You clicked a simulated phishing link sent by your security team.
Don't worry: this was only a training exercise.
You are safe. There was no real payload. This link only recorded the click
for training metrics — nothing was downloaded, installed, or executed, and no
real attacker was involved.
{% if template %}
Red flags in the "{{ template.subject }}" message
{% for f in template.red_flags %}
⚑ {{ f }}
{% endfor %}
{% endif %}
What to do next time
Pause on urgency, money requests, and credential prompts.
Check the real sender domain and hover links before clicking.
Use the Report Phish button in your mail client — reporting raises your training score.