Short answer: keep password reset logic in the Node.js backend, put suppression and email submission behind one small adapter, and record provider acceptance separately from later delivery evidence. For a solo edtech SaaS, choose the contract that can ship this week and still be replaced without rewriting account recovery.
Option
Integration work
Best fit
The catch






