UK-Regulated Infrastructure

Secure Communication
Infrastructure Built for
Enterprise

Oakridge Systems provides compliant transactional email infrastructure, SMTP relay, and communication API services for UK and European businesses. GDPR-ready, PECR-compliant, and built around responsible sending from the ground up.

UK GDPR Compliant
PECR Adherent
KYC Verified Onboarding
99.2% Uptime SLA
Platform Overview — Live ● Operational
99.0%
Delivery Rate
↑ +0.2% 30d
0.4%
Bounce Rate
↓ –0.1% 30d
0.01%
Complaint Rate
↓ –0.005% 30d
🔒
TLS Encryption
Active — v1.3
🛡️
Compliance
All Systems Clear
📊
Messages Processed Today
Loading...
Trusted by organisations across the UK & Europe
FinTech Platforms E-Commerce Operators SaaS Providers Legal Services Healthcare Technology Financial Services Enterprise Software

Infrastructure you can depend on

Every component of the Oakridge platform is designed with compliance, reliability, and transparency at its core.

📧

Transactional Email Infrastructure

High-performance SMTP routing engineered for transactional and operational communications. Consistent throughput with full delivery visibility.

🔐

Secure SMTP Relay

Dedicated relay endpoints with mandatory TLS 1.2/1.3 enforcement. All connections are authenticated and logged for audit purposes.

Communication API

RESTful API with comprehensive SDKs enabling rapid integration. Webhook-based event delivery for real-time processing pipelines.

🌐

Domain Authentication

Guided SPF, DKIM, and DMARC configuration with ongoing monitoring. Our authentication compliance score is continuously assessed.

📈

Delivery Analytics

Real-time dashboards with granular delivery reporting. Segment by domain, IP, campaign type, and sender with full event-level data export.

🛡️

Compliance Monitoring

Automated bounce and complaint handling, suppression list management, and real-time abuse detection protect your sender reputation.

Compliance is not optional.

Oakridge Systems operates under a strict compliance framework. All clients undergo identity verification before activation.

🇬🇧

UK GDPR Compliant

Full compliance with the UK General Data Protection Regulation. Data processing agreements available for all enterprise clients. ICO-aligned practices throughout.

📜

PECR Adherence

The Privacy and Electronic Communications Regulations govern our services. We enforce opt-in only communication. Unsolicited bulk messaging is strictly prohibited and will result in immediate account suspension.

🌍

CAN-SPAM & International

International clients are subject to both UK and applicable territorial regulations. Our compliance team reviews all use cases during onboarding. No exceptions are made for high-volume or promotional senders.

Ready to discuss your infrastructure requirements?

Our technical team is available to review your use case and determine whether Oakridge Systems is the right fit for your organisation.

Infrastructure with integrity

Oakridge Systems was established in Manchester in 2021 by a team of infrastructure engineers and compliance specialists who identified a gap in the UK market: the absence of a communication infrastructure provider that placed regulatory compliance and responsible sending at the absolute centre of its offering.

The proliferation of low-cost, permissive sending platforms had created systemic deliverability problems for legitimate businesses. Our founders set out to build the alternative: a platform where every account is reviewed, every use case is validated, and every connection is authenticated.

Today, Oakridge Systems serves a growing roster of UK and European clients across financial services, SaaS, healthcare technology, legal services, and enterprise software—all of whom require the highest standards of infrastructure reliability and compliance documentation.

2021
Year Founded, Manchester
99.2%
Uptime SLA
100%
KYC-Verified Clients
0
Bulk/Unsolicited Senders

Compliance First

Regulatory compliance is the foundation of our platform design. We do not pursue growth at the expense of legal adherence. Every new client undergoes a formal compliance review prior to account activation.

Transparency in Operation

Our clients receive complete visibility into infrastructure performance, authentication status, and compliance health. We do not obscure failures or delivery issues.

No Unsolicited Messaging

Oakridge Systems infrastructure is exclusively available for opt-in, consent-based communication. There are no exceptions. Violations result in immediate and permanent suspension of services.

The people behind the platform

JH
James Hartley
Chief Executive Officer

15 years in enterprise infrastructure. Previously Director of Platform Engineering at a leading UK payments processor. Oversees strategic direction and regulatory partnerships.

SR
Sarah Reeves
Chief Technology Officer

Distributed systems engineer with prior experience at Tier 1 cloud infrastructure providers. Responsible for platform architecture, resilience, and API design.

MD
Marcus Dolan
Head of Compliance

Qualified solicitor specialising in data protection law. Former ICO advisory panel contributor. Leads the client compliance review process and Acceptable Use Policy enforcement.

PC
Priya Chandran
Head of Deliverability

Dedicated IP warming, reputation management, and ISP relationship specialist. 10+ years managing enterprise sending infrastructure for UK financial clients.

TE
Thomas Elliott
VP of Engineering

Backend systems lead overseeing SMTP relay architecture, API gateway, and real-time event processing. Focused on sub-second delivery performance at scale.

LM
Laura McAllister
Head of Client Success

Enterprise onboarding and technical integration specialist. Works directly with clients to ensure authentication is correctly configured and deliverability targets are met.

Registered Office

Oakridge Systems Ltd
Suite 4, Northern Quarter House
78–82 High Street
Manchester
M4 1HQ
United Kingdom

Company Registration

Company No. 12457863
VAT No. GB 342 8917 05
Incorporated: England & Wales
Registered: 14 March 2021

📧
SMTP Relay
Secure message routing
Communication API
Programmatic integration
🔑
Domain Authentication
SPF, DKIM, DMARC
📊
Analytics & Reporting
Delivery intelligence
🌐
Dedicated IP
Reputation isolation
🛡️
Compliance Tools
Bounce, suppression, monitoring

Secure SMTP Relay Services

Our SMTP relay infrastructure is designed for enterprise transactional email. All connections are authenticated via SASL, encrypted in transit with TLS 1.2 or 1.3, and routed through monitored delivery pools with full logging. All accounts are subject to identity verification prior to activation.

Mandatory TLS Encryption
All SMTP connections require TLS 1.2 minimum. Unencrypted connections are rejected at the gateway.
SASL Authentication
Per-account credentials with IP allowlisting available for enterprise deployments.
Monitored Delivery Pools
All outbound traffic passes through ISP-monitored pools with abuse detection active.
Full Delivery Logging
Per-message event logging retained for 90 days. Available via dashboard and API export.
Bounce Processing
Automatic hard and soft bounce handling with suppression list population.
Rate Control
Configurable sending rate limits by account and domain to protect reputation.

Communication API Integration

The Oakridge API provides a RESTful interface for message dispatch, template management, and event retrieval. Available in JSON format with HTTPS-only endpoints. Webhook support enables real-time processing of delivery events within your own systems.

RESTful JSON API
Documented endpoints for message send, status retrieval, suppression management, and analytics.
Webhook Events
Real-time delivery, bounce, and complaint events delivered to your endpoint via HTTPS POST.
SDK Libraries
Official client libraries for Node.js, Python, PHP, and Ruby. Community-maintained for Go and Java.
API Key Management
Scoped API keys with IP restriction, rate limiting, and permission levels per environment.
Idempotency Support
Idempotency key support prevents duplicate message dispatch during retry logic.
OpenAPI Specification
Full OpenAPI 3.0 schema available for automated client generation and integration testing.

Domain Authentication Support

Proper domain authentication is a prerequisite for account activation on the Oakridge platform. We provide guided setup and ongoing monitoring for SPF, DKIM, and DMARC to ensure your sending domains maintain the highest reputation standards.

SPF Record Configuration
Guided DNS configuration with automated validation. SPF is mandatory before any messages are sent.
DKIM Signing
2048-bit DKIM key generation and rotation with automatic selector management.
DMARC Policy Guidance
Step-by-step DMARC implementation from monitoring policy to full enforcement.
Alignment Monitoring
Continuous monitoring of authentication pass rates with alerts on degradation.
BIMI Readiness
Guidance on achieving DMARC enforcement required for Brand Indicator for Message Identification.
Compliance Reporting
Aggregated DMARC reports parsed and presented in human-readable format within the dashboard.

Delivery Analytics & Reporting

The Oakridge analytics platform provides comprehensive visibility into every aspect of your sending performance. From high-level delivery rates to per-message event traces, data is available in real time through the dashboard or programmatically via the reporting API.

Real-Time Dashboard
Live delivery, bounce, and complaint metrics updated continuously throughout the sending day.
Per-Message Event Log
Full event trace per message including queued, attempted, delivered, bounced, and opened states.
Domain Segmentation
Delivery analytics segmented by sending domain, recipient domain, and IP address.
Scheduled Reports
Automated daily, weekly, and monthly PDF and CSV delivery reports to designated recipients.
Alerting
Configurable thresholds for bounce rate, complaint rate, and delivery failures with email and webhook alerts.
Data Retention
Event-level data retained for 90 days. Aggregated statistics available for 24 months.

Dedicated IP Allocation

Dedicated IP addresses are available to qualifying enterprise clients with demonstrated sending volume and compliance history. Reputation isolation protects your organisation from infrastructure-level issues affecting other senders.

Dedicated IP Assignment
IPv4 addresses assigned exclusively to your account. Available on Professional and Enterprise plans.
Managed IP Warming
Structured warm-up schedule managed by our deliverability team to establish positive IP reputation.
Reputation Monitoring
Continuous monitoring of IP reputation scores across major blocklists and ISP feedback loops.
Blocklist Remediation
Active monitoring with assisted delisting procedures in the event of erroneous blocklisting.
Reverse DNS Configuration
Custom PTR records configured for your dedicated IPs to maximise ISP acceptance rates.
IP Usage Reporting
Per-IP delivery statistics with historical performance data for capacity planning.

Compliance & Abuse Prevention Tools

The compliance layer of the Oakridge platform is not optional. Every account is automatically monitored for abuse patterns. Our human compliance team conducts regular audits of high-volume accounts. Violations of the Acceptable Use Policy result in immediate suspension.

Automated Bounce Handling
Hard bounces automatically suppressed after first occurrence. Soft bounce thresholds configurable.
Complaint Loop Processing
FBL integration with major mailbox providers. Complaints auto-suppress the recipient address.
Suppression List Management
Centralised unsubscribe and suppression list API. GDPR-compliant erasure request processing.
Abuse Detection Engine
Real-time pattern analysis identifies spam-like behaviour and triggers immediate account review.
KYC Verification
All new accounts undergo identity verification before any sending capability is activated.
Manual Account Review
Human compliance review of use cases for all new accounts, regardless of plan type.
🏦

Financial Services

Banks, payment processors, insurance providers, and FCA-regulated firms require communication infrastructure with full audit trails, data residency controls, and compliance documentation suitable for regulatory submission. We support the production of data processing records and encryption attestations.

FCA RegulatedAudit TrailData ResidencyUK GDPR
💻

SaaS Platforms

Software-as-a-Service providers need reliable transactional infrastructure for user notifications, account verification, password resets, and system alerts. Our API-first approach integrates with any technology stack, and our deliverability expertise ensures critical messages reach user inboxes.

API IntegrationWebhooksTransactionalHigh Availability
🛒

E-Commerce

Online retailers depend on transactional email for order confirmations, dispatch notifications, and return authorisations. Our infrastructure is designed to handle volume spikes during peak trading periods whilst maintaining authentication and compliance standards throughout.

Order NotificationsVolume ScalingPECR CompliantPeak Traffic
⚖️

Legal Services

Law firms and legal technology providers handle sensitive communications requiring confidentiality, integrity, and complete audit trails. We provide the infrastructure documentation required to demonstrate due diligence in client data handling to the SRA and ICO.

ConfidentialitySRA ComplianceAudit LogsEncrypted Transit
🏥

Healthcare Technology

Digital health platforms and NHS-adjacent technology providers require communication infrastructure that meets stringent data handling requirements. We support pseudonymisation practices and can provide the technical documentation required for NHS DSPT assessments.

DSPT ReadyData MinimisationUK GDPR Article 9Audit Ready
🏢

Enterprise Software

Enterprise software vendors serving large organisations need communication infrastructure with enterprise SLAs, dedicated account management, and the ability to provide supply chain security documentation to their own clients and procurement teams.

99.2% SLADedicated SupportSupply Chain DocsISO Ready
Starter
£149/month

For growing organisations with straightforward transactional requirements. Shared IP infrastructure with authentication support.

Up to 50,000 messages/month
Shared IP infrastructure
SPF/DKIM/DMARC setup support
SMTP relay access
REST API access
30-day event log retention
Bounce & complaint handling
KYC onboarding & compliance review
Email support (2 business day SLA)
Enterprise
Custom

Bespoke arrangements for large organisations with high volume requirements, custom SLAs, and complex compliance obligations.

Unlimited volume (agreed)
Multiple dedicated IPs
Custom sending domains
99.5% uptime SLA
Custom data retention
Data Processing Agreement (DPA)
Compliance documentation pack
Technical onboarding sessions
24/7 emergency support
Quarterly business reviews

All prices exclusive of VAT. Additional message volume available at published overage rates. Contact us to discuss your requirements. Activation subject to successful identity verification and compliance review.

⚠️

Acceptable Use Policy — Mandatory Reading

Oakridge Systems infrastructure is available exclusively for opt-in, consent-based transactional communication. Unsolicited bulk email, purchased list marketing, affiliate mailing, and any other form of spam are strictly and absolutely prohibited. All new accounts undergo manual compliance review and identity verification (KYC process) before activation. Accounts found to be in violation of the Acceptable Use Policy will be suspended immediately and permanently without refund. Read the full Acceptable Use Policy →

Quick Start Guide

Welcome to the Oakridge Systems documentation. Before you can send any messages through our infrastructure, your account must be activated by our compliance team. This requires completion of our identity verification (KYC) process and a review of your intended use case.

Account Activation Required

API keys are not issued until account activation is complete. If you have not yet applied for access, please contact our sales team to begin the onboarding process.

Prerequisites

Before integrating with the Oakridge Systems API or SMTP relay, ensure the following are in place:

  • A verified account with active API credentials
  • At least one authenticated sending domain (SPF and DKIM mandatory)
  • A confirmed use case reviewed and approved by our compliance team
  • TLS 1.2+ support in your sending application or library

Your First API Call

Once your account is active, you can send a transactional message using a standard HTTP POST request to our messages endpoint:

# Send a transactional message via the Oakridge API
curl -X POST https://api.oakridgesystems.co.uk/v1/messages \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "from": "noreply@yourdomain.co.uk",
    "to": "recipient@example.com",
    "subject": "Order Confirmation #OC-48291",
    "text": "Thank you for your order...",
    "html": "<p>Thank you for your order...</p>",
    "idempotency_key": "order-48291-confirm-v1"
  }'

Response Format

A successful request returns a 202 Accepted response with the assigned message identifier:

{
  "status": "accepted",
  "message_id": "msg_01J8HX2NR4QKPB6TYVWE3CFZD",
  "queued_at": "2025-11-12T14:32:07Z"
}

Rate Limits

Rate limits are applied per API key and per sending domain. Default limits vary by plan tier. Headers indicating current usage are included in every API response:

X-RateLimit-Limit: 1000
X-RateLimit-Remaining: 847
X-RateLimit-Reset: 1699797120

Error Handling

The API uses standard HTTP response codes. All errors include a machine-readable error code and human-readable message:

{
  "error": {
    "code": "domain_not_authenticated",
    "message": "The sending domain has not passed SPF/DKIM verification.",
    "docs": "https://docs.oakridgesystems.co.uk/authentication"
  }
}

Encryption, monitoring,
and access control

  • 🔒
    TLS Encryption in Transit
    All connections to Oakridge infrastructure — whether via SMTP relay or API — require TLS 1.2 as a minimum. TLS 1.3 is recommended and enforced by default on new integrations. Plaintext connections are rejected at the gateway without exception.
  • 🗄️
    Secure Data Handling & Storage
    Message content is not retained beyond the delivery window. Event metadata is stored encrypted at rest using AES-256. Data centre locations are within the United Kingdom. No data is transferred to jurisdictions outside of the UK or EEA without explicit client agreement.
  • 🌐
    Mandatory Domain Authentication
    No messages may be sent from an unauthenticated domain. SPF and DKIM records must be verified before account activation. DMARC monitoring is enabled by default and clients are guided to enforcement-level policies.
  • 🖥️
    Dedicated IP Reputation Protection
    Dedicated IP clients benefit from reputation isolation. Our deliverability team monitors all IP addresses against major blocklists and ISP feedback loops continuously. Anomalous sending patterns trigger automated review and potential account hold.
  • 🔍
    Real-Time Abuse Monitoring
    Automated systems monitor all sending traffic for patterns consistent with abuse, including volume anomalies, complaint rate spikes, content pattern analysis, and recipient distribution irregularities. Our human abuse response team is available to act on detected violations immediately.
  • 🧑‍⚖️
    Compliance-First Onboarding
    Every new account undergoes a structured onboarding process including use case review, identity verification, and terms acceptance. Accounts are not activated until this process is complete and the compliance review is satisfactory.
security-status.json
TLS Enforcement v1.3 Active
DKIM Signing RSA-2048
SPF Validation Enforced
DMARC Policy p=reject
Data Encryption at Rest AES-256
Blocklist Monitoring Real-Time
Abuse Detection Active
Data Residency UK Only
KYC Process All Accounts
Compliance Review Manual, Per-Account

Regulatory Frameworks

UK General Data Protection Regulation (UK GDPR)
Privacy and Electronic Communications Regulations (PECR)
Data Protection Act 2018
CAN-SPAM Act (for international senders)
Computer Misuse Act 1990

Internal risk controls

Our internal risk and fraud prevention procedures are designed to protect the integrity of our infrastructure and the reputation of our legitimate clients.

🔬

Use Case Verification

All account applications are reviewed by a qualified compliance team member. Applications that cannot demonstrate a legitimate, opt-in use case are declined. This is a manual process — not automated.

🪪

Identity Verification (KYC)

All account holders must complete identity verification before activation. For business accounts, company registration verification is required. We do not activate anonymous or pseudonymous accounts under any circumstances.

Immediate Suspension Policy

Accounts found to be in violation of the Acceptable Use Policy are suspended immediately upon detection. There is no warning-first policy for spam or unsolicited bulk email. Suspended accounts are not reinstated.

How can we help?

Whether you're evaluating communication infrastructure options, need documentation for a compliance review, or have a technical query about our API, our team is here to assist. Please note that all access requests require completion of our standard onboarding process.

📍
Registered Office
Suite 4, Northern Quarter House, 78–82 High Street, Manchester, M4 1HQ
📞
Telephone
+44 (0)161 478 0360
💼
Sales Enquiries
sales@oakridgesystems.co.uk
🛠️
Technical Support
support@oakridgesystems.co.uk
🏢
Company Details
Oakridge Systems Ltd · Company No. 12457863 · VAT No. GB 342 8917 05

Send us a message

By submitting this form you agree to our Privacy Policy. We will use your information to respond to your enquiry only. We do not share your data with third parties for marketing purposes.

Overview Dashboard
● All Systems Operational
Delivery Rate
99.0%
↑ +0.2% vs last 30d
Bounce Rate
0.4%
↓ –0.1% vs last 30d
Complaint Rate
0.01%
↓ –0.005% vs last 30d
Messages Processed
Last 30 days
API Message Volume — Last 14 Days
Transactional
Compliance Health
Real-Time
91%
Health Score
AuthenticationPassing
Complaint Rate0.01%
Bounce Rate0.4%
Suppression SyncCurrent
Authenticated Domains
3 domains
acmecorp.co.uk
SPF DKIM DMARC
mail.acmecorp.co.uk
SPF DKIM DMARC
notify.acmecorp.io
SPF DKIM DMARC

⚠ mail.acmecorp.co.uk DMARC policy is in monitoring mode. Upgrade to p=quarantine recommended.

IP Reputation Score
94
Dedicated IP: 185.210.144.38
0PoorFairGood100
Blocklist Status Clean — 0 listings
Reverse DNS mail.acmecorp.co.uk
ISP Postmaster Good Standing
System Activity
Live
12,840 messages delivered successfully via API batch
09:14
DKIM key rotation completed for notify.acmecorp.io
08:52
Suppression list updated — 3 new hard bounces added
08:30
DMARC advisory: mail.acmecorp.co.uk monitoring mode
Yesterday
Monthly compliance report generated and emailed
01 Feb
API key rotated by account administrator
28 Jan