2.6 MailPot Module
The MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.

Figure 2.6-1 β MailPot Inbox Interface
2.6.1 Main Tabs
The module provides three main tabs for managing email security, as shown in Figure 2.6.1-1.

Figure 2.6.1-1 β MailPot Tab Navigation
Tab | Description |
|---|---|
Inbox | AI-classified email list with threat categorization and filtering |
Mailboxes | Managed email account configurations and health status |
Policies | Alert policies for automated threat notification |
2.6.2 Inbox Tab2.6 MailPot Module
The Inbox tab displays all received emails categorized by AI-powered threat analysis, as shown in Figure 2.6.2-1.

Figure 2.6.2-1 β MailPot Inbox View
2.6.2.1 Email Category Filters
Emails are automatically classified into the following categories. Use the filter buttons at the top of the inbox to narrow the view:
Category | Indicator | Description |
|---|---|---|
All | Default | Display all emails regardless of classification |
Normal | Green | Legitimate business email |
Suspicious | Yellow | Emails requiring further investigation |
Phishing | Blue | Identified phishing attempts |
Spam | Red | Unsolicited bulk email |
2.6.2.2 Search and Filter
A FiltThe MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.The MailPot module provides AI-powered email security analysis and threat detection, automatically categorizing incoming emails by threat level. The module header displays the description: "AI-powered email security and threat detection." The main interface is shown in Figure 2.6-1.er by sender email search field at the top of the inbox allows you to quickly locate emails from specific senders. The All Mailboxes dropdown enables filtering emails by the monitored mailbox account.
2.6.2.3 Email Detail Panel
When an email is selected from the list, the right panel displays the full email content including header analysis, embedded link analysis, and the AI-generated threat score. The panel initially displays:
Select an email to read
2.6.3 Mailboxes Tab
The Mailboxes tab manages and monitors connected email accounts, as shown in Figure 2.6.3-1.

Figure 2.6.3-1 β MailPot Mailboxes View
2.6.3.1 Mailbox Overview Header
The Mailboxes tab header displays:
Your Mailboxes Manage and monitor your connected email accounts
2.6.3.2 Mailbox Card Structure
Each configured mailbox is displayed as a card with summary statistics:
Field | Description |
|---|---|
Email Address | The monitored email account (e.g., |
Total | Total number of emails processed |
Threats | Number of detected threats |
Safe | Number of emails classified as safe |
Each mailbox card includes two action icons:
Icon | Function |
|---|---|
Info (βΉοΈ) | Open mailbox details and configuration status |
Delete | Remove the mailbox from monitoring |
2.6.3.3 Mailbox Details
Clicking the Info icon on a mailbox card opens the detailed configuration and status view, as shown in Figure 2.6.3.3-1.

Figure 2.6.3.3-1 β Mailbox Details View
The details panel is titled "Mailbox Details" with the subtitle "Configuration and status information" and displays the following sections:
Status:
Field | Description |
|---|---|
Status | Current connection state (e.g., ERROR) |
Error Message | Details when errors occur (e.g., "Login failed: Invalid credentials (Failure)") |
Email Account:
Field | Description |
|---|---|
Email Address | Monitored email account |
Provider | Email service provider (e.g., Gmail) |
Protocol | Connection protocol (IMAP or POP3) |
Server Configuration:
Field | Description |
|---|---|
Server Address | Mail server hostname (e.g., |
Port | Connection port (e.g., 993) |
SSL/TLS | Encryption status (Enabled or Disabled) |
Synchronization:
Field | Description |
|---|---|
Sync Period | Interval between synchronization cycles (e.g., 30 minutes) |
Last Sync | Timestamp of the most recent synchronization |
Created At | Date when the mailbox was added to monitoring |
Mailbox ID | Unique system identifier (e.g., |
2.6.3.4 Adding a New Mailbox
To add a new mailbox, click the Add Mailbox button located in the top-right corner of the Mailboxes tab. The configuration form opens, as shown in Figure 2.6.3.4-1.

Figure 2.6.3.4-1 β Add New Mailbox Form
The form is titled "Add New Mailbox" with the subtitle "Connect your email for AI-powered security analysis" and includes the following parameters:
Parameter | Description |
|---|---|
Email Address * | The email account to monitor (required) |
Email Provider * | Select from available providers (e.g., Gmail) (required) |
Protocol * | Choose IMAP or POP3 (required) |
Sync Period * | Interval for email fetching (e.g., 30 minutes) (required) |
Server Configuration:
Parameter | Description |
|---|---|
Server Address * | Mail server hostname (required) |
Port * | Connection port (required) |
Password * | Account password or app-specific password (required) |
Use SSL/TLS Encryption | Toggle to enable encrypted connection |
Important: For Gmail accounts, use an App Password instead of your regular password. All credentials are encrypted and stored securely.
2.6.4 Policies Tab
The Policies tab configures automated alert rules for mailbox threat detection, as shown in Figure 2.6.4-1.

Figure 2.6.4-1 β MailPot Policies View
2.6.4.1 Policies Header
The Policies tab header displays:
MailPot Alert Policies Configure automated alerts for mailbox threat detection
2.6.4.2 Policy Card Structure
Each configured policy is displayed as a card with the following information:
Field | Description |
|---|---|
Mailbox | The monitored email account (e.g., |
Status | Policy state (e.g., Active) |
Alert States | Threat types being monitored, displayed with icons: ποΈ Spam, β οΈ Phishing |
Monitoring Description | Summary of threat types (e.g., "Monitoring for 2 threat type(s): Spam & Phishing") |
Notification Channels Section:
Field | Description |
|---|---|
Recipients | Who receives the alerts (e.g., User, Admin) |
Alert Message | Template preview (e.g., |
Each policy card includes action buttons:
Button | Function |
|---|---|
Edit | Modify the alert policy configuration |
Delete | Remove the alert policy |
2.6.4.3 Editing an Alert Policy
Clicking the Edit button on a policy card opens the configuration form, as shown in Figure 2.6.4.3-1.

Figure 2.6.4.3-1 β Edit Alert Policy Form
The form includes the following parameters:
Parameter | Description |
|---|---|
Mailbox to Monitor * | Select the email account to monitor (required) |
Alert State:
Select which types of threats to monitor. You can select one or both:
Threat Type | Description |
|---|---|
Spam | Detect spam emails |
Phishing | Detect phishing attempts |
Notification Channels:
Select one or more notification channels for alert delivery. Multiple channels can be enabled simultaneously:
Channel | Description |
|---|---|
Send alerts via email | |
Call | Voice call notification |
SMS | Text message notification |
Push | Push notification to mobile devices |
Slack | Send alerts to Slack workspace |
Discord | Send alerts to Discord server |
Telegram | Send alerts via Telegram bot |
Alert Configuration:
Parameter | Description |
|---|---|
Alert Recipients * | Select users or roles to receive alerts (e.g., Admin) (required) |
Alert Message Template | Customize the alert message using template variables. Default: |
Available Template Variables:
Variable | Description |
|---|---|
| Email sender address |
| Threat category (Spam, Phishing, etc.) |
| Email subject line |
2.6.4.4 Creating a New Policy
To create a new alert policy, click the Add New Policy button in the Policies tab. The same configuration form described in 2.6.4.3 is presented with empty fields ready for configuration.
