Email agent

Email agents read incoming messages, classify them, draft replies, schedule follow-ups. They save hours per week for people with heavy email load. They also have high blast radius: sent emails can't be unsent.

Common patterns

Triage agent

Classifies every incoming email: urgent, can wait, archive, auto-reply. Doesn't send; just sorts.

Draft agent

Proposes replies to emails. Human reviews and sends.

Auto-reply agent

For well-defined inbound (FAQ questions, standard vendor requests), actually sends without human review.

Scheduling agent

Negotiates meeting times on your behalf across email threads.

Core tools

Safety is paramount

Sent emails are irreversible and can go to the wrong person, contain wrong info, or violate privacy. Safety guardrails:

Prompt injection risk

Email bodies can contain injection attempts. A hostile email could try to manipulate the agent into sending, deleting, or forwarding. Defense:

Tone matching

Replies should sound like the user. Train on past sent emails (with permission) for voice. Review samples to ensure the agent isn't drifting into generic voice.