Home › Blog

How to Warm Up Lark Mail with IMAP, DKIM and a Safe Ramp

By BobWork04 Oct 202612 min read
Lark Mail warm-up setup showing IMAP, SMTP, mail-client password, DNS and daily ramp checks

Warm up Lark Mail for at least 14 days on an existing domain, or 3–4 weeks on a new domain, before outbound. If you skip IMAP/SMTP access, the mail-client password or DKIM, sending may work while replies and spam recovery fail. This guide gives the setup, ports, DNS checks and daily ramp.

Lark gets less coverage than Gmail and Microsoft 365, but the rules are the same: authenticate the domain, connect the mailbox correctly, then raise volume slowly. If you want the engine to handle daily sending and reply handling, keep BobWork’s Lark Mail warm-up guide open while you connect.

You should still understand the setup. Lark and Feishu tenants can use different hosts. Admins may also block third-party mail clients. A mailbox can look healthy in the Lark web app and still fail through IMAP.

Use this Lark Mail warm up plan

Start with the mailbox, not the campaign. A warm-up plan only helps if the domain passes SPF, DKIM and DMARC, and the mailbox can send and receive through authenticated mail-client access.

Use this schedule for a real outbound mailbox. It is conservative enough to protect a new sender, but not so slow that you waste a month on an existing domain.

Day rangeWarm-up mail per dayReal outreachWhat to checkAction if spam appears
Days 1–33–70IMAP/SMTP login, inbox placement, DNSFix setup before sending real mail
Days 4–79–150–5 manual emailsReplies, spam folder, DKIM passHold volume until spam falls
Days 8–1417–305–20 targeted emails7-day spam trend, bounces, repliesReduce warm-up cap or pause outreach
Weeks 3–4, new domain10–3010–30Domain reputation signalsAdd volume only if stable
Active campaign10–15Typically 30–50Complaints, bounces, spam landingsPause above 5% warm-up spam rate

BobWork Email Warm-up starts at 3 emails per day, adds 2 per day, and caps at 30 per day by default. The cap is editable per mailbox, up to 100, but most outreach mailboxes do not need that. Weekends run at 30% volume.

Do not treat warm-up volume as permission to blast. Warm-up creates normal mailbox activity. It does not make a weak offer, scraped list or broken DNS safe.

For outreach capacity, add mailboxes before you force one mailbox to carry all volume. A few stable mailboxes at modest volume usually age better than one mailbox sending hard all day.

What must be enabled first?

Confirm that your Lark or Feishu admin allows IMAP and SMTP. This is the step most teams miss.

In the admin console, go to the mail administration area and look for third-party client access. The exact labels vary by tenant. Search for “IMAP”, “SMTP” or “third-party client” if the menu has changed.

The admin should allow mail-client access for the user or user group that owns the mailbox. If the organisation disables it, no warm-up tool can connect through IMAP, even if the password is correct.

Next, check DNS. Lark Mail can host the mailbox, but your domain still needs the usual authentication records.

RecordPurposeWhat to enterHow to verify
MXRoutes inbound mail to LarkValues shown in Lark or Feishu adminSend a test message from an outside mailbox
SPFAuthorises Lark to send for the domainThe exact SPF include shown by your tenantUse an SPF checker and avoid duplicate SPF records
DKIMLets Lark sign outbound mailThe DKIM record generated in Lark adminConfirm the selector resolves in DNS
DMARCTells receivers how to handle failed authenticationStart with a valid DMARC TXT recordQuery _dmarc.yourdomain.com

Do not copy SPF or DKIM values from another domain. Lark can change the required value by region or tenant. Use the record shown in your own admin console.

For DMARC, a monitoring policy is enough at the start. Many teams start with p=none, then move to stricter policies after they confirm SPF and DKIM alignment. The key is having a valid record and watching failures.

BobWork checks SPF, DKIM and DMARC daily per domain. It looks for common DKIM selectors, including lark and feishu, and shows the domain state inside the warm-up account. You can also use the free SPF checker, DKIM checker and DMARC checker before connecting.

How do you create credentials?

Lark Mail usually does not work like a basic username-and-password mailbox when third-party clients are involved. You normally need a mail-client password created inside the account.

Use the mailbox that will send outreach. Open Lark or Feishu, go to account settings, then mail settings, then third-party mail client or client password settings. Generate a new mail-client password.

Copy it once and store it in your password manager. If you lose it, create a new one rather than guessing.

Use this password only for IMAP and SMTP. Your normal Lark login password, SSO password or workspace password is not the right credential for most mail-client connections.

If your tenant uses two-factor authentication or enterprise SSO, the mail-client password is even more important. It gives the mail client a scoped credential without exposing the main login.

Use the full email address as the username. For example, use alex@example.com, not alex. Mail servers often host many domains behind one endpoint, so the local part alone may fail.

Before you connect a warm-up tool, test the credential in a standard mail client if possible. Add the account as IMAP, send one message, receive one message, then remove it. This isolates Lark credential problems from warm-up configuration problems.

Lark publishes mail-client and admin guidance in its Lark Help Center. Feishu tenants should also check the current regional documentation in the Feishu Help Center, because hostnames and labels can differ.

Which hosts and ports work?

Lark global tenants and Feishu tenants can use different mail hosts. Use the hosts shown in your own mailbox settings or admin console. Your tenant setting is the source of truth.

Tenant typeIMAP hostIMAP portSMTP hostSMTP portEncryptionUsernamePassword
Lark globalimap.larksuite.com993smtp.larksuite.com465SSL/TLSFull email addressMail-client password
Feishu Chinaimap.feishu.cn993smtp.feishu.cn465SSL/TLSFull email addressMail-client password
Custom tenant settingUse the value shown in adminCheck provider settingsUse the value shown in adminCheck provider settingsAs shown by providerFull email addressMail-client password

For IMAP, use port 993 with SSL/TLS. For SMTP, use the secure port shown by Lark or Feishu. The common value is 465 with SSL/TLS.

If your tool offers STARTTLS on 587, do not guess. Use the port and encryption mode Lark shows for your tenant. Port and encryption mismatches often produce vague login errors.

Also check the sender identity. The SMTP username and visible From address should be the same mailbox unless Lark has explicitly allowed aliases. Sending as an alias before DKIM and DMARC alignment is correct can create avoidable failures.

If you use a custom tracking domain for campaigns, do not add it during the first warm-up days. First confirm that normal one-to-one mail lands well. Then add campaign infrastructure and test again.

How should warm-up run?

Connect your Lark mailbox. One is enough in the shared network; if you switch the account to Private pool, only your own mailboxes write to each other and you need at least two.

The private-pool option is useful for Lark teams with internal test domains, regional domains or multiple product mailboxes that do not want strangers’ mailboxes exchanging mail with theirs.

Once connected, the free pool handles the repetitive parts automatically: sending, replies, spam rescue and DNS checks. BobWork sends plain text office-style messages with no links and no images. About 40% of received warm-up mail gets a reply, and threads end after 3 messages.

The timing should look normal, not theatrical. BobWork spreads sends across 09:00–18:00 in each mailbox’s own time zone, checks every 15 minutes with randomness, and prevents a pair from writing to each other twice within 3 hours. Peers on a different domain or provider are picked twice as often.

Do not add sales links to warm-up mail. Warm-up messages should not promote your product, use campaign copy or include tracking pixels. They exist to create normal mailbox behaviour and measure placement.

If you are warming manually, follow the same idea. Send short plain text notes. Reply to some. Archive some. Move any false spam placements back to the inbox. Do not send the same sentence between every mailbox.

A warm-up tool can do this more consistently than a person. It also avoids the usual manual mistake: sending ten test messages in five minutes, then doing nothing for two days.

For a day-by-day view, use the email warm-up schedule. If this is your first mailbox, read what to expect during first-time warm-up before judging the first few spam landings.

What should you monitor?

Do not rely on “sent” status. A message can be accepted by the receiving server and still land in spam.

Check both authentication and placement:

CheckGood stateWarning stateWhat to do
SPFOne valid SPF record authorising LarkMultiple SPF records, missing includeMerge into one SPF record
DKIMLark or Feishu selector resolves and signs mailSelector missing or not propagatedRe-copy the record from admin
DMARCValid _dmarc record existsNo record or syntax errorPublish a simple valid policy
Spam landings7-day warm-up spam rate stays lowAbove 5% for a mailboxPause that mailbox for a few days
Readiness14+ days, spam rate ≤3%, 30+ warm-up emails receivedNot enough historyKeep warming before outbound

BobWork’s spam rate is the share of a sender’s warm-up mail that receiving mailboxes found in Spam over 7 days. That is different from a seed-list estimate. It is measured directly inside receiving inboxes.

The health score is 0–100. Healthy is 85 or above. Watch is 60–84. At risk is below 60. Blocked means the login or permission failed.

The “ready for outbound” state requires three things: 14 or more days warming, a 7-day spam rate of 3% or lower, and at least 30 warm-up emails received.

For major consumer inboxes, sender reputation also depends on complaints and authentication. Google’s sender guidance says to keep spam complaint rates below 0.1% and avoid ever reaching 0.3%. Read Google’s current rules in the Email sender guidelines. Yahoo publishes similar guidance in its sender best practices.

Those rules apply even when your mailbox is hosted on Lark. The receiving provider judges the sender domain, mailbox behaviour, content and recipient reaction.

If your domain is new, be patient. A new domain with perfect DNS can still lack history. Use 3–4 weeks, keep real outreach small, and avoid sudden list uploads.

If you need the wider diagnosis, use why emails go to spam and the new-domain spam guide.

How do you fix failures?

Most Lark warm-up issues are setup issues, not reputation issues. Fix the connection before you interpret placement data.

Use this checklist when a mailbox fails, sends slowly or lands in spam early.

StepActionHow to verify
1Confirm the admin enabled IMAP/SMTP for the user or groupThe mailbox can be added to a normal IMAP mail client
2Generate a fresh mail-client passwordLogin succeeds with the new password, not the normal login password
3Use the correct regional hostsLark global uses Larksuite hosts; Feishu tenants use Feishu hosts shown in settings
4Match ports and encryptionIMAP connects on 993 with SSL/TLS; SMTP uses the secure port shown by Lark
5Use the full email address as usernameAuthentication no longer fails with “user not found” or generic login errors
6Publish SPF, DKIM and DMARCDNS checkers return valid records for the sending domain
7Send one manual test each wayA non-Lark mailbox receives and replies without spam placement
8Start at low volumeFirst three days stay at single-digit warm-up volume
9Watch the 7-day spam ratePause a mailbox for a few days if it rises above 5%
10Keep campaign volume modestReal outreach stays around 30–50 per mailbox per day after warm-up

If the mailbox connects but does not send, check SMTP separately. Some admins allow IMAP read access but restrict SMTP submission.

If receiving works but spam rescue does not, check IMAP folder names and permissions. Warm-up tools need to see the spam folder to move their own warm-up mail back to the inbox.

BobWork only touches mail carrying its own hidden header. For Zoho API senders it can also use a known subject, but Lark uses the IMAP route. Real mail is never read, moved or answered.

If authentication passes but DKIM fails at receivers, the DNS record may not have propagated. Wait, then query the selector again. Also check that you did not publish the DKIM record under the wrong domain, such as the root when Lark asked for a selector host.

If everything is technically correct and spam remains high, stop adding volume. Review your sending list, copy, links and domain age. Warm-up cannot compensate for poor targeting or complaint-heavy campaigns.

When should outreach start?

Begin outbound only after the mailbox has stable history. For BobWork, that means 14 or more days warming, a 7-day spam rate at or below 3%, and at least 30 warm-up emails received.

Start with your safest prospects. Send plain text. Avoid heavy HTML, link-heavy templates and attachments in the first campaign. Keep the first replies human and quick.

Continue warming during campaigns at 10–15 per day. Do not stop warm-up the day outreach begins. You want ongoing positive interactions, especially if real recipients reply slowly.

If you need more capacity, add another Lark mailbox. Do not push one mailbox from 40 real emails to 150 because the first week looked fine. Reputation damage often appears after the first batch of negative signals, not immediately.

BobWork Email Warm-up is free, needs no credit card, and supports up to 20 mailboxes per account. For Lark Mail, connect with IMAP and a mail-client password. By default the mailbox warms in the shared network; switch the account to Private pool and only your own mailboxes write to each other. If you also use Gmail, Zoho, Yahoo, iCloud, Amazon SES, SendGrid, Mailgun or other IMAP/SMTP mailboxes, they can join the same account. Outlook and Microsoft 365 are not supported yet.

Frequently asked questions

How long should I warm up Lark Mail?

Use at least 14 days for an existing domain. Use 3–4 weeks for a new domain. Keep volume low during the first week, then add real outreach slowly. A mailbox is safer when it has received enough warm-up mail and spam landings stay low.

Does Lark Mail need a mail-client password?

Yes, for IMAP and SMTP access you should use the mail-client password generated inside Lark or Feishu settings. Do not use your normal login password unless Lark’s current documentation says your tenant allows it.

What are the Lark IMAP and SMTP hosts?

For global Lark tenants, the usual hosts are imap.larksuite.com and smtp.larksuite.com. For Feishu tenants, use the Feishu hosts shown in the admin or mail-client settings, commonly imap.feishu.cn and smtp.feishu.cn. Always check the current value in your tenant.

Can I warm up Lark Mail without DKIM?

You can send without DKIM, but you should not start outreach without it. DKIM helps receiving providers verify that Lark is allowed to sign your mail. Add the record shown in Lark Admin, then verify it in DNS before raising volume.

What daily volume is safe for Lark outreach?

For cold outreach, keep real sends modest. A typical safe range is 30–50 real outbound emails per mailbox per day after warm-up. During active campaigns, keep warm-up running at about 10–15 per day rather than stopping it.

Why does Lark warm-up fail to connect?

The usual causes are IMAP/SMTP being disabled by the admin, using the login password instead of the mail-client password, using Lark hosts on a Feishu tenant, or using the wrong port and encryption setting.

Does BobWork support Lark Mail?

Yes. BobWork Email Warm-up supports Lark Mail through IMAP plus a mail-client password. It is free, offers a shared network or a private pool per account, and supports up to 20 mailboxes per account. Outlook and Microsoft 365 are not supported yet.

Warm up your mailboxes free

Connect Gmail, Google Workspace, Zoho or Lark. Your mailboxes warm on a shared network, or in a private pool of your own, starting today.

Start free