Mark a campaign target's interaction as a false positive

Marks a phishing-campaign target's recorded interaction as a false positive — e.g. a security scanner (not the employee) triggered the click or credential submission. Clears the relevant flags on the per-recipient result and decrements the campaign's aggregate statistics accordingly. Use eventType "all" (default) to clear the payload interaction (link/attachment click), the employee compromise (credential submission) and the email reply; use "employeeCompromise" to clear only the compromise and keep the click. Requires an admin role and a paid subscription.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Body Params
string
required
string
required
string
required

Identifies the target within the campaign.

string
enum

Which events to clear. "all" (default) clears the payload interaction, employee compromise and reply; "employeeCompromise" clears only the credential submission.

Allowed:
boolean
Responses

Language
Credentials
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json