Simulate
Build an authorized scenario with targets, templates, delivery profiles, landing pages, and optional stages.
TaiGong gives security teams one operating loop to design authorized phishing exercises, observe employee behavior, prioritize risk, connect results to licensed targeted training, and review improvement—through managed SaaS or self-hosted deployment.
Basic campaign tools stop at delivery and click counts. TaiGong connects simulation design, live behavioral evidence, risk analysis, targeted training, and follow-up in one operating model.
Build an authorized scenario with targets, templates, delivery profiles, landing pages, and optional stages.
Follow delivery, opens, clicks, submissions, reports, and available environment evidence.
Review individual, departmental, and campaign risk instead of relying on one percentage.
Move higher-risk users into focused awareness training when the licensed module is enabled.
Use later exercises and reviewable automation history to measure operational change.
TaiGong separates the core email workflow from licensed modules and advanced controls. The public support matrix states exactly what version 1.3.4 supports today.
Review campaign events and timelines. Licensed environment analysis can help label gateway, scanner, prefetch, cloud, device, and network signals so automated traffic is not mistaken for employee behavior.
Use core scoring and evidence, with licensed advanced analytics, department views, awareness training, and PDF reporting where enabled.
Time- and event-based rules, multi-stage orchestration, scheduled jobs, and execution history support a continuing program.
Choose managed SaaS or customer-controlled infrastructure. Tenant-aware resources and API tokens are core; RBAC and the audit-log console are licensed capabilities.
Each view is tied to an operating question: how to design the exercise, what the evidence says, and what happens next.
Choose delivery method, target scope, templates, landing pages, sending configuration, and available controls in one campaign workflow.
Analyze employees, departments, campaigns, risk levels, and evidence context. Advanced dashboards and exports remain subject to the applicable license.
The licensed awareness module manages courses, training batches, assessments, and completion statistics—so follow-up can be specific rather than universal.
The product model remains consistent; infrastructure responsibility, data location, and licensing differ.
Yofune_Labs operates the service while your team manages authorized exercises and follow-up.
Run the packaged server in your data center or private cloud and control databases, credentials, network exposure, logs, backups, and retention.
GoPhish remains useful for straightforward email exercises. TaiGong is intended for teams that need the workflow to continue into risk analysis, training, automation, licensed channels, or enterprise operations.
The English launch does not rely on anonymous star ratings or an ambiguous logo wall. It publishes current availability, license boundaries, deployment responsibilities, and authorized-use controls.
“If a capability is not supported in 1.3.4, the website should say so before the buyer has to ask.”
Notes on gateway interference, measurement noise, human risk, multi-stage operations, private deployment, MCP, and advanced simulation boundaries.
TaiGong Drill is the current public flagship at v1.3.4. TaiGong Trace covers incident response and attack-chain tracing; TaiGong MailLab covers email-sample analysis and security operations. Each platform’s version, license, and delivery scope is confirmed separately.
Authorized exercise design, behavioral evidence, risk analysis, optional training and automation, SaaS, and self-hosted delivery.
Trace is a formal TaiGong platform for incident response and attack-chain tracing. Current version, licensing, integrations, and delivery scope are confirmed per project.
MailLab is a formal TaiGong platform for email-sample analysis and security operations. Sample handling, collaboration, licensing, and delivery scope are confirmed per project.
Walk through one representative workflow, or evaluate the self-hosted boundary with your infrastructure and governance requirements.