Phish Focus
Give Your Team a Phishing Email Reporting Tool That Actually Works

One-Click Phishing Reporting for Your Team
When a suspicious email lands in your team’s inbox, every minute matters. Without a clear reporting path, most employees do nothing. They delete it, ignore it, or send a screenshot to IT and wait. Phish Focus changes that. Phish Focus is Phriendly Phishing’s phishing email reporting tool. It gives employees a single-click way to flag suspicious messages directly from their inbox, so your security team gets real-time threat intelligence and your people stay actively engaged in protecting the business.
What Is Phish Focus?
Phish Focus is a lightweight email triage tool that integrates directly with Microsoft 365 and Google Workspace. Employees report suspicious emails with a single click. The report is logged, the email is removed from their inbox, and your security team is notified immediately. Unlike a generic helpdesk ticket, Phish Focus captures structured threat data. Every report feeds back into your phishing awareness training programme, so simulations stay relevant, and your team’s response improves over time.
Request a demo of Phish Focus email triage:
How Phish Focus Works
- An employee clicks the Phish Focus button in their email client. One click.
- The email is quarantined and automatically removed from their inbox.
- Your security team receives an instant alert with full email metadata.
- The report is categorised as a real threat or a simulation. Programme data updated.
- Employees who report a simulation receive immediate feedback, reinforcing the right behaviour.
- Full campaign scheduling with no ongoing IT overhead required.
A 2025 LearnX Diamond Award winner for Best EdTech Innovation, Phriendly Phishing brings that same recognised excellence to Phish Focus. Trusted by leading organisations including AFL, Gateway Bank, and Chorus.
Phish Clear: Remove a Threat From Every Mailbox in One Click
When a real phishing email is confirmed, the damage does not stop at the person who reported it. The same message may be sitting in hundreds of other inboxes across your organisation, waiting to be opened.
Phish Clear enables your security team to sweep a confirmed threat from every mailbox in your organisation with a single action. Once a threat is identified in Phish Focus, one click removes every instance across Microsoft 365 and Exchange before anyone else falls for it.
Phish Clear also allows your team to add confirmed malicious domains to a blocklist, preventing future attacks from those sources. It turns a reported email into a proactive security action, not just a logged event.
Reporting and Visibility
Every report submitted through Phish Focus generates structured threat data in your dashboard. Your security team can track report volumes, response times, and the ratio of real threats to simulation reports, giving you a clear picture of how your team is engaging with the programme.
The dashboard is designed to be readable at every level. IT leads get granular user data for targeted follow-up. Leadership gets a plain-language summary of threat activity and team response rates over time. Everything is exportable for compliance and insurance reporting.
Australian-based infrastructure supports data residency requirements under the Privacy Act 1988. Phish Focus is part of the broader phishing simulation and security awareness training solutions available from Phriendly Phishing.
Save time, respond quicker
Comprehensive threat analysis helps detect malicious emails allowing your team to prioritise their time.
Reduce security operations burden through automated responses to reported emails and streamlined access to key information.
Live insights from Phish Focus to take a proactive approach to blocking future threats.
Protecting your organisation
Add confirmed threats to a blocklist to prevent future attacks from a domain.
One click and Phish Clear will sweep the threat from all mailboxes in your organisation.
Flip fear into function – one click and a phishing threat becomes a safe simulated phishing campaign
What makes Phish Focus stand out:
An integrated, lightweight Security Orchestration, Automation, and Response (SOAR) application.
Deliver training from Australian-based infrastructure to meet data residency, compliance, and privacy requirements—without complex setup.
Reduces admin time by collating emails into a dedicated platform, then automatically processing non-threatening emails.
Customise automation rules to fit your unique requirements, including auto-replies to employees.
Tap into our expertise
Check out examples from our resource library:
See how Phriendly Phishing clients of all shapes and sizes have used our training to better protect their businesses.
Frequently Asked Questions
Phish Focus integrates with Microsoft 365 and Google Workspace. The Phish Reporter button is available for any version of the Phriendly Phishing Phish Reporter and supports Active Directory, Azure AD, and Google Workspace.
The email is logged and immediately quarantined from their inbox. If it is a real threat, your security team receives an instant alert. If it was a simulation, the employee receives immediate feedback explaining what to look for.
Yes, staff need to report emails using the Phish Reporter to use Phish Focus. It is designed to complement an active simulation programme, not replace one.
Pricing is based on the number of learners in your Phriendly Phishing platform. Contact the team for a quote, or request a demo and pricing will be covered in the session.
Yes. Phriendly Phishing delivers all training and platform functionality from Australian-based infrastructure, supporting data residency and privacy requirements under the Privacy Act 1988.
Award-winning phishing simulation & cyber security training
Out of thousands of entries worldwide, Phriendly Phishing joined the winner’s podium at the 2025 LearnX Awards and more!
Don’t take our word for it
See some of our success stories
They strengthened security awareness to meet regulatory requirements, creating an ongoing program that has reduced risk and improved company-wide vigilance.
They rolled out an easy-to-use phishing program across a number of sites, giving employees light, effective training that has improved awareness and strengthened security.
Ongoing phishing training has built lasting cybersecure behaviours, improving employee confidence and reducing human risk across all 1,700 staff.