πŸ“„2. Guardpot Platform Administration

2.6 MailPot Module

6 min read96 viewsUpdated May 19, 2026

The MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.

Figure 2.6-1 – MailPot Inbox Interface

Figure 2.6-1 – MailPot Inbox Interface


2.6.1 Main Tabs

The module provides three main tabs for managing email security, as shown in Figure 2.6.1-1.

Figure 2.6.1-1 – MailPot Tab Navigation

Figure 2.6.1-1 – MailPot Tab Navigation

Tab

Description

Inbox

AI-classified email list with threat categorization and filtering

Mailboxes

Managed email account configurations and health status

Policies

Alert policies for automated threat notification


2.6.2 Inbox Tab2.6 MailPot Module

The Inbox tab displays all received emails categorized by AI-powered threat analysis, as shown in Figure 2.6.2-1.

Figure 2.6.2-1 – MailPot Inbox View

Figure 2.6.2-1 – MailPot Inbox View

2.6.2.1 Email Category Filters

Emails are automatically classified into the following categories. Use the filter buttons at the top of the inbox to narrow the view:

Category

Indicator

Description

All

Default

Display all emails regardless of classification

Normal

Green

Legitimate business email

Suspicious

Yellow

Emails requiring further investigation

Phishing

Blue

Identified phishing attempts

Spam

Red

Unsolicited bulk email

2.6.2.2 Search and Filter

A FiltThe MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.The MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.er by sender email search field at the top of the inbox allows you to quickly locate emails from specific senders. The All Mailboxes dropdown enables filtering emails by the monitored mailbox account.

2.6.2.3 Email Detail Panel

When an email is selected from the list, the right panel displays the full email content including header analysis, embedded link analysis, and the AI-generated threat score. The panel initially displays:

Select an email to read


2.6.3 Mailboxes Tab

The Mailboxes tab manages and monitors connected email accounts, as shown in Figure 2.6.3-1.

Figure 2.6.3-1 – MailPot Mailboxes View

2.6.3.1 Mailbox Overview Header

The Mailboxes tab header displays:

Your Mailboxes Manage and monitor your connected email accounts

2.6.3.2 Mailbox Card Structure

Each configured mailbox is displayed as a card with summary statistics:

Field

Description

Email Address

The monitored email account (e.g., [email protected])

Total

Total number of emails processed

Threats

Number of detected threats

Safe

Number of emails classified as safe

Each mailbox card includes two action icons:

Icon

Function

Info (ℹ️)

Open mailbox details and configuration status

Delete

Remove the mailbox from monitoring

2.6.3.3 Mailbox Details

Clicking the Info icon on a mailbox card opens the detailed configuration and status view, as shown in Figure 2.6.3.3-1.

Figure 2.6.3.3-1 – Mailbox Details View

The details panel is titled "Mailbox Details" with the subtitle "Configuration and status information" and displays the following sections:

Status:

Field

Description

Status

Current connection state (e.g., ERROR)

Error Message

Details when errors occur (e.g., "Login failed: Invalid credentials (Failure)")

Email Account:

Field

Description

Email Address

Monitored email account

Provider

Email service provider (e.g., Gmail)

Protocol

Connection protocol (IMAP or POP3)

Server Configuration:

Field

Description

Server Address

Mail server hostname (e.g., imap.gmail.com)

Port

Connection port (e.g., 993)

SSL/TLS

Encryption status (Enabled or Disabled)

Synchronization:

Field

Description

Sync Period

Interval between synchronization cycles (e.g., 30 minutes)

Last Sync

Timestamp of the most recent synchronization

Created At

Date when the mailbox was added to monitoring

Mailbox ID

Unique system identifier (e.g., 3c1990ca-6e8b-4151-b2eb-xxxxxxxxxxxx)

2.6.3.4 Adding a New Mailbox

To add a new mailbox, click the Add Mailbox button located in the top-right corner of the Mailboxes tab. The configuration form opens, as shown in Figure 2.6.3.4-1.

Figure 2.6.3.4-1 – Add New Mailbox Form

Figure 2.6.3.4-1 – Add New Mailbox Form

The form is titled "Add New Mailbox" with the subtitle "Connect your email for AI-powered security analysis" and includes the following parameters:

Parameter

Description

Email Address *

The email account to monitor (required)

Email Provider *

Select from available providers (e.g., Gmail) (required)

Protocol *

Choose IMAP or POP3 (required)

Sync Period *

Interval for email fetching (e.g., 30 minutes) (required)

Server Configuration:

Parameter

Description

Server Address *

Mail server hostname (required)

Port *

Connection port (required)

Password *

Account password or app-specific password (required)

Use SSL/TLS Encryption

Toggle to enable encrypted connection

Important: For Gmail accounts, use an App Password instead of your regular password. All credentials are encrypted and stored securely.


2.6.4 Policies Tab

The Policies tab configures automated alert rules for mailbox threat detection, as shown in Figure 2.6.4-1.

Figure 2.6.4-1 – MailPot Policies View

2.6.4.1 Policies Header

The Policies tab header displays:

MailPot Alert Policies Configure automated alerts for mailbox threat detection

2.6.4.2 Policy Card Structure

Each configured policy is displayed as a card with the following information:

Field

Description

Mailbox

The monitored email account (e.g., [email protected])

Status

Policy state (e.g., Active)

Alert States

Threat types being monitored, displayed with icons: πŸ—‘οΈ Spam, ⚠️ Phishing

Monitoring Description

Summary of threat types (e.g., "Monitoring for 2 threat type(s): Spam & Phishing")

Notification Channels Section:

Field

Description

Recipients

Who receives the alerts (e.g., User, Admin)

Alert Message

Template preview (e.g., {{sender}} {{category}} {{subject}})

Each policy card includes action buttons:

Button

Function

Edit

Modify the alert policy configuration

Delete

Remove the alert policy

2.6.4.3 Editing an Alert Policy

Clicking the Edit button on a policy card opens the configuration form, as shown in Figure 2.6.4.3-1.

Figure 2.6.4.3-1 – Edit Alert Policy Form

The form includes the following parameters:

Parameter

Description

Mailbox to Monitor *

Select the email account to monitor (required)

Alert State:

Select which types of threats to monitor. You can select one or both:

Threat Type

Description

Spam

Detect spam emails

Phishing

Detect phishing attempts

Notification Channels:

Select one or more notification channels for alert delivery. Multiple channels can be enabled simultaneously:

Channel

Description

Email

Send alerts via email

Call

Voice call notification

SMS

Text message notification

Push

Push notification to mobile devices

Slack

Send alerts to Slack workspace

Discord

Send alerts to Discord server

Telegram

Send alerts via Telegram bot

Alert Configuration:

Parameter

Description

Alert Recipients *

Select users or roles to receive alerts (e.g., Admin) (required)

Alert Message Template

Customize the alert message using template variables. Default: {{sender}} {{category}} {{subject}}

Available Template Variables:

Variable

Description

{{sender}}

Email sender address

{{category}}

Threat category (Spam, Phishing, etc.)

{{subject}}

Email subject line

2.6.4.4 Creating a New Policy

To create a new alert policy, click the Add New Policy button in the Policies tab. The same configuration form described in 2.6.4.3 is presented with empty fields ready for configuration.

Was this article helpful?

Your feedback helps us improve our documentation.

Send feedback