Whitelist Phish Link Domains in Microsoft Defender SmartScreen
Microsoft Defender SmartScreen scans for malicious sites and may block landing pages in your Phishing Security Tests (PSTs). To prevent this, whitelist your phish link domains in SmartScreen and configure group policy settings.
-
Open Group Policy Editor
-
Navigate to: User Configuration → Administrative Templates → Microsoft Edge → SmartScreen settings
-
-
Edit the SmartScreen Allow List Policy
-
Find “Configure the list of domains for which Microsoft Defender SmartScreen won’t trigger warnings” (policy name: SmartScreenAllowListDomains).
-
-
Enable the Policy and add your simulation landing domains:
-
Choose Enabled.
-
Click Show… and list each domain (e.g., simulation.company.com).
-
Hit OK to save.
-
-
Force-apply the policy (for immediate effect):
- gpupdate /force
-
Verify the policy in Edge
- Go to edge://policy/ in the browser and confirm your domains are listed under SmartScreenAllowListDomains.
-
Test the user experience
-
User clicks a simulation link. No warning should appear if the domain matches your allow list.
-