Skip to content

Create and Deploy Honeytokens Enterprise

This guide walks through honeytoken creation in the Trapster dashboard. Each type has its own deployment guide with placement examples.

Before you start

  • You need Administrator or Member role to create honeytokens
  • If your organization uses namespaces, the honeytoken is created in the namespace currently selected in the sidebar switcher

Types

When you create a honeytoken, you pick a template from the catalog. Each template produces a different kind of decoy. Filter by All, File, Anti-phishing, or Other.

Template catalog

TypeCategoryWhat you getDeploy guide
URLOtherA unique linkURL
URL (redirect)OtherA link that redirects after triggeringURL (redirect)
QR CodeOtherA scannable QR code image (PNG)QR Code
QR Code (redirect)OtherA QR code that redirects after triggeringQR Code (redirect)
Microsoft WordFileA .docx documentWord
Microsoft ExcelFileAn .xlsx spreadsheetExcel
Microsoft PowerPointFileA .pptx presentationPowerPoint
JS CloneAnti-phishingA JavaScript snippetJS Clone

Choosing the right type

Create a honeytoken

1. Open the honeytoken section

Either:

  • Go to Honeytokens in the sidebar and click Add Honeytokens, or
  • On the Incidents page, click Create on the honeytokens summary card

Honeytoken dashboard

2. Browse the template catalog

Use the search box or category filters (All, File, Anti-phishing, Other) to find the type you want. Click a template to select it.

TypeCategoryDeploy guide
URLOtherURL
URL (redirect)OtherURL (redirect)
QR CodeOtherQR Code
QR Code (redirect)OtherQR Code (redirect)
Microsoft WordFileWord
Microsoft ExcelFileExcel
Microsoft PowerPointFilePowerPoint
JS CloneAnti-phishingJS Clone

3. Configure the honeytoken

Every honeytoken requires a Note : a short reminder of where you placed it. This note appears in incidents when the honeytoken triggers.

Examples:

  • "Placed in SharePoint /Finance/Q4 folder"
  • "QR code on lobby poster, building A"
  • "Embedded in login page head section"

Extra options depend on the template. See the deploy guide for your type.

4. Create and retrieve your asset

Click Create. After creation, you are given the honeytoken to download or copy and told what to do next:

TemplateWhat you get
URL, URL (redirect)Copy the Token URL
QR Code, QR Code (redirect)Download the QR code image (PNG)
Word, Excel, PowerPointDownload the document file
JS CloneCopy the JavaScript code

Click Create new to make another honeytoken of the same or a different type.

What happens when a honeytoken triggers

  1. Trapster records the interaction (source IP, timestamp, and any fingerprint data if enabled)
  2. A new incident appears on the Incidents page
  3. The honeytoken's trigger count increases on the Honeytokens list
  4. If you configured notifications, email or webhook alerts are sent according to your settings

Next steps

  • Monitor triggers : review event logs and IP analysis on the detail page
  • Incidents : acknowledge and investigate triggered honeytokens