People risk

Phishing testing

Run authorized awareness campaigns that look like your organization — then measure who opens, clicks, submits, and completes training. Phishing simulator and narrative campaigns are part of the operator workflow.

Brand-matched drafts

AI templates from your website

Enter a company name and public site. ParityPT pulls accent colors, fonts, and logo, then drafts email and login-page copy you can review before send.

  • Logo, brand colors, and font stack on email and capture pages
  • Editable subject, body, CTA, and fake-login labels
  • Save as template / My templates (tenant library — copy only, not SMTP or recipients)
  • Cosmetic display URL optional — tracking stays on your phish host

Measurement

Pixel opens, clicks, and submissions

Campaign SMTP delivers messages with open tracking, click redirects, and optional credential-capture landings. Passwords are discarded by default. Operators may explicitly retain encrypted submissions for authorized follow-on testing.

  • Opened / clicked / landed / submitted / trained events per target
  • Bounce-aware send stats for operators
  • Training ack page after the exercise

Build Your Own Narrative

Phishing → Purple Teaming → Ransomware

Chain a people-risk opener into purple teaming ATT&CK stages, then unlock ransomware Impact when the story calls for it — same project timeline, milestone unlocks. See Build Your Own Narrative.

  • Auto-unlock purple teaming on click, submit, or train milestones
  • Ransomware stage unlocks when purple teaming completes
  • Operators stay in control — unlock notifies; play stays intentional

Use phishing testing only on users you are authorized to assess. See the ParitySH license.