Phishing Simulation
Phishing simulations that reflect how attackers actually target Indonesia
Run realistic phishing campaigns with a full send pipeline: throttled delivery, send-window control, and jitter, so simulations land the way real attacks do. Every open, click, and report is tracked in a live monitor, not a spreadsheet.
IT Helpdesk - Password Reset
IT
HR - Annual Leave Update
HR
CEO Fraud - Wire Transfer
Finance
The campaign monitor updates every 30 seconds with sent, opened, clicked, submitted, and reported counts.
Claro's campaign wizard walks you through the same steps a real phishing test requires: pick a template, choose or clone a landing page, select targets, and set a schedule, all inside a campaign state machine that moves cleanly through draft, scheduled, running, paused, and completed. Behind the wizard, a queue of delayed jobs sends each email with throttling, a defined send window, and randomized jitter, so a thousand-person campaign does not land in every inbox at the same second the way a bulk mail blast would.
Templates come from a GrapeJS-based email builder with variable substitution, backed by a growing library of 30+ localized templates across six categories, including sets built specifically for Indonesian shipping and government scenarios. When a campaign needs a matching landing page, the built-in cloner uses a headless browser to reproduce a real login page and capture any credentials a recipient submits. Before anything sends, a preflight check validates the template, landing page, recipient list, sending domain, and schedule, and flags issues like an approaching warmup limit or a template with no tracked link.
What you get
Full campaign state machine
Campaigns move through draft, scheduled, running, paused, completed, and cancelled states, so you always know exactly what a campaign is doing and can pause or resume without losing progress.
Throttled, jittered sending
BullMQ delayed jobs apply throttling, a defined send window, and randomized jitter to each recipient, so delivery timing looks like normal mail flow instead of a synchronized blast.
GrapeJS template builder with variable substitution
Build or edit bilingual email templates visually, with variables for recipient name, department, and more substituted at send time, drawing from 30+ localized seed templates across six categories.
Landing page cloning and credential capture
Clone a real login page with a headless browser and capture any credentials a recipient submits on it, giving you an accurate read on how far an attack would have gone.
Preflight validation before every send
A preflight check confirms the template, landing page, recipient list, sending domain, and schedule are all in order, and warns about warmup limits or missing tracked links before you commit.
Live monitor and exportable results
Track sent, opened, clicked, submitted, reported, and failed counts on a 30-second polling monitor, then export per-recipient results to CSV with department and device breakdowns.
Built for Indonesia
Templates and infrastructure built for the Indonesian inbox
Generic phishing platforms translate their templates as an afterthought. Claro ships 30+ templates across categories built for what Indonesian employees actually receive, including local shipping and government-service lures, and every sending domain runs through a per-domain SMTP pool with warmup advisory so campaigns behave like real, trusted mail.
- 30+ localized templates across six categories, including Indonesia-specific shipping and government sets
- Per-domain SMTP pool with warmup advisory and hard-bounce suppression
- On-premise deployment option for institutions that cannot send simulation traffic through a third-party cloud
Frequently asked questions
Claro ships a growing library of 30+ localized templates across six categories, including IT/helpdesk, HR, finance, Microsoft 365/Google, and sets built specifically for Indonesian shipping and government scenarios. You can also build your own with the GrapeJS editor.
Related pages
Security Awareness Training
Bilingual micro-learning with four card types, SCORM 1.2 support, learning paths, and game-based drills that build lasting recognition skills.
Learn moreCompliance Reporting
Map simulation and training data directly to OJK, ISO 27001, NIST CSF, and PDPA, then generate board-ready PDF and evidence packages in minutes.
Learn moreOn-Premise & Data Residency
Deploy Claro entirely on your own infrastructure with per-tenant encryption, crypto-erasure, and configurable retention, no required third-party data egress.
Learn moreSee it running on your own domain
Book a walkthrough with our team and we'll show you this capability configured for your organization's compliance requirements and language needs.
Book a walkthrough