Phishing Simulation

Filtering and Downloading Campaign Reports

Filtering and Downloading Campaign Reports

Overview

After a campaign ends, the detailed report tells you exactly who did what — who clicked, who reported, who submitted data, and who ignored the simulation entirely. This page explains how to access, filter, and export that data.


Accessing campaign reports

  1. Click Reports in the left sidebar (or navigate from the campaign detail view)
  2. Click Campaign Report
  3. A list of all your campaigns appears — click the one you want to analyse

Understanding the report view

The report shows every tracked event for the campaign. Each row represents one interaction:

Column What it shows
Target name / email Who the event belongs to
Event type What happened (Sent, Opened, Clicked, Submitted, Reported)
Timestamp When it happened
IP address Where the event came from
User agent Browser/OS at the time of the event

Filtering your results

Use filters to focus on the data you need:

Filter by campaign Select one or more campaigns to view. Comparing multiple campaigns side by side shows your progress over time.

Filter by target Narrow down to specific individuals — useful when following up with a manager about a specific user's performance.

Filter by event type

Event type Filter to see
Sent All targets who received the simulation email
Viewed Targets who opened the email (pixel tracked)
Clicked Link Targets who clicked the simulation link — your primary phish rate metric
Form Submitted Targets who submitted data on a landing page
Enter Data Targets who entered information in a vishing simulation

Filter tip: Start by filtering to Clicked Link to get your list of users who need training. Then filter to Reported to see your security advocates — users worth recognising.


Exporting the report

  1. Apply your filters
  2. Click Download
  3. The report downloads as a CSV file

The CSV is clean and structured for easy analysis in Excel, Google Sheets, or import into your SIEM or GRC platform.


What to do with the export

Training assignment list Filter to "Clicked Link" and export — this is your training assignment list. Upload it to your training platform or use it to assign courses in PhishGrid's Training module.

Management report Export summary metrics across multiple campaigns and drop them into a management report template. See Reporting to Management for a ready-to-use format.

Compliance evidence Store campaign exports with your security documentation as evidence that simulations and training occurred. Many frameworks (ISO 27001, SOC 2, NIST) require this.

Trend analysis Export the same campaign type run quarterly to show click rate progression over time.


Handling exported data

Campaign reports contain information about individual employee behaviour. Treat them with the same care as any HR-adjacent data:

  • Store in a secure location (not a shared drive accessible to all)
  • Share on a need-to-know basis
  • Follow your organisation's data retention policy
  • Delete exports that are no longer needed for reporting or compliance