> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cimento.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Phishing simulation overview

> How Cimento phishing simulations work across email, SMS and voice, and what a security admin configures to run them.

Cimento phishing simulations test how employees respond to realistic social-engineering attempts and route the result into training. Simulations can arrive by email, SMS, voice call, or as a multi-channel scenario that chains them.

## What you configure

| Area | Where | What it does |
| - | - | - |
| Email delivery | Admin → Integrations → Phishing | Connects Google Workspace or Microsoft 365 so simulations are placed directly in employees' inboxes. |
| Phone enrollments | Admin → Integrations → Messaging & SMS | Enrolls employee phone numbers for SMS and voice simulations. |
| Templates | Admin → Phishing → Templates | Your library of lures, landing pages and awareness pages, seeded from the Cimento gallery or built from scratch. |
| Campaigns | Admin → Phishing → Campaigns | Targets a template at departments, groups or individuals over a schedule and tracks who opened, clicked, submitted or reported. |
| Analytics | Admin → Phishing → Analytics | Results by campaign, department and employee, feeding Cimento's risk scoring. |

## Channels

* **Email** is placed directly in each employee's inbox through the Gmail API for Google Workspace, or Microsoft Graph for Microsoft 365. Nothing crosses your mail gateway, and the message renders exactly as a real attack would.
* **SMS** and **voice** simulations go to phone numbers you enroll. Cimento operates the sending numbers; you do not need a carrier or telephony account.
* **Multi-channel** scenarios combine the above, for example an SMS that sets up a follow-up call.

## Setup at a glance

<Steps>
  <Step title="Connect email delivery">
    Follow the [Google Workspace](/integrations/google-workspace#deliver-phishing-simulations) or [Microsoft 365](/integrations/microsoft-365) guide.
  </Step>

  <Step title="Enroll phone numbers (optional)">
    Enroll employees whose phone numbers come from your directory, to enable SMS and voice channels. See [SMS and voice](/phishing/sms-and-voice).
  </Step>

  <Step title="Set up reporting (optional)">
    For Outlook, deploy the [Phish Alert Button](/integrations/outlook-phish-alert-button) so employees can report suspicious email to your security team.
  </Step>

  <Step title="Run a pilot campaign">
    Pick a gallery template, target one small group of employees, and review results before widening. See [Campaigns](/phishing/campaigns).
  </Step>
</Steps>
