PhishNet for Slack

Phishing alerts,
in the channel
your team already watches.

Connect your Slack workspace and PhishNet posts a formatted alert the moment it flags or quarantines a phishing email — routed to the channels you choose, filtered by severity.

Real-time alerts
Route by channel & severity
Reads no messages
Set up in minutes
#security-alerts
PhishNetAPP10:42 AM
🔴 PhishNet — email quarantined
Sender
security@chase-alerts-secure.com
Subject
Unusual activity on your account
Recipient
marcus@acme.com
Phish score
95
View in PhishNet →
Real-time
Alerts fire the instant PhishNet flags or quarantines a message — no polling, no digest lag.
Routed your way
Send each channel only what matters — phishing only, or suspicious and above.
Privacy-first
PhishNet never reads your Slack. It only posts to the channels you pick, with PII redacted.
Setup
Connected in four steps.
01
1
Add to Slack
An owner or admin opens Integrations → Slack in the PhishNet dashboard and authorizes the workspace.
02
2
Pick channels
Choose one or more channels to receive alerts, each with its own severity threshold.
03
3
Invite the bot
Run /invite @PhishNet in each channel so the bot can post there — public or private.
04
4
Get alerts
From then on, every flagged or quarantined email lands in the right channel in real time.
Alerts that fit your workflow

The right alert, in the right channel.

Different teams care about different threats. PhishNet lets you route alerts per channel and set how severe a threat must be before it fires — so your incident channel stays signal, not noise.

Multiple channels, each independently configured
Per-channel severity: phishing only, or suspicious and above
Rich alerts: sender, subject, recipient, and risk score
One click from an alert to the full scan in the dashboard
Send a test alert to confirm a channel is wired correctly
Alert routing
#security-alertsSuspicious & above
#soc-phishingPhishing only
#it-notificationsPhishing only
Permissions
Minimal access, by design.
chat:write
Post alert messages to the channels you configure. This is how alerts are delivered.
channels:read
List public channels so you can pick which ones receive alerts. Names and IDs only.
groups:read
List the private channels the bot has been invited to, so they appear in the picker.

PhishNet never reads your Slack messages and posts only to channels you choose. Email content is PII-redacted before any alert is sent. Available on Team and Enterprise plans.

Bring threats to where you work

Your team sees the threat
the moment it lands.

Connect Slack from your PhishNet dashboard in a few clicks. Team and Enterprise plans.