Thanks for sharing. One thing I'm trying to understand is whether Salesforce actually supports any form of centralized DKIM management across multiple domains, or if each domain still requires its own authentication setup regardless of whether email is sent directly from Salesforce or through an external ESP. Even with tools like SendGrid or SES, wouldn't each sending domain still need its own DKIM/SPF records published in DNS? My understanding is that the operational experience may improve, but the underlying domain authentication requirements remain domain-specific. Have you seen any approach that genuinely reduces the number of DKIM/domain verification configurations needed, rather than just providing a better way to manage them?
