Every email your sandbox would really send. On one page.

The manifest resolves each workflow alert, flow, trigger, and Apex sender in a refreshed sandbox to the inbox it would actually hit — before UAT starts, not after a customer replies.

silobase — Acme Corp UAT / manifest
Blast-radius manifest
UAT · scan-0158 · Jul 1, 2026
Email pathSourceObjectSenderResolves toRiskWould send
Case_Escalation_NotifyWorkflow AlertCasesupport@acme.exampledana.customer@bluebay.examplehighYes
Renewal_Reminder_90dFlowContractrenewals@acme.examplekim.buyer@stonebridge.examplehighYes
Opp_Closed_Won_ThanksEmail AlertOpportunitysales@acme.examplelee.owner@harborlane.examplehighYes
OrderConfirmationMailerApex TriggerOrderorders@acme.exampleana.ops@crestline.examplehighYes
Lead_Welcome_SequenceProcess BuilderLeadhello@acme.examplesam.lead@fernvale.examplehighYes
SLA_Breach_WarningWorkflow AlertCasesupport@acme.examplepat@acme-uat.examplemediumYes
Quote_Approval_RequestFlowQuotequotes@acme.examplejordan@acme-uat.examplemediumYes
Case_Reopened_Owner_PingEmail AlertCasenoreply@acme.examplemorgan@acme-uat.examplemediumYes
InvoicePastDueNotifierApex TriggerInvoice__cbilling@acme.exampleap@willowmark.examplehighYes
Showing 9 of 25 paths
Recipient resolution

Paths resolve to inboxes, not guesses

Every detected sender is traced to its recipient at send time: a real contact copied in from production, an internal user, or a whitelisted test address. That difference is the whole risk model — and it sits on every row.

  • Real-contact recipients rank high by default
  • Internal users and test addresses stay ranked, never hidden
  • Sender address, object, and sample recipient on each path
See a redacted proof example

Paths by source type

UAT · scan-0158

Flow6Workflow Alert5Apex Trigger5Email Alert5Process Builder4
Severity ledger

Risk that trends down, on the record

High, medium, and low counts are kept week over week for every sandbox. When a refresh quietly reactivates an old alert, the ledger shows the exact week it came back — and who cleared it last time.

  • Severity counts tracked per sandbox, per week
  • Reintroduced paths flagged against their history
  • One click from a trend point to the paths behind it
Explore the ledger

Open risky paths by severity

All sandboxes · last 12 weeks

012.52537.550Apr 13Apr 27May 11May 25Jun 8Jun 22
HighMediumLow
Release sign-off

Block a deploy with one row of evidence

Every release gets a manifest diff: paths added, removed, and changed since the last clear scan. Clear releases ship. Blocked ones name the exact path holding them — no meeting required.

  • Added, removed, and changed paths per release
  • Gate status your release manager can cite
  • Export the diff as PDF or CSV for the audit trail
Explore release gates

Release ledger

4 releases · 3 sandboxes

ReleaseSandboxDateManifest diffGate
R-2026.07 SummerUAT2026-07-10+6-1~4In review
R-2026.06b Hotfixhotfix-jul2026-06-26+1-0~2Clear
R-2026.06 Service CloudFullCopy-20262026-06-12+9-3~7Blocked
R-2026.05 CPQ RolloutUAT2026-05-22+4-2~5Clear
2,210
components parsed in a single full-sandbox scan
88
email paths mapped from one metadata export
9
would-send paths flagged before UAT even started

Put a manifest between your sandbox and your customers.

Run the first scan free. The $99 one-time report covers a single org; the $39/mo ledger keeps every sandbox on record, release after release.

    Blast-Radius Manifest — silobase — silobase