What I like the most about PhishER is the automation functionality when creating the rules. The ability for us to create rules and automate certain actions based on the rules makes reviewing the reported emails much easier for our team. Review collected by and hosted on G2.com.
What I dislike about PhishER is that it doesnt have the ability to automatically quarantine a confirmed phishing email. In this use case where a phishing campaign is sent out to users and I find it on phishER and phishRIP all the emails and quarantine them, if the same email is sent again later, it does not automatically quarantine it based on past actions to that email. Another thing is that when a phishing campaign is sent to our users and they all report it, it shows that one email reported by so many multiple users - it would be nice if the system could detect that all the reported emails were part of the same campaign and maybe just have the campaign in the inbox where we could click it to see all the reported emails. Both dislikes are fairly minor but just things that could improve the experience of the admins who review the emails. Review collected by and hosted on G2.com.
Thank you for highlighting how our automation rules are helping your team work more efficiently! We appreciate your thoughtful suggestions about automatic quarantine based on past actions and campaign-level grouping of duplicate reports. These are exactly the kinds of insights that help us understand real-world admin workflows, and we're always looking for ways to make threat management even more streamlined for security teams like yours.
