This article describes how to install and configure the SMARTFENSE phishing report button for Google Workspace – Gmail, including installation from the Marketplace, notification and text configuration, and corporate domain validation.
Prerequisite: regardless of the email client used, you must validate your corporate domains in SMARTFENSE for the button to work correctly. This step is mandatory and must be completed alongside the installation.
See the guide: How to validate a domain in SMARTFENSE
To access the configuration, go to Settings > Simulations > Phishing report button. The section is organized into three tabs: Installation, Notifications, and Texts.
Installation tab
This tab allows you to access the Google Marketplace to install the button across your organization.
- Under Email client, select Gmail.
- Click Installation guide to view the detailed steps, or click Go to marketplace to access the installation page directly.
- Click Save.
Button Installation from Marketplace
Step 1: Access the Marketplace
Go to the following URL of the Google Workspace Marketplace:
https://workspace.google.com/marketplace/app/phishing_report_button/402430844920
Then, click Admin install to start centralized installation.
Step 2: Installation Confirmation
On the next screen, click Continue to proceed with the process.
Step 3: Consent
Review the consent screen with the permissions required by the extension and click Finish to confirm.
Step 4: Successful Installation
The system will display a message indicating that the installation was successful.
From this moment, the button will begin rolling out to users in the domain.
Notifications tab
This tab allows you to manage the email notifications generated after each report received by SMARTFENSE.
- New report alert: enable or disable notifications each time a user reports an email using the button.
- Recipients: enter the email addresses that will receive reports of external emails (not originating from simulations). Configured recipient accounts will receive reports from the user who submitted the report. If more than one address is entered, they must be comma-separated, with no spaces.
Click Save to apply changes.
Texts tab
This tab allows you to configure the messages shown to users when they use the report button in their email client.
- Use SMARTFENSE default texts: the button displays the standard messages defined by the platform.
- Use custom texts: allows you to edit the messages for each available language. Languages are selected using the flag icons in the Button texts section.
Click Save to apply changes.
💡 Best Practices
- Complete the Marketplace installation using a Google Workspace admin account.
- Validate all corporate domains before communicating the button's availability to users.
- In the Notifications tab, centralize reports to institutional email addresses belonging to the security team.
- If you want to customize the messages shown to users when reporting, use the Texts tab to tailor the language to your organization's needs.
- Run a test report to confirm the button is working before announcing it to users.