Lucy Awareness
Visit our WebsiteContact Support
  • Wiki Overview
  • Guides
    • Quick Guides
      • Create Your First Campaign
        • Adding a New Client
        • Register an Attack Domain
        • Campaign Setup
          • Selecting an Attack
          • Attack Settings
          • Awareness Settings
          • Recipients
          • Review
        • Whitelisting
    • Installing Lucy
      • On-Premise vs Cloud Installation
      • Architecture
      • Hardware Requirements
      • Network Communication
      • Installing Lucy
      • Post Installation
    • Manage Blacklisted Domains
      • Managing Google SafeBrowsing Alerts
    • Whitelisting a Lucy Server
      • Google Workspace Whitelisting
      • Microsoft O365 Whitelisting
      • File Attack Whitelisting
    • Attack Simulations
      • Attack Types
        • Data Entry Attack
        • Hyperlink Attack
        • File Attack
        • Portable Media
        • Smishing
        • Lures
        • QR Codes
        • Ransomware Emulation
        • Technical Malware Test
          • Malware Toolkit Test Suite
        • Mail & Web Filter Test
        • Email Spoofing Test
      • Attack Template Customization
      • Firewall Protection Interval
      • Email Tracking Technologies
      • Advanced Information Gathering
      • Regular Expressions in Login Fields
      • Copy a Website
      • Redirecting Users
    • Awareness Training
      • Awareness Template Customization
      • Awareness Only Campaigns
        • Using Multiple Awareness Trainings
      • Use extended method of tracking the end of the quiz
    • Reporting Plugin
      • Deploying Office 365
      • Deploying Outlook Native
      • Deploying Gmail
  • Application Screens Reference
    • Statistics Dashboard
    • Campaigns Dashboards
    • Campaigns
      • New Campaign
        • Wizard Mode
          • Selecting an Attack
          • Attack Settings
          • Awareness Settings
          • Recipients
          • Review
        • Expert Mode
      • Campaign Settings
        • Configuration
          • Base Settings
          • Awareness Settings
          • Attack Settings
          • Schedule
            • Schedule Plan
          • Recipients
        • Advanced Settings
          • User Settings
          • Filters
          • Custom Fields
          • Reminders
        • Campaign Checks
        • Logs
        • Results
          • Summary
          • Statistics
          • Reports
          • Exports
    • Templates
      • Attack Templates
      • Awareness Templates
      • File Templates
      • Report Templates
      • Campaign Templates
      • Training Diploma
      • Download templates
      • Variables in Lucy
    • Users
      • Recipient Groups
      • End Users
      • End User Portal Settings
      • Administrative Users
      • Reputation Levels
    • Settings
      • Common System Settings
        • Domains
          • Supported TLDs
        • Firewall
        • Web Proxy
        • Mail Settings
        • SMTP Servers
        • SSL Settings
          • SSL for Campaigns
        • SMS Settings
        • Filter Settings
        • API Whitelist
          • API Routes
        • LDAP Servers
          • LDAP Sync Tool
        • LDAP Settings
        • Azure Applications
        • Azure AD Settings
        • SSO Configuration
      • Advanced System Settings
        • Advanced Settings
        • SSH Password
      • Submitted Email Settings
        • Custom Rules & Score Factors
        • Abuse Reports
        • Incident Autoresponder
        • Plugin Settings
      • Clients
        • Client Invoices
        • Client Invoice Settings
      • Backup and Restore
        • Backup Settings
      • Benchmark Sectors
      • Whitelabeling
      • File Browser
    • Incidents
    • Support
      • Status
        • Status
        • System Monitoring
        • System Health Check
        • Notifications
      • System Tests
        • Test Email
        • Performance Test
        • Spam Test
        • Mail Spoofing Test
        • Mail and Web Filter Test
      • System Logs
      • Manual
      • Update
      • Reboot
      • Mail Manager
      • Terms & Conditions
    • Account Settings
      • Two Factor Authentication
      • License
      • Invoices
    • Notifications
  • Release Notes
    • 5.4
    • 5.3.5
    • 5.3.4
    • 5.3.3
    • 5.3.2
    • 5.3.1
    • 5.3
    • 5.2.1
    • 5.2
    • 5.1
    • 5.0
    • Version 4
      • 4.14
      • 4.13
      • 4.12.1
      • 4.11
      • 4.10.1
      • 4.9.5
      • 4.9.2
      • 4.9.1
  • Legal
    • EULA
    • Privacy Policy
    • DPA, Customer and Partner Info
    • Service Level Agreement
    • Confidentiality of Campaign Data
  • When to Contact Us
    • Contact Technical Support
Powered by GitBook
On this page
  • Whitelisting Emails from Lucy
  • Bypassing Spam by Email Header
  • Addressing Suspicious Link Issues
  • Disable Warning Prompts:

Was this helpful?

  1. Guides
  2. Whitelisting a Lucy Server

Google Workspace Whitelisting

PreviousWhitelisting a Lucy ServerNextMicrosoft O365 Whitelisting

Last updated 6 months ago

Was this helpful?

Several options in Google Workspace can be adjusted to improve the phishing simulation experience with Lucy. Follow the steps below to whitelist emails and ensure they are not flagged as spam.


Whitelisting Emails from Lucy

Log into Google Admin Console:

  • Go to .

  • Navigate to "Apps".

  • Navigate to Google Workspace

  • Click on "Gmail".

  • Scroll to the bottom and select "Spam, phishing, and malware".

  • Add Lucy's IPv4 address to the "Email Allowlist".

  • Click "Save".


Bypassing Spam by Email Header

To ensure emails from Lucy are not flagged as spam, configure Google Workspace to bypass spam detection based on specific email headers.

Compliance Settings:

  • Go back to -> Google Workspace -> Gmail - Scroll to the bottom and select "Compliance".

Scroll down to "Content Compliance"

  • Click "Configure".

Add Compliance Rule:

  • Add a description (e.g., "Lucy Email Phishing").

  • Check "Inbound" and "Internal - receiving".

  • Select "If ANY of the following match the message".

  • Click "Add" → Advanced content match → Headers + Body → Contains text.

  • In "Content", input your Lucy X-Mailer Header (default is "X-Lucy-VictimUrl") and click "Save".

  • Scroll down to the "Spam" section and activate "Bypass spam filter for this message".

  • Click "Save".


Addressing Suspicious Link Issues

Sometimes, a warning pop-up window appears when trying to open a link from a Lucy email. To mitigate this:

Enable SSL in Lucy Campaign:

  • Ensure SSL is enabled in your Lucy campaign.

Consider a Paid Certificate:


Disable Warning Prompts:

If issues persist, you can disable the warning prompt for links to untrusted domains in Google Workspace. Follow these steps:

  • Navigate to "Apps".

  • Select "Google Workspace".

  • Go to "Gmail".

  • Select "Safety".

  • Go to "Links and external images".

  • Deactivate "Show warning prompt for any click on links to untrusted domains".

  • Click "Save".

If you whitelist using this method, will still not arrive because it will not contain these campaign headers.

Refer to our platform reference article on

If the Let's Encrypt certificate is not sufficient, consider obtaining a paid certificate. Contact any SSL vendor you prefer and to the campaign.

Log into .

test emails
admin.google.com
admin.google.com
campaign SSL settings.
upload your SSL certificate