Skip to main content
Platform · Human layer
CollarPowered by TechSuit

Turn your team into your first line of defence.

Phishing simulations, just-in-time training, and a report-phish inbox that actually works. Every employee becomes part of your first line of defence.

See pricing
What it does

Simulate · Train · Measure

Simulate

Real-threat templates - invoices, MFA prompts, vendor swaps, OTP requests.

Microsoft 365 · Google Workspace · SSO

Train just-in-time

Someone clicks? They get a 90-second lesson instead of a shaming email.

Just-in-time · multilingual

Measure

Per-user risk score, 90-day trend, and audit-ready evidence for regulators.

GDPR · ISO 27001 · NIS2
Why it's different

Because most awareness tools don't change behaviour.

A boring annual video teaches no one to spot a phish. We built the opposite - real practice, at the right moment, with no shame.

Typical awareness tool

Collar · by TechSuit

A one-hour annual video everyone skips through.

Real practice every month + a 90-second lesson only when needed.

People who fail get a shaming email from IT.

A soft landing: 'this was a simulation' - no blame, no shame.

English-only - wrong for your market.

Hebrew-native templates: Bituach Leumi, banks, CEO fraud, Israel Post.

No evidence for an audit.

Per-user risk scores and evidence ready for ISO 27001.

Email only.

Email, SMS and WhatsApp - because that's how attackers really work.

The real dashboard

Exactly what you see when you log in.

The same view every client sees - risk trending down, live campaigns, and a report rate climbing.

Click-rate

Average drop of 60-75% within 90 days of launch.

Report-rate

Smart inbox - every report filtered and verified automatically.

Role-aware

Different tracks for finance, sales, leadership, engineering.

Real-world outcomes

0%
Click-rate drop
0%
Report rate
0.0m
Avg. report time
0
Active users

Before and after

The same 42 people. Different behaviour.

Two campaigns against the same group: one at baseline, one after 90 days of practice and just-in-time training. The thin amber ribbon is who clicked. The wide teal one is who reported.

Baseline campaign · before
  • Sent → Delivered41
  • Delivered → Opened39
  • Opened → Ignored18
  • Opened → Reported (16)14
  • Opened → Clicked7
  • Clicked → Credentials entered5
  • Delivered → Reported (16)2
  • Clicked → Caught themselves2
  • Sent → Filtered1

7 of 42 clicked, 5 entered credentials, 16 reported.

Sankey flow of one phishing simulation: 42 recipients sent, 39 opened, 7 clicked, 16 reported, 5 entered credentials. Shows where behaviour splits between reporting and clicking.
FromToRecipientsShare of sent
SentDelivered4197.6%
SentFiltered12.4%
DeliveredReported (16)24.8%
DeliveredOpened3992.9%
OpenedReported (16)1433.3%
OpenedIgnored1842.9%
OpenedClicked716.7%
ClickedCaught themselves24.8%
ClickedCredentials entered511.9%
Latest campaign · after 90 days
  • Sent → Delivered41
  • Delivered → Opened33
  • Opened → Reported (29)21
  • Opened → Ignored10
  • Delivered → Reported (29)8
  • Opened → Clicked2
  • Sent → Filtered1
  • Clicked → Caught themselves1
  • Clicked → Credentials entered1

2 of 42 clicked, 1 entered credentials, 29 reported.

Sankey flow of one phishing simulation: 42 recipients sent, 33 opened, 2 clicked, 29 reported, 1 entered credentials. Shows where behaviour splits between reporting and clicking.
FromToRecipientsShare of sent
SentDelivered4197.6%
SentFiltered12.4%
DeliveredReported (29)819.0%
DeliveredOpened3378.6%
OpenedReported (29)2150.0%
OpenedIgnored1023.8%
OpenedClicked24.8%
ClickedCaught themselves12.4%
ClickedCredentials entered12.4%

Plugs into the email + identity tools you already use

Microsoft 365Google WorkspaceSlackTeamsEntra ID

Frequently asked

Yes, when run under a documented security-awareness program. We help you draft the policy and align with HR.