Getting Started: Phishing Reporter Customization and Deployment
Phishing Reporter is an add-in that allows users to easily report a suspicious email to cyber security teams. This add-on is compatible with Outlook, Outlook Web Access, Outlook Desktop, Outlook Mobile, Office 365, and Google Workspace environments.
ℹ️ When the add-in is distributed over Office 365 or Google Workspace, it is automatically installed and active for all users. Add-in user information is only available for those using Outlook Desktop (with the MSI extension).
Configuring the Phishing Reporter
Go to the Phishing Reporter page from the left sidebar menu of the dashboard and select the Settings tab. Customization is available to four features:
Multilingual Support
Our phishing reporter button supports multiple languages, so you can tailor the add-in to various languages and deploy it to employees in their preferred language. To add a new language, simply click on the + Add New Language button in the Dialog Box Settings. For user experience, when the user interacts with the phishing reporter for the first time, they will be prompted to select a language before they can proceed with the reporting process. Once selected, the button will remember that language choice for that user and present dialogue in their chosen language.
Add-in Settings
Add-in Name | Name of the add-in |
Brand Name | Company name used for the add-in |
Add-in Logo |
For best results, the logo should be 60px (w) :60px (h).
The maximum disk image size is 2 MB; .png and .jpg formats are acceptable. |
Dialog Box Heading | Header information used in pop-up messages |
Confirm Button Label | Yes button text used in confirmation messages |
No Button Label | No button text used in confirmation messages |
Okay Button Label | Okay button text used in confirmation messages |
Instant Report Message | Text that will appear after a user reports a suspicious email |
Connection Error Message | Text that will appear if the server cannot be accessed when a report is attempted |
Sending Error Message | Text that will appear if the reported email is not delivered to the platform |
No Email Selected Message | Text that will appear if the user tries to report an email without selecting an email |
Bad Format Email Message | Text that will appear if the user tries to report an email that is not eligible for reporting |
Show Confirmation Message When Reporting Email | You must check this box if you wish to include a confirmation message window for a reported email. |
Show confirmation message when deleting email | This option opens a dialog box that allows you to remove the associated email after a report. If you select the "Automatically" option, the reported email will be deleted from the inbox. |
Turn off email forwarding for reported Phishing Simulation Emails |
This option has two features:
|
Warning Label | You have the option to add a message as a tag to the reported email to warn the reported user. |
Click the Next button to go to the next page and save your changes in the first time customization. When the first customization is done, you can use the Save Changes button to save your changes or use Save and Download button to save your settings and download the add-in immediately.
Recipient Email Address | Email address that will receive the reported e-mail |
CC | Optional additional recipient |
BCC | Optional additional blind copy recipient |
Email Subject | Subject line for the email used when reporting a suspicious email |
Email Message | Message template for the email used when reporting a suspicious email |
⚠️ To use this feature, please enable the "Send Information Email for Reported Incidents" option.
Click the Next button to go to the next page and save your changes in the first time customization. When the first customization is done, you can use the Save Changes button to save your changes or use Save and Download button to save your settings and download the add-in immediately. Note that you can use the {SUBJECT} merge tag to include the subject of the reported email.
Other Settings
You can also customize additional settings:
Proxy Settings | If users are accessing the internet through a proxy, you can enable the plugin to detect the proxy configuration of the computer where it will be installed. |
Site URL |
API address that will be used when reporting an email via the add-in.
Please contact the support team if a change is needed.
|
API Key |
The API key is to be used in the add-in to communicate with the platform.
Please contact the support team if a change is needed.
|
Company ID |
The Company ID is to be used in the add-in to communicate with the platform.
Please contact the support team if a change is needed.
|
Enterprise Vault | The suspicious email can be searched in the user's backup emails during the investigation. |
Click the Next button to go to the next page and save your changes in the first time customization. When the first customization is done, you can use the Save Changes button to save your changes or use Save and Download button to save your settings and download the add-in immediately.
ℹ️ The Diagnostic Tool is designed only for use on Outlook Desktop add-in with the MSI extension. When the add-in is distributed over Office 365 or Google Workspace, it is automatically installed and active for all users.
Check and Enable All Disabled Add-ins Automatically | The reporter add-in can be enabled automatically if it is not enabled for a reason. |
Proxy Settings | If users are accessing the internet through a proxy, you can enable the plugin to detect or use the defined proxy configuration of the computer where it will be installed. |
FAQ
A. The Diagnostic Tool is designed specifically for the Outlook Desktop version. There is no need for the Diagnostic Tool for O365 and Google Workspace add-ins.
A. No. The new version of the add-in will update the old version.
A. You need to redistribute the current version of the add-in in order for any changes to be activated.
A. Yes. please see more information on the ‘Email Settings’ page.
A. Yes, you can enable the ‘Show confirmation message when reporting email’ option under the Add-in Settings page.
A. Yes. You can export all information related to Phishing Reporter via REST API using the API document.
A. No, the add-in will first ask if you wish to report it and then will show a message that the admin is customized under the "Turn off email forwarding for reported Phishing Simulation emails" field. There won't be other prompts such as "Do you wish to delete the original email" after report emails sent by the platform.
A. Log in to your OWA email account and open an email. After that, on the right-hand side, click on the Apps button and click on the Phishing Reporter button to report the suspicious email.
Happy with your configuration? Let's deploy:
How to Deploy the Add-in in Microsoft 365
How to Deploy the Add-in in Exchange Admin Center
How to Deploy the Add-in in the Outlook Ribbon (alternate UI experience)
How to Deploy the Add-in in Google Workspace