Report Add-ons
The report add-ons put a Report Phishing button directly in your users’ inboxes. When clicked, the email is sent to Helios, immediately quarantined, and run through auto-triage.
Deploy privately to your organization via the Google Admin console — no Marketplace verification required for internal use.
-
Sign in to the Google Admin console at admin.google.com as a super admin.
-
Go to Apps → Google Workspace Marketplace apps → Apps list → Add app → Add private app (or install the Himaya app if listed).
-
Select the organizational units / groups that should receive the add-on, and grant the requested Gmail scopes.
-
Click Finish. The Report Phishing button appears in Gmail for those users within a few minutes.
Deploy centrally from the Microsoft 365 admin center. Helios serves a per-organization manifest.xml.
-
Sign in to the Microsoft 365 admin center at admin.microsoft.com as a Global Administrator.
-
Go to Settings → Integrated apps → Upload custom apps.
-
Choose Provide link to manifest file and paste your org’s manifest URL (from Settings → Integrations → Outlook Add-in in Helios).
-
Assign the add-in to the users or groups that should receive it, and accept the permissions.
-
Click Finish deployment. The Report Phishing button appears on the Outlook ribbon (desktop, web, and mobile) after propagation.
After deployment
Section titled “After deployment”- Report a test phishing email to confirm the button works end-to-end.
- Reported emails appear in the Threats dashboard with the reporter’s name and the triage verdict.