It starts with what happens — an event —, turns it into a reaction, decides who may do what with it, composes the message, proves the consent, plugs in your tools, delivers — then hands what must leave to your partners, under governance, and steers the whole. The detail — the grammar of events and journeys, the authorisation matrix, data classes, API conventions, the node and metric catalogues — lives on its own page.
Events, triggers and conversion journeys
Native events — open, click, bounce, unsubscribe, entry into a segment — and business events posted by your tools with their payload set off what comes next: nurturing sequences, branching journeys, campaigns, service messages. Conditions, delays, de-duplication, waits for an event, A/B tests, and conversion goals that end the journey the moment the order is placed or the appointment booked.
See the detail
Authorisation and access
An organisation, its spaces, its roles and its API keys compose into a single authorisation, computed by the server on every call. Rights are inherited from the role, added to by named permissions, and capped by the class of the key. A resource belonging to another space is not found, never forbidden.
See the detail
Templates, kits and public pages
A template editor with no code execution, reusable fragments frozen into every sent version, a live preview. Content that reads the latest event of each type, so you write from what just happened. The import of an HTML kit delivered by an agency, a file library inside the perimeter, and unsubscribe and preference pages in your own branding.
See the detail
Consent, sensitive data and traceability
A prospect comes in with their proof of consent: a register of acts per purpose that keeps the exact wording presented, the date, the source and the address of the form. Two tracking pixels kept under two distinct regimes. Sensitive attributes encrypted outside the record and readable on a named permission. An append-only audit log, retention periods, irreversible anonymisation and a reversibility export.
See the detail
API, integration and operations
A contract published before the code: opaque identifiers, cursor pagination, idempotent creations, standard errors. This is where your tools post their events and read back what happens: signed webhooks, an event log, exports with no personal data. A sandbox where nothing leaves, and a path to production made of artefacts, with no manual operation.
See the detail
Delivery and deliverability (e-mail channel)
The first channel open, e-mail is delivered by default by the platform itself: messages are handed directly to the recipients’ mail servers, from its own IP addresses — the Missivia MTA, or an external router at the space’s choice — Mailjet and Brevo are integrated, and any routing solution that exposes an API can be added the same way — with our tracking and our unsubscribe kept. Sending domains verified with SPF, DKIM and DMARC, per-IP warm-up, bounce and complaint handling, automatic pause when a space’s thresholds are crossed.
See the detail
Workflows and deliveries
A versioned graph of typed nodes through which batches flow: segments, lists, events or statistics as sources; projection, filter, aggregation, join; CSV, JSON, XML or Excel, PGP-encrypted; SFTP, HTTP, S3 or e-mail deposit to destinations declared by the space, each with the data class it may receive. No arbitrary code, a closed vocabulary of functions; a health attribute never leaves, and every output is logged by field names, never by values.
See the detail
Dashboards
A grid builder — KPIs, time series, breakdowns, tables, funnels — saved and shared per space, with a default dashboard per role and four starter templates. Every widget queries a closed catalogue of metrics and dimensions, filtered by role: rates computed on the consenting population, “not measurable” rather than zero, a display threshold on every person count, never an individual datum. Period comparison, goals, annotations, PNG and PDF exports.
See the detail