Skip to content
18 changes: 17 additions & 1 deletion public/__redirects
Original file line number Diff line number Diff line change
Expand Up @@ -594,7 +594,7 @@
/cloudflare-one/insights/email-monitoring/download-disposition-report/ /cloudflare-one/email-security/email-monitoring/download-disposition-report/ 301
/cloudflare-one/insights/email-monitoring/ /cloudflare-one/email-security/email-monitoring/ 301
/cloudflare-one/insights/email-monitoring/search-email/ /cloudflare-one/email-security/email-monitoring/search-email/ 301
/cloudflare-one/insights/email-monitoring/phish-submissions/ /cloudflare-one/email-security/phish-submissions/ 301
/cloudflare-one/email-security/phish-submissions/ /cloudflare-one/email-security/settings/phish-submissions/ 301
/cloudflare-one/insights/email-monitoring/enable-logs/ /cloudflare-one/insights/logs/enable-logs/ 301
/cloudflare-one/email-security/directories/manage-ms-directories/ /cloudflare-one/email-security/directories/manage-integrated-directories/ 301
/cloudflare-one/email-security/directories/manage-ms-directories/manage-groups-directory/ /cloudflare-one/email-security/directories/manage-integrated-directories/manage-groups-directory/ 301
Expand Down Expand Up @@ -2402,6 +2402,22 @@
/cloudflare-one/applications/non-http/* /cloudflare-one/access-controls/applications/non-http/:splat 301
/cloudflare-one/identity/devices/* /cloudflare-one/reusable-components/posture-checks/:splat 301

# Email Security new revamp
/cloudflare-one/email-security/email-monitoring/download-report/ /cloudflare-one/email-security/monitoring/download-report/ 301
/cloudflare-one/email-security/email-monitoring/* /cloudflare-one/email-security/monitoring/:splat 301
/cloudflare-one/email-security/auto-moves/ /cloudflare-one/email-security/settings/auto-moves/ 301
/cloudflare-one/email-security/detection-settings/additional-detections/ /cloudflare-one/email-security/settings/additional-detections/ 301
/cloudflare-one/email-security/detection-settings/allow-policies/ /cloudflare-one/email-security/settings/allow-policies/ 301
/cloudflare-one/email-security/detection-settings/blocked-senders/ /cloudflare-one/email-security/settings/blocked-senders/ 301
/cloudflare-one/email-security/detection-settings/configure-link-actions/ /cloudflare-one/email-security/settings/configure-link-actions/ 301
/cloudflare-one/email-security/detection-settings/detection-settings/ /cloudflare-one/email-security/settings/detection-settings/ 301
/cloudflare-one/email-security/detection-settings/configure-text-add-ons/ /cloudflare-one/email-security/settings/configure-text-add-ons/ 301
/cloudflare-one/email-security/settings/detection-settings/impersonation-registry/ /cloudflare-one/email-security/settings/impersonation-registry/ 301
/cloudflare-one/email-security/detection-settings/trusted-domains/ /cloudflare-one/email-security/settings/trusted-domains/ 301
/cloudflare-one/email-security/settings/detection-settings/impersonation-registry/* /cloudflare-one/email-security/settings/impersonation-registry/:splat 301
/cloudflare-one/email-security/detection-settings/* /cloudflare-one/email-security/settings/detection-settings/:splat 301


# Learning paths

/learning-paths/modules/get-started/onboarding/* /learning-paths/get-started-free/onboarding/:splat 301
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ After you triage your users' submissions (that are machine reviewed), you can no

From **Reclassifications**, go to **User submissions**. Select the three dots next to any of the user submissions, then select **Escalate** to create a team request for reclassification. The Cloudflare dashboard will then show you the submissions on the **Team Submissions** tab.

Refer to [User submissions](/cloudflare-one/email-security/email-monitoring/search-email/#user-submissions) to learn more about this feature.
Refer to [User submissions](/cloudflare-one/email-security/reclassifications/user-submissions/) to learn more about this feature.

This feature is available across these Email Security packages:

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@ import { Render } from "~/components";

You now have more transparency about team and user submissions for phishing emails through a **Reclassification** tab in the Zero Trust dashboard.

Reclassifications happen when users or admins [submit a phish](/cloudflare-one/email-security/phish-submissions/) to Email Security. Cloudflare reviews and - in some cases - reclassifies these emails based on improvements to our machine learning models.
Reclassifications happen when users or admins [submit a phish](/cloudflare-one/email-security/settings/phish-submissions/) to Email Security. Cloudflare reviews and - in some cases - reclassifies these emails based on improvements to our machine learning models.

This new tab increases your visibility into this process, allowing you to view what submissions you have made and what the outcomes of those submissions are.

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -4,16 +4,16 @@ description: You can now investigate links in emails with Cloudflare Security Ce
date: 2025-02-07T23:22:49Z
---

You can now investigate links in emails with Cloudflare Security Center to generate a report containing a myriad of technical details: a phishing scan, SSL certificate data, HTTP request and response data, page performance data, DNS records, what technologies and libraries the page uses, and more.
You can now investigate links in emails with Cloudflare Security Center to generate a report containing a myriad of technical details: a phishing scan, SSL certificate data, HTTP request and response data, page performance data, DNS records, what technologies and libraries the page uses, and more.

![Open links in Security Center](~/assets/images/changelog/email-security/Open-Links-Security-Center.png)

From **Investigation**, go to **View details**, and look for the **Links identified** section. Select **Open in Security Center** next to each link. **Open in Security Center** allows your team to quickly generate a detailed report about the link with no risk to the analyst or your environment.
From **Investigation**, go to **View details**, and look for the **Links identified** section. Select **Open in Security Center** next to each link. **Open in Security Center** allows your team to quickly generate a detailed report about the link with no risk to the analyst or your environment.

For more details, refer to [Open links](/cloudflare-one/email-security/email-monitoring/search-email/#open-links).
For more details, refer to [Open links](/cloudflare-one/email-security/monitoring/search-email/#open-links).

This feature is available across these Email Security packages:
This feature is available across these Email Security packages:

- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@ You can now safely open links in emails to view and investigate them.

![Open links with Browser Isolation](~/assets/images/changelog/email-security/investigate-links.jpg)

From **Investigation**, go to **View details**, and look for the **Links identified** section. Next to each link, the Cloudflare dashboard will display an **Open in Browser Isolation** icon which allows your team to safely open the link in a clientless, isolated browser with no risk to the analyst or your environment. Refer to [Open links](/cloudflare-one/email-security/email-monitoring/search-email/#open-links) to learn more about this feature.
From **Investigation**, go to **View details**, and look for the **Links identified** section. Next to each link, the Cloudflare dashboard will display an **Open in Browser Isolation** icon which allows your team to safely open the link in a clientless, isolated browser with no risk to the analyst or your environment. Refer to [Open links](/cloudflare-one/email-security/monitoring/search-email/#open-links) to learn more about this feature.

To use this feature, you must:

Expand All @@ -21,4 +21,4 @@ This feature is available across these Email Security packages:

- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
- **Enterprise + PhishGuard**
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ For example, you may want to deliver suspicious messages but isolate the links f

![Expanded Email Link Isolation Configuration](~/assets/images/changelog/email-security/expanded-link-actions.jpg)

To isolate all links within a message based on the disposition, select **Settings** > **Link Actions** > **View** and select **Configure**. As with other other links you isolate, an interstitial will be provided to warn users that this site has been isolated and the link will be recrawled live to evaluate if there are any changes in our threat intel. Learn more about this feature on [Configure link actions](https://developers.cloudflare.com/cloudflare-one/email-security/detection-settings/configure-link-actions/).
To isolate all links within a message based on the disposition, select **Settings** > **Link Actions** > **View** and select **Configure**. As with other other links you isolate, an interstitial will be provided to warn users that this site has been isolated and the link will be recrawled live to evaluate if there are any changes in our threat intel. Learn more about this feature on [Configure link actions](https://developers.cloudflare.com/cloudflare-one/email-security/settings/detection-settings/configure-link-actions/).

This feature is available across these Email Security packages:

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -4,28 +4,23 @@ description: More granular controls for Email Security roles
date: 2025-09-01T23:25:49Z
---


To provide more granular controls, we refined the [existing roles](/cloudflare-one/roles-permissions/#email-security-roles) for Email Security and launched a new Email Security role as well.

To provide more granular controls, we refined the [existing roles](/cloudflare-one/roles-permissions/#email-security-roles) for Email Security and launched a new Email Security role as well.

All Email Security roles no longer have read or write access to any of the other Zero Trust products:
- **Email Configuration Admin**
- **Email Integration Admin**
- **Email Security Read Only**
- **Email Security Analyst**
- **Email Security Policy Admin**
- **Email Security Reporting**

- **Email Configuration Admin**
- **Email Integration Admin**
- **Email Security Read Only**
- **Email Security Analyst**
- **Email Security Policy Admin**
- **Email Security Reporting**

To configure [Data Loss Prevention (DLP)](/cloudflare-one/email-security/outbound-dlp/) or [Remote Browser Isolation (RBI)](/cloudflare-one/remote-browser-isolation/setup/clientless-browser-isolation/#set-up-clientless-web-isolation), you now need to be an admin for the Zero Trust dashboard with the **Cloudflare Zero Trust** role.

Also through customer feedback, we have created a new additive role to allow **Email Security Analyst** to create, edit, and delete Email Security policies, without needing to provide access via the **Email Configuration Admin** role. This role is called **Email Security Policy Admin**, which can read all settings, but has write access to [allow policies](/cloudflare-one/email-security/settings/detection-settings/allow-policies/), [trusted domains](/cloudflare-one/email-security/settings/detection-settings/trusted-domains/), and [blocked senders](/cloudflare-one/email-security/settings/detection-settings/blocked-senders/).

Also through customer feedback, we have created a new additive role to allow **Email Security Analyst** to create, edit, and delete Email Security policies, without needing to provide access via the **Email Configuration Admin** role. This role is called **Email Security Policy Admin**, which can read all settings, but has write access to [allow policies](/cloudflare-one/email-security/detection-settings/allow-policies/), [trusted domains](/cloudflare-one/email-security/detection-settings/trusted-domains/), and [blocked senders](/cloudflare-one/email-security/detection-settings/blocked-senders/).



This feature is available across these Email Security packages:

This feature is available across these Email Security packages:
- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
Original file line number Diff line number Diff line change
Expand Up @@ -6,22 +6,20 @@ date: 2025-09-23T23:11:49Z

Email Security relies on your submissions to continuously improve our detection models. However, we often receive submissions in formats that cannot be ingested, such as incomplete EMLs, screenshots, or text files.

To ensure all customer feedback is actionable, we have launched two new features to manage invalid submissions sent to our team and user [submission aliases](/cloudflare-one/email-security/phish-submissions/#submission-addresses):

- **Email Notifications:** We now automatically notify users by email when they provide an invalid submission, educating them on the correct format. To disable notifications, go to **[Settings](https://one.dash.cloudflare.com/?to=/:account/email-security/settings)** > **Invalid submission emails** and turn the feature off.
To ensure all customer feedback is actionable, we have launched two new features to manage invalid submissions sent to our team and user [submission aliases](/cloudflare-one/email-security/settings/phish-submissions/submission-addresses/):

- **Email Notifications:** We now automatically notify users by email when they provide an invalid submission, educating them on the correct format. To disable notifications, go to **[Settings](https://one.dash.cloudflare.com/?to=/:account/email-security/settings)** > **Invalid submission emails** and turn the feature off.

![EmailSec-Invalid-Submissions-Toggle](~/assets/images/changelog/email-security/EmailSec-Invalid-Submissions-Toggle.png)

- **Invalid Submission dashboard:** You can quickly identify which users need education to provide valid submissions so Cloudflare can provide continuous protection.
- **Invalid Submission dashboard:** You can quickly identify which users need education to provide valid submissions so Cloudflare can provide continuous protection.

![EmailSec-Invalid-Submissions-Dashboard](~/assets/images/changelog/email-security/EmailSec-Invalid-Submissions-Dashboard.png)

Learn more about this feature on [invalid submissions](https://developers.cloudflare.com/cloudflare-one/email-security/monitoring/search-email/#invalid-submissions).

Learn more about this feature on [invalid submissions](https://developers.cloudflare.com/cloudflare-one/email-security/email-monitoring/search-email/#invalid-submissions).

This feature is available across these Email Security packages:
- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
This feature is available across these Email Security packages:

- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
Original file line number Diff line number Diff line change
@@ -1,21 +1,22 @@
---
title: On-Demand Security Report
description: Generate on-demand reports to prove Email Security value
description: Generate on-demand reports to prove Email Security value
date: 2025-10-17T22:14:43Z
---


You can now generate on-demand security reports directly from the Cloudflare dashboard. This new feature provides a comprehensive overview of your email security posture, making it easier than ever to demonstrate the value of Cloudflare’s Email Security to executives and other decision makers.

These reports offer several key benefits:

- **Executive Summary:** Quickly view the performance of Email Security with a high-level executive summary.
- **Actionable Insights:** Dive deep into trend data, breakdowns of threat types, and analysis of top targets to identify and address vulnerabilities.
- **Configuration Transparency:** Gain a clear view of your policy, submission, and domain configurations to ensure optimal setup.

To get started, refer to [Download a security report](/cloudflare-one/email-security/email-monitoring/download-report/#download-a-security-report).
To get started, refer to [Download a security report](/cloudflare-one/email-security/monitoring/download-report/#download-a-security-report).
![Report](~/assets/images/changelog/email-security/report.png)

This feature is available across the following Email Security packages:
- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
This feature is available across the following Email Security packages:

- **Advantage**
- **Enterprise**
- **Enterprise + PhishGuard**
Original file line number Diff line number Diff line change
Expand Up @@ -2,14 +2,14 @@
title: Directories
pcx_content_type: how-to
sidebar:
order: 13
order: 16
---

Directories are folders to store user data. Email Security allows you to manage directories from the Cloudflare dashboard.

To add a directory:

1. Log in to [Zero Trust](https://one.dash.cloudflare.com/) > **Email Security**.
1. Log in to [Cloudflare One](https://one.dash.cloudflare.com/) > **Email Security**.
2. Select **Directories**.
3. Select **Add a directory** > **Connect an integration**.
4. Select either **Google Workspace CASB + EMAIL** or **Microsoft CASB+EMAIL**.
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -8,12 +8,12 @@ sidebar:
You can manage your Email Security directory by editing and deleting added users.

:::note[Registered users]
The Email Security directory contains registered users only. A registered user is a user added to the [impersonation registry](/cloudflare-one/email-security/detection-settings/impersonation-registry/).
The Email Security directory contains registered users only. A registered user is a user added to the [impersonation registry](/cloudflare-one/email-security/settings/detection-settings/impersonation-registry/).
:::

To modify or delete users in the Email Security directory:

1. In [Zero Trust](https://one.dash.cloudflare.com/), go to **Email Security** > **Directories**.
1. In [Cloudflare One](https://one.dash.cloudflare.com/), go to **Email Security** > **Directories**.
2. Select **Email Security Directory**.

## Add a user
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,7 @@ sidebar:

To manage an integrated directory:

1. Log in to [Zero Trust](https://one.dash.cloudflare.com/).
1. Log in to [Cloudflare One](https://one.dash.cloudflare.com/).
2. Select **Email Security**.
3. Select **Directories**.
4. Under **Directory name**, select your directory.
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -5,11 +5,11 @@ sidebar:
order: 3
---

Email Security allows you to view and manage your groups directory and their [impersonation registry](/cloudflare-one/email-security/detection-settings/impersonation-registry/). When a group is added to the registry, all members are registered by default.
Email Security allows you to view and manage your groups directory and their [impersonation registry](/cloudflare-one/email-security/settings/detection-settings/impersonation-registry/). When a group is added to the registry, all members are registered by default.

To manage a group directory:

1. In [Zero Trust](https://one.dash.cloudflare.com/), go to **Email Security** > **Directories**.
1. In [Cloudflare One](https://one.dash.cloudflare.com/), go to **Email Security** > **Directories**.
2. Locate your directory, select the three dots > **View details**.
3. Select **Groups**.

Expand Down Expand Up @@ -47,7 +47,7 @@ To remove multiple groups from the registry at once:

You can filter the list of group names by registered and unregistered.

A group name is registered when it is part of the [impersonation registry](/cloudflare-one/email-security/detection-settings/impersonation-registry/). A group name is unregistered when they are not part of the impersonation registry.
A group name is registered when it is part of the [impersonation registry](/cloudflare-one/email-security/settings/detection-settings/impersonation-registry/). A group name is unregistered when they are not part of the impersonation registry.

To filter the list:

Expand Down
Loading
Loading