What this tells you
Whether a user tends to open phishing simulation emails, which is a direct signal of susceptibility to real phishing attempts.
What this can’t tell you
- Cannot report on phishing emails that are not part of a simulation programme.
- Cannot confirm whether an opened email led to credential entry or further action.
- Does not capture users who reported the simulation (Threat Submission API not integrated).
How we describe it
Shows whether this user has opened phishing simulation emails, which is a signal of susceptibility to real phishing attempts.