File
SMF·HUNTER-IO
Received on
31.07.2026
Reviewed on
28.09.2026
Exhibits annexed
3
Questions
4

SMF·HUNTER-IO

Can a prompt replace Hunter?

CRM & sales outreach — email finding and verification

Not yet Verdict recorded on 28.09.2026 · Verified on 31.07.2026
Price
€49/moSource: hunter.io · Checked on July 31, 2026
Per year
€588
Build time
One sitting
Votes
0 votes
YesAlmostNot yet (checked)

Exhibit tracking slip

Exhibit A The prompt
Exhibit B What you lose
Exhibit C Why people still pay: crawled email index
Exhibit Q Questions

Verdict

Hunter does two things and only one of them is code. Verification — resolve the MX, open an SMTP conversation, ask whether the mailbox exists, detect a catch-all — is a sitting's work and genuinely useful. Finding is the other half, and it rests on a crawled index of addresses published across the web that took years to build and is continuously refreshed. Without the index you are left guessing patterns, and pattern guessing without evidence is wrong often enough to damage a sending domain.

Exhibit B — What you lose

Exhibit A — The prompt

Received on31.07.2026
Build an email verifier that is careful rather than fast, and a pattern guesser that is honest about being a guess.

Stack: your choice, Postgres, and a server with a real domain, correct reverse DNS and a valid HELO name. Say in the README that running this from a residential IP will get you throttled or blocked within an hour.

Verification pipeline, in order, short-circuiting as soon as an answer is certain:
1. Syntax check against the actual RFC-relevant rules, not a regex from a blog post.
2. Domain checks: does the domain resolve, does it have MX records, is it on a disposable-domain list you keep locally and can update.
3. Catch-all detection: probe a random address at that domain that certainly does not exist. If it is accepted, the domain accepts everything and no per-address answer is possible. Record the domain as catch-all and stop — do not report the real address as valid.
4. SMTP probe of the real address: connect, EHLO, MAIL FROM with a null sender, RCPT TO, read the code, QUIT. Never send DATA.

Rate limiting is the part that decides whether this works: no more than one connection at a time per destination domain, a configurable delay between probes to the same domain, exponential backoff on 4xx, and a per-domain circuit breaker that stops for an hour after repeated temporary failures. Cache every result with a timestamp and a configurable TTL so a re-check is free.

Results are a status from a fixed set — valid, invalid, catch-all, unknown, disposable, role-account — and never a percentage. "Unknown" must be a first-class outcome that the UI does not hide, because greylisting makes it common.

Pattern guessing, second and clearly separated: given a domain and known addresses at it, infer the pattern (first.last, flast, first) and generate a candidate for a new name. Label every generated address as a guess, show which pattern and how many known addresses support it, and refuse to emit a guess for a domain with fewer than three known addresses.

Bulk mode: CSV in, CSV out, resumable, with the per-address status and check date.

Write tests for catch-all detection, for the circuit breaker, and for the pattern inference including the refusal case.

Do not crawl the web for addresses, and do not send email.

Opening prefills the prompt — press enter to run it.

Exhibit B — What you lose

  • B.1 the crawled index of addresses, which is what makes finding work at all
  • B.2 the per-domain pattern confidence derived from thousands of observed addresses
  • B.3 the sources list showing where on the web an address was seen
  • B.4 reputation with mail servers, so your probes get throttled far sooner
  • B.5 the campaign sender and its warm-up

Exhibit C — Why people still pay: crawled email index

Because the index is a decade of crawling and cannot be recreated, and because Hunter's probes come from IP addresses mail providers already tolerate — yours do not.

Questions

Does SMTP verification still work in 2026?

Partly, and less than it used to. Large providers greylist or accept everything from unknown senders, so a well-built verifier returns "unknown" or "catch-all" for a large slice of addresses. Any tool that reports a clean valid/invalid split for Gmail and Outlook domains is telling you what you want to hear.

Will probing get my server blocklisted?

It can, which is why the per-domain concurrency limit and the circuit breaker are in the prompt rather than left as an exercise. Probe politely, cache aggressively, and never run this from an IP you also send real mail from.

Why refuse to guess a pattern from fewer than three addresses?

Because two observations support several patterns equally and the guess will be confidently wrong. Sending to a wrong-guess address produces a bounce, and bounces are what wreck a sending domain's reputation.

What is left of Hunter once you remove the index?

The verifier, which is real and worth having, and a set of workflows for organising domains you are researching. That is a fair description of what this build gives you — and it is why the verdict is no rather than kinda.

Receipt

Already built this yourself?