Skip to content

Report Add-ons

The report add-ons put a Report Phishing button directly in your users’ inboxes. When clicked, the email is sent to Helios, immediately quarantined, and run through auto-triage.

Deploy privately to your organization via the Google Admin console — no Marketplace verification required for internal use.

  1. Sign in to the Google Admin console at admin.google.com as a super admin.

  2. Go to Apps → Google Workspace Marketplace apps → Apps list → Add app → Add private app (or install the Himaya app if listed).

  3. Select the organizational units / groups that should receive the add-on, and grant the requested Gmail scopes.

  4. Click Finish. The Report Phishing button appears in Gmail for those users within a few minutes.

  • Report a test phishing email to confirm the button works end-to-end.
  • Reported emails appear in the Threats dashboard with the reporter’s name and the triage verdict.