Hi,
We are running O365 ATP and we are trialing Phish Threat. Due to the Sandboxing nature of ATP (and any sandbox service really) it marks the campaign emails as 'opened' and 'macro enabled' before it even gets to the user after it is tested in the detonation\sandbox environment.
Any way to avoid these being marked as opened\enabled? Can you ignore the sandbox tests somehow?
This thread was automatically locked due to age.