---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Install and configure PhishTank

# Install and configure PhishTank {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Before you run the integration on your instance, complete the installation and
configuration steps so the PhishTank
application properly integrates with ServiceNow AI Platform
Security Operations.

## Before you begin

Complete the following setup checklist before installation. These setup tasks are required for a smooth installation and configuration. {#install-and-configure-phishtank__table_xxz_jyj_4cb__entry__2}

| Setup tasks | Description |
|-|-|
| Verify that you have assigned the required ServiceNow AI Platform roles for your instance. | The following roles are required for installation, configuration, and verification of expected results: * The System Administrator (admin) installs the app and assigns the Security Incident Administrator (sn_si.admin) role. * The Security Incident Administrator (sn_si.admin) oversees the configuration and verifies the expected results. This role also has access to the Security Operations module. {#install-and-configure-phishtank__ul_wnc_15r_tcb} |
| Obtain an API key. | Visit the PhishTank website for information on API keys and to create an account: [PhishTank website](https://www.phishtank.com/developer_info.php). |
| Verify that the ServiceNow core applications that are required to support the integration are installed and activated before you install the application for the integration. | Madrid and later release requirements For the Madrid release and later family releases, the Security Incident Response Dependency plugin (com.snc.si_dep) is required. This plugin automatically installs all the dependencies that are required to support the Security Incident Response product. Install and activate this plugin before you install and activate the other Security Operations applications required by the integration. Verify that the following Security Operations applications are installed and activated from the ServiceNow Store. If not installed, install and activate one application at a time in the following order to ensure a smooth installation. 1. Security Incident Response 2. Security Integration Framework 3. Security Support Common 4. Security Support Orchestration {#install-and-configure-phishtank__ol_qwy_vrt_fhb} For more information on setting up your ServiceNow AI Platform instance for the integration, see [Get entitlement for a Security Operations product or application](https://servicenow-prod.fluidtopics.net/ZZVMDPCDs~BwBGv0OAhjuA "The first step in installing a Security Operations application is to verify that the application or the product and its associated applications have valid ServiceNow entitlements.") and [Activate a ServiceNow Store application](https://servicenow-prod.fluidtopics.net/RFo48XO5_M32aNft7_tP2A "After an application has been given entitlement, you must activate its dependencies plugin and activate the application. This process also applies to applications downloaded to sub-production instances."). |
[ ]

{#install-and-configure-phishtank__table_xxz_jyj_4cb}

Role required: admin

## Procedure

1. If you have not installed the application for the integration, see [Install a Security Operations integration](https://servicenow-prod.fluidtopics.net/dIzJWROPdytPu1FmtvPx3w "All ServiceNow integrations are available on the ServiceNow Store. Core applications, such as Security Incident Response, are visible in the ServiceNow Products tab on the store. Integration add-ons are visible in the Certified Apps tab.") and follow the steps to install it.
2. After the installation completes, navigate to IntegrationsIntegrations Configurations and locate the PhishTank tile.
3. Select Configure.  
4. In the PhishTank Configuration dialog box, enter the Name of the configuration, the Username (developer account created in PhishTank), and the API key you obtained from the PhishTank website and select Submit.  
5. Verify successful configuration.  
   Configuration is successfully completed unless an error message is displayed.

   If an error message is displayed during the configuration, the
   PhishTank API key may
   be invalid.
**Previous topic:** [PhishTank integration](https://servicenow-prod.fluidtopics.net/x48Ab7RMcFti_XQ5oiZiHQ "PhishTank is a community-based phishing verification system into which users submit suspected threats, and other users in the system vote to determine whether the phishing threats are legitimate. When integrated with the ServiceNow AI Platform Security Operations product, the threat intelligence results provide analysts with additional insight into phishing-related security incidents or investigations.")  
**Next topic:** [Verify expected results for PhishTank](https://servicenow-prod.fluidtopics.net/n4piqLxwPycCd0k1_dvTxQ "Observables are generated automatically by a security incident and scanned by the application. Lookup results are displayed on the Threat Lookup Results tab at the bottom of the security incident record.")

*[\>]: and then


