Two ways to share, in one sentence each
Both let someone other than the mailbox's creator read and send from it, without ever seeing its real password, but they work differently and fit different situations.
App password
The person logs in using the mailbox's own email address, with a dedicated password you generate for them. No account of theirs is involved at all.
Shared access
The person logs into their own platform account, then opens the mailbox from a list. They never type the mailbox's email or any of its passwords.
App passwords: no account needed
From the mailbox's own webmail (Settings > Security > App Passwords), generate a password and label it with the person's name. You get a string like inkb-xxxx-xxxx-xxxx-xxxx once: copy it and hand it to them directly.
They open the normal webmail login page and sign in with the mailbox's email address and that password, exactly as if it were the real password, except it's theirs alone and you can revoke it without touching anyone else's access.
This is the right choice when the person doesn't have (and doesn't need) a platform account: an intern, a contractor, someone who only ever needs to check one shared inbox and nothing else on the platform.
Revoking access
Both are revoked from the same places you granted them, instantly and independently of each other: deleting one app password or one shared-access grant never affects anyone else's access to the same mailbox.
For shared access specifically, revocation is immediate even for a session that's already open: the next action that person takes in the webmail will be rejected, not just their next login attempt.
© 2026 Inkbox SAS