Cursor email

SMTP Connection Refused in Production for Cursor-Generated Email Code

Your Cursor-generated application sends emails perfectly during local development but fails with SMTP connection errors in production. Users aren't receiving signup confirmations, password resets, or notification emails. The server logs show connection refused, timeout, or authentication errors when attempting to connect to the mail server.

Email delivery is critical infrastructure — when it breaks, users can't sign up, can't reset passwords, and lose trust in your application. Cursor often generates SMTP code configured for a local mail server or development service like Mailtrap/Mailhog, which doesn't translate to production.

The issue might also manifest as emails being sent successfully according to your application logs, but never arriving in users' inboxes due to DNS, SPF, or deliverability configuration problems that only affect production domains.

Error Messages You Might See

Error: connect ECONNREFUSED 127.0.0.1:25 Error: connect ETIMEDOUT smtp.gmail.com:587 Error: Invalid login: 535 5.7.8 Authentication failed Error: self signed certificate in certificate chain getaddrinfo ENOTFOUND smtp.mailtrap.io
Error: connect ECONNREFUSED 127.0.0.1:25Error: connect ETIMEDOUT smtp.gmail.com:587Error: Invalid login: 535 5.7.8 Authentication failedError: self signed certificate in certificate chaingetaddrinfo ENOTFOUND smtp.mailtrap.io

Common Causes

  • Port 25 blocked by cloud provider — AWS, GCP, Azure, and most cloud providers block outbound SMTP port 25 by default to prevent spam. You need to use port 587 (STARTTLS) or 465 (SSL/TLS)
  • Development SMTP credentials in production — Cursor configured Mailtrap, Mailhog, or localhost:1025 credentials that only work in development
  • Missing or wrong TLS/SSL configuration — Production SMTP servers require TLS encryption but the code uses plain text connections, or uses SSL when STARTTLS is expected
  • Firewall or security group blocking outbound — The production server's security group or network ACL doesn't allow outbound connections on port 587 or 465
  • SMTP authentication method mismatch — The email provider requires OAuth2 authentication (like Gmail) but the code uses plain username/password
  • DNS resolution failing for SMTP host — The SMTP hostname can't be resolved from the production environment due to internal DNS or networking constraints

How to Fix It

  1. Use port 587 with STARTTLS — Configure your SMTP connection to use port 587 with STARTTLS encryption. This is the standard for authenticated email submission and is not blocked by cloud providers
  2. Switch to an email API service — Replace SMTP with an HTTP-based email API like SendGrid, Resend, Postmark, or AWS SES. These are more reliable than SMTP in serverless/cloud environments and include deliverability features
  3. Verify production environment variables — Check that SMTP_HOST, SMTP_PORT, SMTP_USER, and SMTP_PASS are set correctly in your production environment, not pointing to development values
  4. Check cloud provider email restrictions — If on AWS, you may need to request removal of the port 25 throttle. On most providers, using SES or a third-party email API is the recommended approach
  5. Test SMTP connectivity from production — SSH into your production server and run openssl s_client -connect smtp.provider.com:587 -starttls smtp to verify the connection is possible
  6. Configure SPF, DKIM, and DMARC — Even if SMTP connects, emails may be rejected without proper DNS records for your sending domain

Real developers can help you.

Dor Yaloz Dor Yaloz SW engineer with 6+ years of experience, I worked with React/Node/Python did projects with React+Capacitor.js for ios Supabase expert Meïr Ankri Meïr Ankri Full-stack developer specializing in React / Next.js / Node.js with 6+ years of experience. I've worked across various sectors including automotive (Reezocar/Société Générale), healthcare (Medical Link SaaS), and e-commerce (Glasman). I build web apps end-to-end, from architecture to production, with a focus on scalability, performance, and code quality. I also mentor junior developers and contribute to technical decisions and code reviews. ISHANTDEEP SINGH ISHANTDEEP SINGH Senior Software Engineer with 7+ years of experience in React, JavaScript, TypeScript, Next.js, and Node.js. I’ve also worked as a tech lead for startups, owning end-to-end technical execution including architecture, development, scaling, and delivery. I bring a strong mix of hands-on coding, product thinking, and technical leadership, and I’m comfortable building products from scratch as well as improving and scaling existing systems. Sage Fulcher Sage Fulcher Hey I'm Sage! Im a Boston area software engineer who grew up in South Florida. Ive worked at a ton of cool places like a telehealth kidney care startup that took part in a billion dollar merger (Cricket health/Interwell health), a boutique design agency where I got to work on a ton of exciting startups including a photography education app, a collegiate Esports league and more (Philosophie), a data analytics as a service startup in Cambridge (MA) as well as at Phillips and MIT Lincoln Lab where I designed and developed novel network security visualizations and analytics. I've been writing code and furiously devoted to using computers to make people’s lives easier for about 17 years. My degree is in making computers make pretty lights and sounds. Outside of work I love hip hop, the Celtics, professional wrestling, magic the gathering, photography, drumming, and guitars (both making and playing them) Matthew Butler Matthew Butler Systems Development Engineer @ Amazon Web Services Luca Liberati Luca Liberati I work on monoliths and microservices, backends and frontends, manage K8s clusters and love to design apps architecture hanson1014 hanson1014 Full-stack developer experienced in fixing and deploying AI-generated apps from Lovable, Bolt.new, Cursor, and Replit. I specialize in debugging Supabase integration issues (auth flows, RLS policies, database connections), fixing broken deployments, resolving routing/blank screen problems, and cleaning up messy React/Vite codebases. I also build production apps with the Claude API and have shipped a Mac desktop dev tool (Nexterm from scratch. Based in Hong Kong, fast turnaround. Bastien Labelle Bastien Labelle Full stack dev w/ 20+ years of experience Jen Jacobsen Jen Jacobsen I’m a Full-Stack Developer with over 10 years of experience building modern web and mobile applications. I enjoy working across the full product lifecycle — turning ideas into real, well-built products that are intuitive for users and scalable for businesses. I particularly enjoy building mobile apps, modern web platforms, and solving complex technical problems in a way that keeps systems clean, reliable, and easy to maintain. Prakash Prajapati Prakash Prajapati I’m a Senior Python Developer specializing in building secure, scalable, and highly available systems. I work primarily with Python, Django, FastAPI, Docker, PostgreSQL, and modern AI tooling such as PydanticAI, focusing on clean architecture, strong design principles, and reliable DevOps practices. I enjoy solving complex engineering problems and designing systems that are maintainable, resilient, and built to scale.

You don't need to be technical. Just describe what's wrong and a verified developer will handle the rest.

Get Help

Frequently Asked Questions

Why does email work locally but not in production?

Local development often uses a local SMTP server (Mailhog, Mailtrap) or your machine has no firewall restrictions. Production environments block port 25, require TLS, and need real SMTP credentials. Switch to an email API service like SendGrid or Resend for reliable production email.

Should I use SMTP or an email API?

For production apps, use an HTTP-based email API (SendGrid, Resend, Postmark, AWS SES). They're more reliable than SMTP in cloud/serverless environments, handle retries automatically, and include deliverability monitoring and analytics.

Related Cursor Issues

Can't fix it yourself?
Real developers can help.

You don't need to be technical. Just describe what's wrong and a verified developer will handle the rest.

Get Help