Skip to main content

Communication: Initial Search View (Basic)

Communication: Initial Search View (Basic)

H
Written by Harriet Christie

Summary

Communication: Initial Search View (Basic)

Prerequisites

  • Access to MirrorWeb Insight and relevant permissions for this workflow.

Step-by-Step Instructions

Summary / Purpose

This article explains how to construct a new compliance search in MirrorWeb’s Communications dashboard. It walks users through using the search filters to retrieve archived communications across platforms and how to save or estimate the results effectively.

Step-by-Step Instructions

1. Navigate to the Search Page

From the MirrorWeb dashboard, go to: Dashboard > Communications > Search > New

This opens the Basic tab of the search interface.

2. Set Up Your Search Filters

Terms

  • Choose a field to search: All fields, Subject, Body, etc.

  • Enter relevant keywords or phrases (e.g., "insider trading")

People

  • Filter by Senders and/or Recipients email addresses

  • You can toggle recipient filtering between "Any" or "All" if using multiple addresses

  • Please note: If you enter the same person in both the Senders and Recipients fields, the search will only return messages where that person sent a message to themselves, not all messages they sent or received.

Platforms

  • Select one or more communication platforms (e.g., Email, Slack, Teams) to narrow your search scope

Date Range (Required)

  • Select a start and end date

  • Or use one of the quick-select options: Today, Yesterday, Last Week

  • This sets the bounds of your search query

Flagged Messages

  • Choose whether to search:

    • All messages (default)

    • Only flagged messages

    • Only unflagged messages

Message Filtering

  • Optionally check Include privileged addresses to include communications flagged as privileged (e.g., legal, confidential)

Sampling

  • Apply a sample size to reduce the result set if needed.

    • Choose Percentage or Fixed count (e.g., 10%, 100 messages)

    • Default is 100%, meaning the entire result set is returned

Sort By

  • Choose to view results by:

    • Newest first (default)

    • Oldest first

3. Run or Save the Search

Once filters are set:

  • Estimate: Click this to generate a preview estimate of how many messages match your criteria—before actually running the search.

  • Save Template: This saves your current filter configuration so you can reuse it for future searches.

  • Search: Runs the search and returns matching communications.

  • Save to Vault: Use this to archive and preserve the search results for formal investigations, audits, or legal review.

Note:

  • Start with broader filters to preview the scope of your results with Estimate, then narrow down.

  • Save reusable templates to streamline recurring audits or investigations.

  • When reviewing large datasets, use sampling to test filters before scaling up.

Important:

If your search yields no results:

  • Double-check that the date range includes expected messages.

  • Ensure your keywords match message content (try fewer or broader terms).

  • Make sure the platforms selected actually contain archived messages from that time period.

  • Consider running the search with privileged addresses enabled if you expect confidential comms.

Did this answer your question?