Security Awareness SaaS  ·  Automated Micro-Training  ·  Enterprise Ready

Eliminate Employee
Phishing Risk before
attackers strike.

Run automated simulated phishing campaigns across email, QR codes, and vishing. Anyone who fails is automatically enrolled into 3-minute interactive remediation training within seconds.

100% Automated Auto-Remediation
Instant Online Razorpay Checkout
ISO 27001 & SOC 2 Audit Ready
PhishShield Simulator
LIVE CAMPAIGN
From: security-notice@internal-payroll-portal.com
[ACTION REQUIRED] Verify Annual Tax Form
Your W2 / Tax Document is ready. Click below to verify your login credentials before end of day...
Failed → Auto-Enrolled Reported via Plugin
Fail Rate: 14.2%2.1% 90-Day Protection
Real-World Security Impact

Why employee training is your
first line of cyber defense.

Phishing accounts for the vast majority of initial enterprise breaches. Here is how continuous simulation changes user behavior.

88% [VERIFY STAT]
Breaches Start via Email
Of enterprise data breaches originate from employee phishing or social engineering lures.
3.4x [VERIFY STAT]
Risk Reduction in 90 Days
Reduction in suspicious link click rates across departments within 3 months of monthly testing.
94% [VERIFY STAT]
Auto-Remediation Rate
Of employees who fail a simulation complete their 3-minute micro-training lesson within 48 hours.
< 5 min [VERIFY STAT]
Campaign Setup Time
Average time required to select a phishing template, target departments, and schedule execution.
Comprehensive Platform Scope

Everything needed to test, train,
and audit your workforce.

Campaign Builder
Drag-and-drop phishing email campaign creator with custom sending schedules and randomized delivery windows.
Landing Page Builder
Pixel-perfect login clones for simulated credential harvesting to test password submission risks safely.
Target & User Management
Bulk CSV employee import, department tagging, custom user groups, and granular administrative role scoping.
Delivery & Tracking Engine
Real-time email delivery, open rate, link click rate, and credential submit analytics per recipient.
Executive Reporting Dashboard
CISO-level risk score trends, departmental vulnerability benchmarks, and exportable PDF audit summaries.
Auto-Training on Fail
Instant auto-enrollment into 3-minute interactive micro-training lessons immediately upon clicking a simulated link.
QR Code Phishing (Quishing)
Simulated malicious QR codes printed on flyers or embedded in emails to test mobile phone scanning risks.
Vishing (Voice Phishing)
Automated AI voice calls testing whether employees reveal sensitive OTPs or executive credentials over the phone.
Calendar-Invite Phishing
Simulated calendar meeting invites with embedded payload links to test calendar sync vulnerabilities.
USB Drop Tracking
Trackable USB drives dropped in physical offices to audit compliance with hardware media safety policies.
Gamification & Leaderboards
Department security badges, positive reporting rewards, and friendly company-wide risk reduction leaderboards.
AI Template Generator
LLM-generated email variants automatically tailored to specific employee job roles, departments, and vendor names.
AI Adaptive Difficulty
Adaptive simulation difficulty that increases complexity for power users while reinforcing basics for repeat clickers.
Single Sign-On (SSO)
SAML 2.0, Okta, Azure AD (Entra ID), and Google Workspace enterprise authentication integration.
API & Webhooks
REST API and real-time event webhooks to stream click data directly into your SIEM or SOC analytics platform.
Full White-Labeling
Custom domain branding, white-labeled training portal, custom sender addresses, and custom logo headers.
Automated HRIS Sync
Automated employee onboarding/offboarding sync via Workday, BambooHR, Rippling, and HiBob integrations.
Incident Response Routing
Automated ticket creation and escalation in Jira, ServiceNow, or Slack whenever users report real phishing.
ISO 27001 & SOC 2 Audit Trail
Complete immutable audit logs mapping employee participation directly to ISO 27001, SOC 2 Type II, and HIPAA compliance.
Streamlined Workflow

How PhishShield AI works in 4 simple steps.

STEP 01
Import & Sync Users
Upload employee emails via bulk CSV or connect automated HRIS sync (Workday, Okta, BambooHR).
STEP 02
Launch Simulation
Select from 500+ realistic email/QR templates or generate custom AI scenario variants.
STEP 03
Track Real-Time Risk
Monitor open rates, link clicks, and credential submissions live on your executive dashboard.
STEP 04
Auto-Train Failures
Users who fall for the simulation are instantly enrolled into a 3-minute interactive micro-lesson.
Transparent Tiered Pricing

Calculate your annual subscription fee. [CONFIRM PRICING]

Transparent pricing based on your active employee count. Minimum order value of ₹15,000/year applies to smaller teams.

seats
10 seats 250 500 1,000 2,500+
Pricing Tier Breakdown [CONFIRM PRICING]
• 10 – 50 employees: ₹499 / emp / yr
• 51 – 200 employees: ₹399 / emp / yr
• 201 – 500 employees: ₹299 / emp / yr
• 501 – 1,000 employees: ₹249 / emp / yr
• 1,001+ employees: ₹199 / emp / yr (Above 2,000: Contact for Enterprise quote)
TIER 2 RATE: ₹399 / EMP / YEAR
39,900
~ ₹33.25 per employee / month (Billed Annually)
Minimum annual order value of ₹15,000 applied.
INCLUDED AT 150 SEATS:
SSL Encrypted · Official Server Price Verification
Frequently Asked Questions

Got questions about PhishShield AI?

  • How does the billing cycle work? [LEGAL REVIEW]
    +
    Subscriptions are billed annually upfront based on your active employee count. Minimum order value of ₹15,000 per year applies for smaller teams.
  • What happens immediately after payment?
    +
    You receive an instant payment confirmation and order ID. Our security onboarding team reaches out to your designated contact within 1 business day to assist with domain whitelisting, HRIS integration, and initial campaign launch.
  • Can employee seats be changed later?
    +
    Yes! You can add employee seats at any time during your billing cycle directly from the CISO admin dashboard. Additional seats are charged pro-rata for the remaining period.
  • How is employee data protected? [LEGAL REVIEW]
    +
    We enforce 256-bit AES encryption at rest and TLS 1.3 in transit. All data is processed strictly for security awareness simulations and never shared or resold to third parties.
  • What is the cancellation and refund policy? [LEGAL REVIEW]
    +
    We offer a 30-day 100% money-back guarantee for initial deployment onboarding. If you are not satisfied with campaign delivery or risk reporting within 30 days, contact hello@99craft.in for a full refund. [LEGAL REVIEW]
  • Will simulated emails get blocked by Microsoft 365 or Google Workspace?
    +
    Our onboarding guide provides step-by-step IP and header whitelisting guides for Microsoft 365, Exchange, and Google Workspace so simulated phishing bypasses spam filters cleanly without affecting external email deliverability.