AutomationMart
Home/Browse/Report spam and phishing URLs from IMAP mailboxes to Spamhaus
n8n

Report spam and phishing URLs from IMAP mailboxes to Spamhaus

n8nn8n14 modulesv1.0
UNSUPPORTED_SLUG_FORMAT

This workflow automates URL reporting to Spamhaus based on incoming spam/phishing sample emails. It watches one or more IMAP folders, extracts URLs from each email body, removes duplicates and common noise, and submits the remaining URLs to the Spamhaus submission API with the appropriate threat context. What it does - Monitors one or more IMAP mailboxes/folders containing abuse samples (spam/phish). - Processes each email individually in a loop. - Extracts and normalizes URLs from the email tex

At a glance

Report spam and phishing URLs from IMAP mailboxes to Spamhaus is a ready-made n8n workflow you import as a workflow JSON file — no build required. It connects UNSUPPORTED_SLUG_FORMAT. It's free to download. Follow the 5-step import below to go live in minutes.

Platform
n8n
Connects
UNSUPPORTED_SLUG_FORMAT
Modules
14
Price
Free
Version
v1.0
Report spam and phishing URLs from IMAP mailboxes to Spamhaus workflow diagram

About this workflow

This workflow automates URL reporting to Spamhaus based on incoming spam/phishing sample emails. It watches one or more IMAP folders, extracts URLs from each email body, removes duplicates and common noise, and submits the remaining URLs to the Spamhaus submission API with the appropriate threat context. What it does - Monitors one or more IMAP mailboxes/folders containing abuse samples (spam/phish). - Processes each email individually in a loop. - Extracts and normalizes URLs from the email text. - De-duplicates URLs (per run) and filters out common false positives (images, tracking pixels, privacy/imprint pages). - Submits each URL to Spamhaus via POST /portal/api/v1/submissions/add/url. - Optionally runs: - mail-specific jobs (per email) for enrichment, logging, ticketing, notifications, etc. - run-specific jobs (once per workflow execution) for summaries, metrics, cleanup, or follow-up workflows. How it works (high level) 1. IMAP triggers fetch new messages from configured folders. 2. An initial Set node attaches metadata such as: - threattype (e.g., spam or phish) - reason.url (human-readable reason for the submission) 3. SplitInBatches loops over each email. 4. A Code node extracts all URLs from the email body, normalizes them, and removes obvious noise (e.g., trailing punctuation). 5. Remove Duplicates clears dedupe history and ensures only unique URLs are processed per run. 6. URLs are split into single items, filtered, and then packaged into the Spamhaus request body. 7. HTTP Request submits each URL to Spamhaus. 8. Aggregate collects results, enabling optional per-run actions at the end. Extending with more IMAP triggers You can add as many additional IMAP triggers as needed. To do so, connect each new IMAP trigger to the same initial Set node (or duplicate that Set node per trigger) to define the correct threattype and reason.url. The downstream flow stays unchanged. Customization points - Threat classification: Adjust threattype and reason.url in the initial Set nodes. - URL extraction rules: Update the regex and normalization logic in extract all URLs. - Filtering: Extend the filter regex to exclude additional benign paths/domains. - Per-email actions: Add nodes or call a sub-workflow from add mail specific job. - Per-run actions: Add nodes after the loop to add run specific job (summaries/metrics/cleanup). Requirements - An IMAP account with access to the folders containing sample emails. - A Spamhaus API credential (configured as an HTTP Header Auth credential in n8n). - n8n credentials set up for: - IMAP - HTTP Header Auth (Spamhaus) Notes - Ensure run-specific logic is connected to the loop’s done / “No items left” output so it runs once after all emails are processed (not per email). - This workflow only extracts URLs from the email text content. If you need URL extraction from HTML parts or attachments, extend the extraction step accordingly.

n8n

How to import this n8n workflow

  1. 1

    Download the workflow JSON file after purchase.

  2. 2

    Open n8n → click the menu → Import from File.

  3. 3

    Select the downloaded JSON and import.

  4. 4

    Set up credentials for each node that requires them.

  5. 5

    Click Execute Workflow to test, then activate.

Setup guide

Setup guide included

Purchase to unlock the full step-by-step guide

Related N8n workflows

Get Google search results (SERPs) for SEO research

Use Case Research search engine rankings for SEO analysis: - You need to track keyword rankings for your website - You want to analyze competitor positions in search results - You need data for SEO competition analysis - You want to monitor SERP changes over time What this Workflow Does The workflow uses ScrapingRobot API to fetch Google search results: - Retrieves SERP data for your target keywords - Captures URL rankings and page titles - Processes up to 5000 searches with free account - Organ

Free

Create AI-ready vector datasets from web content with Claude, Ollama & Qdrant

AI-Powered Web Data Pipeline with n8n How It Works This n8n workflow builds an AI-powered web data pipeline that automates the entire process of: - Extraction - Structuring - Vectorization - Storage It integrates multiple advanced tools to transform messy web pages into clean, searchable vector databases. Integrated Tools - Scrapeless Bypasses JavaScript-heavy websites and anti-bot protections to reliably extract HTML content. - Claude AI Uses LLMs to analyze unstructured HTML and generate c

Free

Get Malaysia tax ID number (TIN) for multiple business reg num (SSM) or NRIC

BACKGROUND Malaysia's Inland Revenue (LHDN) provides an API to get the tax id number for a business entity, based on a given Business Registration number (BRN or SSM), or NRIC (MyKad). PROBLEM However, the API only allows one search at a time. SOLUTION This free workflow lets you do a batch search to get TIN for multiple SSM or NRIC. This is useful if you need to prepare your internal DB for e-invoicing PRE-REQUISITES 1) Get your connection client id and client secret from myhasil.gov.my websi

Free

Automate time tracking enforcement & cleanup for Awork tasks

This workflow offers several additional features for time tracking with Awork: Check whether time has been tracked when closing a task. If not, the task is reopened and the user is notified. This can be restricted to specific tasks using tags. Enforce a minimum time entry for tasks to comply with "at least 15-minute intervals are billed" policies. This can also be limited to specific tasks by using tags. Clean up time entries to match billing intervals. Add a start time to time entries if it

Free

Host your own JWT authentication system with Data Tables and token management

Description A production-ready authentication workflow implementing secure user registration, login, token verification, and refresh token mechanisms. Perfect for adding authentication to any application without needing a separate auth service. Get started with n8n now! What it does This template provides a complete authentication backend using n8n workflows and Data Tables: - User Registration: Creates accounts with secure password hashing

Free

Create a new contact in Vyfakturuj.cz from a Google Contact

When a new contact is created in Google Contacts, a new contact is created in Vyfakturuj.cz.

Free

Create YouTube videos daily from Google Sheets using MagicHour + Gemini

Prompt To Video (MagicHour API) with Music & YouTube Automate AI video creation, background music, YouTube uploads, and result logging — all from a single text prompt. ⚡ Overview This n8n template turns a text prompt into a complete AI-generated video using the MagicHour API, adds background music, generates YouTube metadata, uploads to YouTube, and logs results in Google Sheets — all in one flow. Perfect for creators, marketers, and startups producing YouTube content at scale — from daily AI Sh

Free

Perform SEO keyword research & insights with Ahrefs API and Gemini 1.5 Flash

This n8n workflow automates SEO keyword research by querying the Ahrefs API for keyword data and related keyword insights. The enriched data is then processed by an AI agent to format a response and provide valuable SEO recommendations. Perfect for SEO specialists, content marketers, digital agencies, and anyone looking to gain valuable insights into keyword opportunities to boost their rankings. --- ⚙️ How This Workflow Works This workflow guides you through the entire SEO keyword research proc

Free

Reviews

No reviews yet

Be the first to buy and share your experience.

Leave a review

Sign in to share your experience with this workflow.

Log in to review
Free
No ratings yet

Create a free account to purchase workflows.

  • JSON blueprint — instant download
  • Setup guide PDF included
  • 5 downloads · valid 30 days
  • Works with n8n

Need help setting this up?

Book a 3-hour live setup session with an Agility consultant.

₹2,499/ session
3 hrs · video call
  • Configure live on Google Meet / Zoom
  • Free follow-up if workflow has defects
  • Platform expert assigned to you
Book installation session
Free