To customize the phishing email and include personalized elements, click Duplicate on any scenario card in the scenario library.
After completing the scenario details step, click Continue.
1 – Objectives
Adapt a phishing email to your organization
Insert dynamic elements using tokens
Identify and highlight Red Flags in the training page
Edit the HTML code for advanced customization
2 – Prerequisites
Admin permissions to edit scenarios
A duplicated scenario with details already completed
3 – Edit the email’s general settings
3.1 – Open the HTML Builder
Click the HTML Builder section to open the editor
3.2 – Edit the main fields
Customize the following:
Sender’s name
Sender’s email
Email subject
3.3 – Configure the sender domain
Select a sending domain from the dropdown
To add a custom sending domain:
Go to
SettingsOpen
Phishing DomainsClick
+ Add New Phishing Domain
4 – Use Red Flags
4.1 – Enable or disable a Red Flag
Check a Red Flag box to mark the field as suspicious
Uncheck it if no warning is needed
4.2 – Display Red Flags in the training page
Checked fields will appear highlighted in red in the Just-in-Time Training page
To customize the explanatory message, go to Settings →
Just-in-Time Training Page
⚠️ Warning
Red Flags appear only in training campaigns.
For details on the difference between training and assessment campaigns, click here.
5 – Edit the email body
5.1 – Use the visual editor
In the editor, you can:
Modify or add text
Adjust typography and formatting
5.2 – Insert dynamic tokens
Click the { } dropdown to insert dynamic merge fields.
Available tokens
Token | Example | Description |
| John | Recipient’s first name |
| Doe | Recipient’s last name |
| Recipient’s email | |
| Arsen | Organization name |
| arsen.co | Organization domain |
|
| Organization logo |
|
| Resized logo |
| URL | Logo URL |
| https://… | Phishing link |
| QR image | Phishing QR code |
| +336… | Recipient's phone |
| 04/10/2022 | Short date |
| 04 Oct. 2022 | Medium date |
| Friday, 14 October 2022 | Long date |
| 14:56 | Current time |
Attack-vector tokens
Phishing link:
{{ campaign.phishingUrl }}Phishing QR code:
{{ toImage(phishing.qrCode.url) }}
5.3 – Edit the HTML code
Click
< > Sourceto edit the HTML directlyUseful for layout, custom styles, and advanced components
5.4 – Add images
Upload an image from your computer









