# Get one temporary inbox

`GET /v1/inboxes/{id}`

- Authentication: required (Bearer token)
- Required scope: `api.inboxes.view`

One inbox's accounting: its address, when it expires, whether it is
restricted, and how many messages were delivered and dropped.

This route answers for an EXPIRED inbox too, which is deliberate — the
row is accounting and outlives the content, so "did anything arrive
before it lapsed" stays answerable. Only the messages route goes
`410`, because only the messages are gone.

A private inbox belonging to somebody else is `404`, never `403`.

## Path parameters

- `id` (string<uuid>, required) — The inbox's UUID, exactly as returned by `POST /v1/inboxes`. A value that is not a UUID is a 404 rather than a 422 — it names nothing, and saying "that is not a valid UUID" would confirm the format of ids that do exist.

## Example request

```bash
curl 'https://api.sendops.dev/v1/inboxes/00000000-0000-0000-0000-000000000000' \
  -H "Authorization: Bearer $SENDOPS_API_KEY"
```

## Responses

### 200 — The inbox

Content type: `application/json`

```json
{
  "id": "00000000-0000-0000-0000-000000000000",
  "address": "k7q2m9xv4p@sndps.com",
  "expires_at": "2026-05-17T20:00:00Z",
  "poll_url": "https://example.com",
  "pull_url": "https://fetch.sendops.dev/p/pt_ab3k…/messages",
  "pull_token": {
    "id": "00000000-0000-0000-0000-000000000000",
    "prefix": "pt_ab3kd9",
    "label": "string",
    "created_at": "2026-05-17T20:00:00Z",
    "revoked_at": "2026-05-17T20:00:00Z"
  },
  "restricted": true,
  "restriction_source": "verified",
  "account_ref": "ws_123",
  "visibility": "private",
  "label": "string",
  "status": "active",
  "allowed_senders": [
    "string"
  ],
  "message_count": 0,
  "dropped_count": 0,
  "created_at": "2026-05-17T20:00:00Z"
}
```

### 401 — Missing, malformed, or unknown API key

Content type: `application/problem+json`

```json
{
  "type": "https://example.com",
  "title": "string",
  "status": 0,
  "detail": "string",
  "code": "invalid_key",
  "request_id": "string",
  "retry_after": 0,
  "retention_days": 0,
  "scope": "string",
  "resource": "string",
  "errors": [
    {
      "field": "string",
      "reason": "string"
    }
  ],
  "attribute_id": "00000000-0000-0000-0000-000000000000",
  "content_hash": "string",
  "differs": [
    "string"
  ]
}
```

### 403 — Key lacks the required scope or plan limit violated

Content type: `application/problem+json`

```json
{
  "type": "https://example.com",
  "title": "string",
  "status": 0,
  "detail": "string",
  "code": "invalid_key",
  "request_id": "string",
  "retry_after": 0,
  "retention_days": 0,
  "scope": "string",
  "resource": "string",
  "errors": [
    {
      "field": "string",
      "reason": "string"
    }
  ],
  "attribute_id": "00000000-0000-0000-0000-000000000000",
  "content_hash": "string",
  "differs": [
    "string"
  ]
}
```

### 404 — Resource not found

Content type: `application/problem+json`

```json
{
  "type": "https://example.com",
  "title": "string",
  "status": 0,
  "detail": "string",
  "code": "invalid_key",
  "request_id": "string",
  "retry_after": 0,
  "retention_days": 0,
  "scope": "string",
  "resource": "string",
  "errors": [
    {
      "field": "string",
      "reason": "string"
    }
  ],
  "attribute_id": "00000000-0000-0000-0000-000000000000",
  "content_hash": "string",
  "differs": [
    "string"
  ]
}
```

### 429 — Per-org rate limit exceeded

Content type: `application/problem+json`

```json
{
  "type": "https://example.com",
  "title": "string",
  "status": 0,
  "detail": "string",
  "code": "invalid_key",
  "request_id": "string",
  "retry_after": 0,
  "retention_days": 0,
  "scope": "string",
  "resource": "string",
  "errors": [
    {
      "field": "string",
      "reason": "string"
    }
  ],
  "attribute_id": "00000000-0000-0000-0000-000000000000",
  "content_hash": "string",
  "differs": [
    "string"
  ]
}
```

### 500 — Unexpected server-side failure. The `code` is `internal_error`. The
`request_id` field can be quoted to SendOps support to investigate.

Content type: `application/problem+json`

```json
{
  "type": "https://example.com",
  "title": "string",
  "status": 0,
  "detail": "string",
  "code": "invalid_key",
  "request_id": "string",
  "retry_after": 0,
  "retention_days": 0,
  "scope": "string",
  "resource": "string",
  "errors": [
    {
      "field": "string",
      "reason": "string"
    }
  ],
  "attribute_id": "00000000-0000-0000-0000-000000000000",
  "content_hash": "string",
  "differs": [
    "string"
  ]
}
```
