10 Websites
  • All current and future Premium features
  • Unlimited email accounts
  • Contacts, calendar, and email rules
  • AI tools and phishing detection
  • Layouts, themes, and workspace controls
  • Licensed updates and priority support

Ultimate

For agencies

$169/ year
100 Websites
  • All current and future Premium features
  • All current and future Ultimate features
  • Unlimited email accounts
  • Contacts, calendar, and email rules
  • AI tools and phishing detection
  • Licensed updates and priority support

See how people use PressedMail for real inbox work.

...I save hours & it's easy to use...

I have a lot of email accounts and it's annoying to manage them through different providers. I installed PressedMail, added my accounts, and automated the cleanup of over 3000 emails. PressedMail has saved me hours of work.

Robert H. Alexander

Robert H. Alexander

...Helps get more clients...

As a freelancer I need to manage several clients' accounts. I installed PressedMail on WordPress on localhost and use it as my main email client. I manage everything for clients from PressedMail. And several clients use PressedMail now after I have set their WordPress instances up.

Gene Piki

Gene Piki

...Email Swiss Army Knife...

We use PressedMail as a value added service for clients and potential clients as a feature of our agency's offering helping put us ahead of competition. We love the white-labelling feature, automation, and security controls. It also replaces several of the other plugins we used to use and it's like a small CRM.

Kit M. InCurb Digital Solutions.

Kit M. InCurb Digital Solutions.

...Fast inbox organization with phishing detection...

PressedMail helps us organize our inboxes fast. We especially like the phishing detection feature.

John & Andrea

John & Andrea

...One source of truth for every client...

As a VA, I use PressedMail to keep each client's inbox separate while managing everything from one app. It gives me a single source of truth without mixing client work together.

Edhrea A.

Edhrea A.

...Teaching and client work stay organized...

I balance teaching with social media marketing clients. PressedMail helps me keep both sides of my work organized in one place.

J.A. Payo

J.A. Payo

Using PressedMail in your own work? Submit a testimonial.

FAQ

Common questions

Roadmap

See what is coming next.

Follow planned work, current progress, and recently completed features.

View Full Roadmap
  1. Shared Inboxes for Team Mailboxes

    Share a single inbox with teammates so support, order, and operations email can be monitored and handled together from WordPress.

    Planned
  2. Shared Calendars for Scheduling and Coverage

    Give teammates access to shared calendars so meetings, time off, and internal event planning can stay coordinated inside WordPress.

    Planned
  3. Calendar Sync with External Providers

    Planned two-way calendar sync with external providers like Google Calendar, Outlook, iCloud, and CalDAV so PressedMail stays in step with calendars users already have.

    Planned

Get started

Bring your working inbox into WordPress.

Compare Premium and Ultimate features, then choose a paid plan for the number of WordPress sites you manage.