Notification and Banner Templates - Placeholders

While configuring email notifications and banners, the administrator can use placeholders to replace content dynamically. For example, the placeholder {subject} gets replaced with the email subject that triggered the email notification.

Quarantine notifications

Quarantine notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original subject {subject}

Quarantined notification (admin restore request)

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original subject {subject}

Outgoing quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original subject {subject}

Outgoing quarantined notification (admin restore request)

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original subject {subject}

Restore request notifications

Restore request subject

Placeholder Name Placeholder Value
Email of the requesting user {requester}
Original subject {subject}

Restore request body

Placeholder Name Placeholder Value
User request free text {comment}
Original sender {from_email}
Original sender's name {from_name}
Restoration link {link_to_restore}
Email of the requesting user {requester}
Original subject {subject}

Restore notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Decline message subject

Placeholder Name Placeholder Value
Original email subject {subject}

Decline message body

Placeholder Name Placeholder Value
Decline reason {decline_reason}
Original sender {from_email}
The original subject {subject}

Password-protected attachments notifications

Password-protected quarantine notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Password-protected quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Phishing quarantine notifications

Phishing quarantine notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Phishing quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Phishing quarantine notification body (admin restore request)

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Phishing decline message subject

Placeholder Name Placeholder Value
Original email subject {subject}

Phishing decline message body

Placeholder Name Placeholder Value
Decline reason {decline_reason}
Original sender {from_email}
The original subject {subject}

Outgoing phishing quarantine notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Outgoing phishing quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Outgoing phishing quarantine notification body (admin restore request)

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Detection reasons {detection_reasons}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Require password to release encrypted file notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
The original mail sender {from_email}
Restoration link {link_to_restore}

Threat extracted message notifications

Threat extracted message format

Placeholder Name Placeholder Value
Action taken on malicious attachments {actions_taken}
Original mail body {body}
Original mail sender {from_email}
Link to restoration link {link_to_restore}
Original subject {subject}

Threat extracted attachment name template

Placeholder Name Placeholder Value
Original attachment name *_{original_name} For example, threat_ extraction_{original_name}

Spam quarantine notifications

Spam quarantine notification subject

Placeholder Name Placeholder Value
Original email subject {subject}

Spam quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

Outgoing spam quarantine notification body

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

DLP notifications

DLP quarantined notification body (admin restore request) - Outbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Data leak detection categories {dlp_categories}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The sender name {name}
Original email subject {subject}

DLP quarantined notification body (user can restore) - Outbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Data leak detection categories {dlp_categories}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The sender name {name}
Original email subject {subject}

DLP restoration notification body - Outbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

DLP quarantined notification body (admin restore request) - Inbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Data leak detection categories {dlp_categories}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The sender name {name}
Original email subject {subject}

DLP quarantined notification body (user can restore) - Inbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Data leak detection categories {dlp_categories}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The sender name {name}
Original email subject {subject}

DLP restoration notification body - Inbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The recipient name {name}
Original email subject {subject}

DLP alert subject to external sender - Inbound

Placeholder Name Placeholder Value
Original email subject {subject}

DLP alert body to external sender - Inbound

Placeholder Name Placeholder Value
List of attachment names {attachments_names}
Original mail body {body}
Original mail sender {from_email}
Original mail sender address {from_email_address}
Restoration link {link_to_restore}
The sender name {name}
The email recipients {recipients}
Original email subject {subject}

Report phishing notifications

Report phishing approve subject

Placeholder Name Placeholder Value
Original email subject {subject}

Report phishing approve body

Placeholder Name Placeholder Value
Original mail sender {from_email}
The recipient name {name}
Original subject {subject}

Report phishing simulation subject

Placeholder Name Placeholder Value
Original email subject {subject}

Report phishing simulation body

Placeholder Name Placeholder Value
Original mail sender {from_email}
The recipient name {name}
Original subject {subject}

Report phishing decline subject

Placeholder Name Placeholder Value
Original email subject {subject}

Report phishing decline body

Placeholder Name Placeholder Value
Decline reason {decline_reaason}
Original mail sender {from_email}
The recipient name {name}
Original subject {subject}

Email Alerts - Placeholders

Threat Detection Policy

Placeholder Name Placeholder Value
Email subject {tag_email_subject}
Sender email address {tag_email_sender}
Recipient email address {tag_email_recipient}
Date when the email was received {tag_email_received}
Detection reasons {tag_detection_reasons}
Name of the detected attachment {tag_affected_attachment_name}

DLP Policy

Placeholder Name Placeholder Value
Email subject {tag_email_subject}
Sender email address {tag_email_sender}
All recipient's email address {tag_email_all_recipients}
Date when the email was received {tag_email_received}
Name of the detected attachment {tag_affected_attachment_name}
Email delivery status {tag_delivery_status}
DLP categories {tag_dlp_categories}

Click-Time Protection Policy

Placeholder Name Placeholder Value
Email subject {tag_email_subject}
Sender email address {tag_email_sender}
Recipient email address {tag_email_recipient}
Date when the email was received {tag_email_received}
Detection reasons {tag_detection_reasons}
Name of the detected attachment {tag_affected_attachment_name}

Smart Banners - Placeholders

Placeholder Name Placeholder Value
The sender's display name resembles that of a known contact with whom the recipient is corresponding <<sender nickname>>
Display name of the known contact with whom the recipient is corresponding <<known contact>>
Sender's display name <<sender>>
Sender domain <<sender domain>>
Reply-to email address <<reply-to>>
Reply-to domain <<reply-to domain>>