BullPhish ID reporting overview: Business, User, and Campaign reports

In the Reporting module, you can generate reports for phishing simulation campaigns and training & awareness campaigns. Reports are a great resource for verifying the effectiveness and value of your BullPhish ID campaigns.

BullPhish ID offers three report types:

  • Business reports: Auto-generated monthly/quarterly aggregate summaries
  • User reports: Individual user activity exports
  • Campaign reports: On-demand, per-campaign CSV/PDF exports generated from the campaign's Details page

In this article, business reports, user reports, and campaign reports are described.

NOTE  Organizations using Gmail:Phishing campaign and training campaign email reports automatically filter out email-open events generated by Google's crawler and link-preview services. This ensures campaign metrics reflect only real recipient activity.

Why user counts differ across reports

It is expected for user counts to differ across the campaign view, campaign report, group membership, and monthly or quarterly business reports. The table below explains what each count represents:

Where you see the count What it represents
Campaign Details page  All users for whom a training or phishing email was ever generated since the campaign was created. This number may increase over time but is never reduced. 
Campaign report  Users currently visible in the per-campaign report (CSV/PDF), which can be generated on demand from the campaigns Details page. Users who have been deleted from the system after being assigned to a campaign will no longer appear here, which may result in a slightly lower count than the campaign total. 
Group membership The current number of users in the group assigned to the campaign. This changes as users are added to or removed from the group and does not reflect historical campaign participation. 
Monthly or quarterly business report  Users with activity recorded specifically within the report period. If a campaign launched in a prior month, most activity will appear in that earlier month's report, not the current one. 

NOTE  These differences are expected behavior and do not indicate a reporting error.

How to...

 

Revision Date
Business report content revised. Added User report content. 10/19/23
Phishing Status descriptions: Added Note: Submit button is only link tracked on landing page. 1/17/24
03 Section: Phished Users version: Opened Email action no longer tracked. Campaign column replaced with Phishing Kit column. New Phishing Kits by Risk Level version added.
05 Section: Users by Risk Level version: Passed status no longer tracked. Campaign column replaced with Training Course column. New Training Courses by Risk Level version added.
4/7/25
Added remedial campaign info. 9/25/25
Edited training status No Action taken: The percentage of users who opened the training campaign emails they received but took no action. 9/26/25
Added section 06. Remedial Training Details. 11/27/25
Added Remedial training campaigns section. PR: User Reports - Step 4 - Added tooltip description note. 1/22/26
Added section: Monthly business reports. 3/5/26

Added Note: Organizations using Gmail: Campaign email reports automatically filter out email-open events generated by Google's crawler and link-preview services.

Export a user report: Added step 3c - complete Time Zone.

6/25/26
Updated Note: Organizations using Gmail - to specify phishing campaign email reports. 6/26/26